A ransomware attack ran itself. Researchers say no human was at the keyboard.
JADEPUFFER - first documented fully autonomous LLM-driven ransomware operation (Sysdig Threat Research Team, published July 1). Agent breached internet-facing Langflow via CVE-2025-3248, harvested credentials, pivoted to a MySQL + Alibaba Nacos server, forged a JWT with the 2020
JADEPUFFER - first documented fully autonomous LLM-driven ransomware operation (Sysdig Threat Research Team, published July 1). Agent breached internet-facing Langflow via CVE-2025-3248, harvested credentials, pivoted to a MySQL + Alibaba Nacos server, forged a JWT with the 2020 default signing key, inserted backdoor admin, encrypted 1,342 Nacos config items with an ephemeral/unrecoverable key, left BTC ransom note. 600+ payloads, self-narrating code, 31-second failure-to-fix cycle. Tied to the June 22 Five Eyes (CISA/NCSC/ACSC/CCCS/NCSC-NZ) "months, not years" warning coming true in weeks.