Agentic JADEPUFFER Exploits Langflow Flaw to Deploy ENCFORGE AI Ransomware

A ransomware campaign is now targeting the assets behind artificial intelligence systems. The threat actor known as JADEPUFFER has evolved from damaging databases to deploying ENCFORGE, a ransomware strain designed to encrypt AI models, training data, and vector databases. The operation begins by exploiting CVE-2025-3248, a critical missing-authentication flaw in Langflow’s code-validation endpoint. The bug […]

The post Agentic JADEPUFFER Exploits Langflow Flaw to Deploy ENCFORGE AI Ransomware appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: