JADEPUFFER Turned Langflow Into a Ransomware Conveyor Belt
Sysdig says JADEPUFFER used an exposed Langflow server and CVE-2025-3248 to run a full database-extortion playbook with an AI agent at the controls.
// Archive
Pieces filed under Cybersecurity.
Browse
Sysdig says JADEPUFFER used an exposed Langflow server and CVE-2025-3248 to run a full database-extortion playbook with an AI agent at the controls.
Rasmus Moorats' Sound Blaster Katana V2X research is a clean reminder that a trusted USB peripheral can become a keyboard if its wireless control plane is too trusting.
CISA and NSA are warning that internet-exposed automatic tank gauges are being targeted. The real lesson is simple: physical infrastructure is now full of small networked consoles that need software-grade hygiene.
A new AI cybersecurity order points at the missing layer between frontier model capability and public-sector defense: a clearinghouse that can scan, deconflict, prioritize, and move patches before small operators drown in findings.
SafeBreach's Gemini notification research shows why AI assistants need to treat every external snippet as hostile input, not friendly context.
Google AI Threat Defense points to a new security operating model: exposure mapping, model-driven scanning, patch generation, verification, and continuous monitoring in one loop.
A reported suspension of Windows exploit mirrors shows how code-hosting platforms are becoming part of the vulnerability disclosure control plane.
SymJack shows why AI coding-agent approval prompts need to prove the real filesystem effect, not just display the command a developer is being asked to trust.
CISA's new logging reference architecture assignment turns federal logs into shared security infrastructure: normalized, searchable, retained, and usable for threat hunting.
Microsoft Defender for Endpoint can now isolate compromised devices automatically during active attacks. The important shift is not just speed. It is containment becoming an infrastructure primitive.
DirtyDecrypt is the latest Linux local privilege escalation tied to page-cache corruption, and public proof-of-concept code makes it a priority for rolling-release systems and exposed developer workstations.
Calif’s Mythos-assisted macOS exploit shows that the next cybersecurity shock may not be the exploit itself. It may be the collapsing cost of finding one.
EFF’s new guide on digital surveillance abuses in the Americas makes the case for clear legal limits, independent oversight, and real remedies before surveillance becomes normalized infrastructure.
Linux 7.1-rc4 brings the usual pile of hardware fixes and security updates, but the more interesting shift is procedural: the kernel is documenting responsible AI use and what qualifies as a security bug.
OpenAI's new Windows sandbox work for Codex shows that useful coding agents cannot live on vague trust. They need operating-system boundaries that match real developer workflows.
A small GitHub token format change exposed a brittle security assumption in Composer and turned ordinary GitHub Actions logs into a credential leak path for PHP teams.
GitHub's new generally available MCP secret scanning turns credential leaks into a live coding-time problem instead of a post-commit cleanup job. That is exactly where AI agents need security guardrails.
Microsoft and Mozilla have both shown that AI vulnerability discovery works best as a pipeline, not a magic model. The next security advantage belongs to teams that can turn model output into proven fixes.
Calif says Anthropic’s Mythos Preview helped its researchers build a working macOS kernel exploit in five days, showing how expert teams can use frontier AI to move faster against hard security problems.
A new cyber resilience framework argues that modern security cannot stop at prevention. Real resilience means planning, absorbing disruption, recovering fast, and adapting after failure.
New benchmark results suggest frontier AI agents are no longer limited to spotting vulnerabilities. Some can turn real software flaws into working exploits.