New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack

Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator it first documented earlier this month.

The same operator has now been spotted deploying ENCFORGE, a new compiled Go ransomware designed to encrypt model weights, vector indexes, training datasets, and other AI infrastructure files across the host filesystem.

The entry

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been

Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member’s iPhone

Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member’s iPhone The iPhone belonging to a member of Serbia’s student protest movement was infected with NSO Group’s Pegasus spyware, according to

OpenAI’s head of ethics leaves less than a year after joining

OpenAI’s head of ethics leaves less than a year after joining Source: Hacker News