New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack

Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator it first documented earlier this month.

The same operator has now been spotted deploying ENCFORGE, a new compiled Go ransomware designed to encrypt model weights, vector indexes, training datasets, and other AI infrastructure files across the host filesystem.

The entry

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Tidal AI Policy

Tidal AI Policy Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 14.06.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. Mehr im /attacks/ Bereich.

Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means

Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for