JADEPUFFER used compromised Azure service principals to delete most targeted storage accounts in an 18-hour intrusion, ...
A security flaw found in Azure App Service, a Microsoft-managed platform for building and hosting web apps, led to the exposure of PHP, Node, Python, Ruby, or Java customer source code for at least ...
Azure ransomware attack: Storm-3168, an AI-orchestrated threat actor also known as JADEPUFFER, used two compromised service ...
The "agentic threat actor" may have used exposed credentials to access resources and delete cloud-based storage, applications, and databases.
In July, Sysdig threat hunters uncovered JadePuffer, the first-ever documented agentic ransomware infection in which an LLM drove the entire extortion operation, from gaining initial access to ...
The security vulnerability could expose passwords and access tokens, along with blueprints for internal infrastructure and finding software vulnerabilities. The Microsoft Azure App Service has a ...
Microsoft traced an automated Azure attack to compromised service principals used to map cloud resources, delete storage and ...