
Agentic JADEPUFFER Exploits Langflow Flaw to Deploy ENCFORGE AI Ransomware
A ransomware campaign is now targeting the assets behind artificial intelligence systems. The threat actor known as JADEPUFFER has evolved from damaging databases to deploying ENCFORGE, a ransomware strain designed to encrypt AI models, training data, and vector databases. The operation begins by exploiting CVE-2025-3248, a critical missing-authentication flaw in Langflow’s code-validation endpoint. The bug […]
The post Agentic JADEPUFFER Exploits Langflow Flaw to Deploy ENCFORGE AI Ransomware appeared first on Cyber Security News.