Microsoft traced an automated Azure attack to compromised service principals used to map cloud resources, delete storage and ...
Storm-3168 used stolen Azure identities to map an environment, destroy cloud resources and collect storage keys within ...
Do you think of Cloudflare as just a "CDN and DNS company"? Having worked primarily with Azure, I viewed it that way for a ...
JadePuffer uses AI agents to target Azure tenants, steal credentials, and destroy cloud resources, including over 100 storage ...
In an incident observed in early June 2026, attackers used two compromised service principals application identities used to ...
In July, Sysdig threat hunters uncovered JadePuffer, the first-ever documented agentic ransomware infection in which an LLM drove the entire extortion operation, from gaining initial access to ...
The "agentic threat actor" may have used exposed credentials to access resources and delete cloud-based storage, applications, and databases.
Storm-3168, an AI-orchestrated threat actor also known as JADEPUFFER, used two compromised service principals to delete 100+ ...
Microsoft says Jadepuffer, an autonomous agentic AI attacker first reported in July, is now targeting Azure resources; ...
The JadePuffer ransomware operator is targeting Azure tenants with agent-driven attacks that conduct reconnaissance, steal ...
Microsoft details Storm-3168, the JADEPUFFER-linked actor that used stolen service principals to delete Azure storage and ...
Azure AI Foundry Had a CVSS 10.0 Authentication Bypass – Microsoft Fixed It Silently and Told Nobody
CVE-2026-85889 was one of seven maximum-severity flaws Microsoft mitigated server-side in mid-September. No customer ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results