{
  "Event": {
    "analysis": "1",
    "date": "2026-07-20",
    "extends_uuid": "",
    "info": "[Threat Intel] JADEPUFFER evolves: The agentic threat actor deploys ransomware built to destroy AI models",
    "protected": false,
    "publish_timestamp": "1785033933",
    "published": true,
    "threat_level_id": "2",
    "timestamp": "1785033933",
    "uuid": "24b49c69-811c-4bcf-aba8-93ccb4f42b57",
    "Orgc": {
      "name": "Rectifyq",
      "uuid": "cd9bd516-61fa-476b-980f-2f8de03992d4"
    },
    "Tag": [
      {
        "colour": "#ffffff",
        "local": false,
        "name": "tlp:clear",
        "relationship_type": ""
      },
      {
        "colour": "#004646",
        "local": false,
        "name": "type:OSINT",
        "relationship_type": ""
      },
      {
        "colour": "#b94b1d",
        "local": false,
        "name": "rectifyq:mitre-att&ck=\"from-OTX\"",
        "relationship_type": ""
      },
      {
        "colour": "#b2a633",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Service Stop - T1489\"",
        "relationship_type": ""
      },
      {
        "colour": "#9feaf0",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Exploit Public-Facing Application - T1190\"",
        "relationship_type": ""
      },
      {
        "colour": "#e00500",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Remote Access Tools - T1219\"",
        "relationship_type": ""
      },
      {
        "colour": "#d0c0c7",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Escape to Host - T1611\"",
        "relationship_type": ""
      },
      {
        "colour": "#682cad",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Remote Services - T1021\"",
        "relationship_type": ""
      },
      {
        "colour": "#4cb5c3",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Deploy Container - T1610\"",
        "relationship_type": ""
      },
      {
        "colour": "#36a9d8",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Account Discovery - T1087\"",
        "relationship_type": ""
      },
      {
        "colour": "#20f80d",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Command and Scripting Interpreter - T1059\"",
        "relationship_type": ""
      },
      {
        "colour": "#0c0051",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"File and Directory Discovery - T1083\"",
        "relationship_type": ""
      },
      {
        "colour": "#f95f85",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Credentials In Files - T1552.001\"",
        "relationship_type": ""
      },
      {
        "colour": "#7628f7",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Unix Shell - T1059.004\"",
        "relationship_type": ""
      },
      {
        "colour": "#59699c",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Valid Accounts - T1078\"",
        "relationship_type": ""
      },
      {
        "colour": "#36d931",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Data Encrypted for Impact - T1486\"",
        "relationship_type": ""
      },
      {
        "colour": "#0aebeb",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Exploitation for Client Execution - T1203\"",
        "relationship_type": ""
      },
      {
        "colour": "#7d37d8",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Python - T1059.006\"",
        "relationship_type": ""
      },
      {
        "colour": "#a05856",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Data Destruction - T1485\"",
        "relationship_type": ""
      },
      {
        "colour": "#30cc3b",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"File Deletion - T1070.004\"",
        "relationship_type": ""
      },
      {
        "colour": "#50bd28",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Network Service Discovery - T1046\"",
        "relationship_type": ""
      },
      {
        "colour": "#297c25",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Inhibit System Recovery - T1490\"",
        "relationship_type": ""
      },
      {
        "colour": "#3b4369",
        "local": false,
        "name": "misp-galaxy:mitre-attack-pattern=\"Container API - T1552.007\"",
        "relationship_type": ""
      },
      {
        "colour": "#49a260",
        "local": false,
        "name": "rectifyq:category=\"threat\"",
        "relationship_type": ""
      },
      {
        "colour": "#120044",
        "local": false,
        "name": "rectifyq:sub-category=\"intrusion-analysis\"",
        "relationship_type": ""
      },
      {
        "colour": "#18005c",
        "local": false,
        "name": "rectifyq:topic=\"ai\"",
        "relationship_type": ""
      },
      {
        "colour": "#f1dfed",
        "local": false,
        "name": "rectifyq:TA-category=\"Ransomware\"",
        "relationship_type": ""
      },
      {
        "colour": "#d92121",
        "local": false,
        "name": "rectifyq:target=\"targeted\"",
        "relationship_type": ""
      },
      {
        "colour": "#55acee",
        "local": false,
        "name": "rectifyq:MY-relevancy=\"potentially-relevant\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Exploit Public-Facing Application\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Discover ML Artifacts\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Erode ML Model Integrity\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Reputational Harm\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Unsecured Credentials\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Denial of ML Service\"",
        "relationship_type": ""
      },
      {
        "colour": "#0088cc",
        "local": false,
        "name": "misp-galaxy:mitre-atlas-attack-pattern=\"Cost Harvesting\"",
        "relationship_type": ""
      },
      {
        "colour": "#626567",
        "local": false,
        "name": "rectifyq:no-samples-in=\"MalwareBazaar\"",
        "relationship_type": ""
      },
      {
        "colour": "#626567",
        "local": false,
        "name": "rectifyq:no-samples-in=\"Tria.ge\"",
        "relationship_type": ""
      },
      {
        "colour": "#3800d9",
        "local": false,
        "name": "rectifyq:action-taken=\"VT-comment\"",
        "relationship_type": ""
      },
      {
        "colour": "#3d00e9",
        "local": false,
        "name": "rectifyq:action-taken=\"telegram\"",
        "relationship_type": ""
      }
    ],
    "Attribute": [
      {
        "category": "External analysis",
        "comment": "",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784631638",
        "to_ids": false,
        "type": "link",
        "uuid": "785a4c3f-4ad3-4019-81d9-9b2988b6e7d1",
        "value": "https://www.sysdig.com/blog/jadepuffer-evolves-the-agentic-threat-actor-deploys-ransomware-built-to-destroy-ai-models",
        "Tag": [
          {
            "colour": "#6b003a",
            "local": true,
            "name": "workflow:todo=\"create-missing-misp-galaxy-cluster\"",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Other",
        "comment": "Description",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784631638",
        "to_ids": false,
        "type": "text",
        "uuid": "ff4412d7-9be8-4658-b5f9-cac1f5905e86",
        "value": "An advanced threat actor identified as JADEPUFFER has evolved its capabilities, now deploying ENCFORGE, a specialized ransomware targeting AI and ML infrastructure. The actor exploits CVE-2025-3248 in Langflow to gain initial access, then autonomously chains reconnaissance, credential harvesting, and lateral movement. ENCFORGE is a compiled Go binary targeting approximately 180 file extensions specific to AI/ML environments, including model checkpoints, vector databases, training datasets, and embedding indices. The ransomware uses AES-256-CTR with RSA-2048 encryption and cannot be recovered without the attacker's private key. Unlike traditional ransomware, encrypted AI models cannot simply be restored, as rebuilding production-ready models costs between $75,000 to $500,000 per model in compute and engineering time. The operation demonstrates sophisticated autonomous behavior, including real-time container escape toolkit construction when initial payload delivery failed, completing the escape mechanism in ..."
      },
      {
        "category": "Other",
        "comment": "Summary",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784631638",
        "to_ids": false,
        "type": "text",
        "uuid": "6cf10016-1171-4cbf-88c3-28240370dc4e",
        "value": "Name: JADEPUFFER evolves: The agentic threat actor deploys ransomware built to destroy AI models\nAuthor: AlienVault\nAdversary: JADEPUFFER\nTags: [\"jadepuffer\", \"ai infrastructure\", \"cve-2025-3248\", \"autonomous threat\", \"langflow\", \"container escape\", \"encforge\", \"machine learning\", \"ransomware\"]\nTgtd countries: []\nMlwr families: [\"ENCFORGE\"]\nAttack_ids: [\"T1489\", \"T1190\", \"T1219\", \"T1611\", \"T1021\", \"T1610\", \"T1087\", \"T1059\", \"T1083\", \"T1552.001\", \"T1059.004\", \"T1078\", \"T1486\", \"T1203\", \"T1059.006\", \"T1485\", \"T1070.004\", \"T1046\", \"T1490\", \"T1552.007\"]\nIndustries: [\"Technology\"]"
      },
      {
        "category": "Attribution",
        "comment": "Adversary",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784631638",
        "to_ids": false,
        "type": "threat-actor",
        "uuid": "283249d6-ca78-488e-b5a8-5d29a5016af5",
        "value": "JADEPUFFER"
      },
      {
        "category": "Network activity",
        "comment": "Source",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1785030849",
        "to_ids": true,
        "type": "ip-dst",
        "uuid": "ce3e5ac2-8d0f-4cd4-b71b-5a677aeab7da",
        "value": "45.131.66.106",
        "Tag": [
          {
            "colour": "#d50ad9",
            "local": false,
            "name": "asn:asn=\"213250\"",
            "relationship_type": ""
          },
          {
            "colour": "#01cd29",
            "local": false,
            "name": "asn:as-owner=\"ITP-SOLUTIONS\"",
            "relationship_type": ""
          },
          {
            "colour": "#141680",
            "local": false,
            "name": "asn:as-country=\"DE\"",
            "relationship_type": ""
          },
          {
            "colour": "#0088cc",
            "local": false,
            "name": "misp-galaxy:country=\"germany\"",
            "relationship_type": ""
          },
          {
            "colour": "#342294",
            "local": false,
            "name": "CommentAdded",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "External analysis",
        "comment": "JADEPUFFER: an agentic threat actor (ATA) that exploited Langflow through CVE-2025-3248",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784893419",
        "to_ids": false,
        "type": "vulnerability",
        "uuid": "ee83c204-9130-4ae9-82c0-4b686767b31d",
        "value": "CVE-2025-3248"
      },
      {
        "category": "Payload delivery",
        "comment": "Packed No sample in VT\r\nLast check: 24/07/2026",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784899551",
        "to_ids": true,
        "type": "sha256",
        "uuid": "9174189a-ff24-4cbd-a35d-30f77281dbad",
        "value": "8cb0c223b018cecef1d990ec81c67b826eb3c30d54f06193cf69969e9a8baea2",
        "Tag": [
          {
            "colour": "#260091",
            "local": false,
            "name": "rectifyq:ioc=\"enriched\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"VirusTotal\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"MalwareBazaar\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"Tria.ge\"",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Payload delivery",
        "comment": "Staged CPython with a homoglyph tell No sample in VT\r\nLast check: 24/07/2026",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784899552",
        "to_ids": true,
        "type": "sha256",
        "uuid": "53abbef2-ba46-42b8-a7f3-e1d895fd8846",
        "value": "ab9824b61587c77a8d8649545cdbdc63ed2c384e45c9aba534e3f457f96efa7a",
        "Tag": [
          {
            "colour": "#260091",
            "local": false,
            "name": "rectifyq:ioc=\"enriched\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"VirusTotal\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"MalwareBazaar\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"Tria.ge\"",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Payload delivery",
        "comment": "Unpacked No sample in VT\r\nLast check: 24/07/2026",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784899553",
        "to_ids": true,
        "type": "sha256",
        "uuid": "9d461654-a507-48d1-b0d3-738e2f953c20",
        "value": "ea7822eac6cecef7746c606b862b4d3034856caf754c4cf69533662637905328",
        "Tag": [
          {
            "colour": "#260091",
            "local": false,
            "name": "rectifyq:ioc=\"enriched\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"VirusTotal\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"MalwareBazaar\"",
            "relationship_type": ""
          },
          {
            "colour": "#626567",
            "local": false,
            "name": "rectifyq:no-samples-in=\"Tria.ge\"",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Network activity",
        "comment": "",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1785030870",
        "to_ids": true,
        "type": "ip-dst",
        "uuid": "7d064295-7676-4de8-834e-cf01a0878df4",
        "value": "34.153.223.102",
        "Tag": [
          {
            "colour": "#661a1f",
            "local": false,
            "name": "asn:asn=\"396982\"",
            "relationship_type": ""
          },
          {
            "colour": "#b21243",
            "local": false,
            "name": "asn:as-owner=\"GOOGLE-CLOUD-PLATFORM\"",
            "relationship_type": ""
          },
          {
            "colour": "#d16c37",
            "local": false,
            "name": "asn:as-country=\"US\"",
            "relationship_type": ""
          },
          {
            "colour": "#0088cc",
            "local": false,
            "name": "misp-galaxy:country=\"united states of america\"",
            "relationship_type": ""
          },
          {
            "colour": "#342294",
            "local": false,
            "name": "CommentAdded",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Payload delivery",
        "comment": "The extortion contact embedded in ENCFORGE",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1784893243",
        "to_ids": true,
        "type": "email-src",
        "uuid": "b0bf9ecb-e8bf-4a8a-80ad-d1d1b378b453",
        "value": "e78393397@proton.me"
      },
      {
        "category": "Network activity",
        "comment": "",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1785030891",
        "to_ids": true,
        "type": "url",
        "uuid": "0a6c0408-7095-41e6-bb2b-3c47921b63eb",
        "value": "http://34.153.223.102:9191/lockd",
        "Tag": [
          {
            "colour": "#342294",
            "local": false,
            "name": "CommentAdded",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Network activity",
        "comment": "Binary delivery",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1785030913",
        "to_ids": true,
        "type": "url",
        "uuid": "bc6e6dfa-faa4-43cc-8632-8f05499e58dd",
        "value": "http://34.153.223.102:9191/.lockd.",
        "Tag": [
          {
            "colour": "#f08989",
            "local": false,
            "name": "NotFoundError",
            "relationship_type": ""
          }
        ]
      },
      {
        "category": "Network activity",
        "comment": "Binary delivery",
        "deleted": false,
        "disable_correlation": false,
        "timestamp": "1785030935",
        "to_ids": true,
        "type": "url",
        "uuid": "581f61e9-8341-40c6-b359-9d1946b94507",
        "value": "http://34.153.223.102:9191/.lockd",
        "Tag": [
          {
            "colour": "#342294",
            "local": false,
            "name": "CommentAdded",
            "relationship_type": ""
          }
        ]
      }
    ]
  }
}