AI

JadePuffer seen in the wild: it may be the first fully autonomous ransomware

An unpatched Langflow flaw let it steal credentials and self-correct

JadePuffer seen in the wild: it may be the first fully autonomous ransomware

Julianne Omamos

  • July 6, 2026
  • Updated: July 6, 2026 at 2:28 PM
JadePuffer seen in the wild: it may be the first fully autonomous ransomware

JadePuffer has now shown up in a real attack, and it may be the first fully autonomous ransomware campaign we’ve seen. Researchers say it carried out the entire attack chain on its own, with no direct human steering.

An unpatched, internet-facing Langflow system was enough to let it in. The researchers say the intrusion started with CVE-2025-3248, a critical known flaw in Langflow, the open-source framework. From there it moved through the environment, stole credentials, encrypted systems, and even recovered from a failed login in about 31 seconds. That kind of self-correction makes JadePuffer feel less like a rigid script and more like a skilled operator adjusting as it goes.

What followed was more destructive than lucrative. The researchers say JadePuffer encrypted 1,342 service configuration files, deleted the originals, and never saved or sent out the encryption key. That means recovery would be effectively impossible even if a victim paid. The Bitcoin address in the ransom note didn’t help its case either, since it looked like a generic example probably lifted from training data.

If you run software that’s exposed to the internet, this should get your attention. Tools like JadePuffer could make sophisticated attacks easier to launch and leave defenders with a much smaller window to react.

There’s nothing to download here, but if you use Langflow or similar internet-facing systems, patch known flaws and lock down credential controls now.

Julianne Omamos

Julianne Omamos is a content writer with a passion for digital technology. She creates informative reviews on software and apps, helping users get the most out of their digital experience.

Editorial Guidelines

Latest Articles

Loading next article