Sysdig Threat Research Team
sysdig · B · candidate
Added 2026-07-21: provided the JADEPUFFER/ENCFORGE AI-model-destroying-ransomware primary (2026-07-20). Cloud/container/AI-infrastructure threat research lab.
Cited in 7 entries
Citation cadence
Citation days per ISO week (9 weeks of coverage span, total 7).
- JADEPUFFER returns with ENCFORGE — a Go ransomware built to destroy AI/ML model artifacts, not just extort data2026-07-21
- Confirmed in-the-wild exploitation of internet-facing enterprise software converged this week — ColdFusion, Citrix NetScaler and Gitea all moved from 'at risk' to 'under attack'2026-07-12
- CVE-2026-55255 — Langflow cross-tenant IDOR now CISA KEV-listed, chained with the pre-auth RCE CVE-2026-330172026-07-08
- This week AI crossed from attack target to attack operator — agentic ransomware, coerced coding agents, and LLM-output poisoning2026-07-05
- JADEPUFFER — Sysdig documents an autonomous, LLM-driven ransomware operation entering via Langflow CVE-2025-32482026-07-04
- Sysdig TRT: first observed LLM-agent-driven post-exploitation — CVE-2026-39987 Marimo notebook RCE to database exfiltration in 4 pivots under one hour2026-05-30
- AI tooling as lure, attack surface and force-multiplier — the cross-day pattern no single daily framed whole2026-05-25