Close Menu
NCIJ Network NCIJ Network
    What's Hot

    UK-Iranian dual national arrested over RAF Fairford investigation bailed

    October 3, 2026

    20% Off Brooks Promo Code | October 2026

    October 3, 2026

    Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

    October 3, 2026
    Facebook X (Twitter) Instagram
    Trending
    • UK-Iranian dual national arrested over RAF Fairford investigation bailed
    • 20% Off Brooks Promo Code | October 2026
    • Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware
    • Bankers sue to overturn OCC trust-bank rule used by crypto firms
    • Your gut may be making a molecule that raises Alzheimer’s risk
    • Tennessee prison chief to resign after Christa Pike’s failed execution
    • iPhone 18 Pro Max can’t call or text on AT&T? Apple will replace it for free
    • Sazmining Launches The Wild Sats Club, A Loyalty Program That Discounts Mining Management Fees As Customer Hashrate Grows
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Saturday, October 3
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 28, 2026 Cybersecurity No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The threat actor known as JADEPUFFER has been observed orchestrating destructive actions within a Microsoft Azure environment using compromised service principals.

    Microsoft, which is tracking the activity under the name Storm-3168, has called it an evolution of the threat actor’s tradecraft. The attack took place in early June 2026 over a period of about 18 hours.

    “The destructive operations were facilitated by compromising service principals and targeted Azure Storage Accounts, SQL databases, Key Vaults, Function Apps, recovery protection locks, Virtual Machines, and App Services,” researchers Yossi Weizman and Tushar Mudi, along with the Microsoft Security Research team, said.

    JADEPUFFER was first documented by Sysdig, describing it as the first-ever ransomware operation run end-to-end with the help of a large language model (LLM). The agentic attack exploited a known security flaw in Langflow (CVE-2025-3248) to break in, harvested credentials, burrowed deeper into the network, encrypted Nacos service configuration files, dropped the original database tables, and left a ransom note demanding a Bitcoin payment.

    Cybersecurity

    While the attack was found to have leveraged MySQL’s built-in AES_ENCRYPT() function to perform the encryption step, the same Langflow instance was subsequently targeted by the threat actor a second time using a compiled Go-based ransomware strain codenamed ENCFORGE.

    ENCFORGE is specifically built for the artificial intelligence (AI) infrastructure, scanning for nearly 180 file extensions spanning model checkpoints, vector databases, training datasets, and embedding indices, along with macOS-centric files like Keychain stores, Xcode project files, and Apple Pages and Numbers documents.

    “An autonomous agent reasoned about its targets, harvested and reused credentials, moved laterally, established persistence, and destroyed a database, narrating its own intent the entire way,” Sysdig noted at the time. “None of the individual techniques were novel or sophisticated. What is notable, however, is that an AI model strung them together into a complete ransomware operation against neglected internet-facing infrastructure.”

    Microsoft, in its analysis, said it observed two compromised service principals linked to the same tenant, with one used for reconnaissance and resource discovery and the second for destructive operations and credential collection.

    The enumeration activity targeted Azure Virtual Machines, subscriptions, resource groups, and resources for close to 16 hours, carrying out over 300 read operations during the time period. The second compromised service principal also engaged in some discovery operation of its own 90 minutes later, enumerating virtual machines and resource groups across two subscriptions within five seconds.

    After 16 hours, the second service principal also successfully enumerated Azure App Service configuration stores, likely in an attempt to look for exposed credentials. Soon after, the service principal is said to have conducted more than 150 destructive or credential collection-related operations in 35 minutes.

    In all, the destructive sequence lasted for about seven minutes and involved over 100 storage account deletion attempts. Also targeted were an Azure Key Vault, Function App, and App Service plan, as well as multiple Azure SQL databases. However, each of the database deletion attempts ended up in failure due to the use of an unsupported API version for the Azure SQL database resource type.

    “Most Azure Storage accounts targeted by the threat actor were successfully deleted,” Microsoft said. “However, Azure resource locks and storage account-level deletion protection blocked deletion attempts for few of the storage accounts, demonstrating the value of independent safeguards that remain effective even when a compromised identity has broad administrative permissions.”

    Cybersecurity

    It’s unclear how the service principal was compromised, Microsoft said it observed its client ID, client secret, and tenant ID had been previously exposed in plaintext in a public GitHub issue by an employee of the impacted organization. Although the secret was removed, it remained accessible through the public edit history.

    Microsoft said it has also detected repeated probing from Storm-3168 linked infrastructure against several Azure App services for different customers, adding that the attacks are likely automated or scripted given the division of work using multiple service principals and the timing between the different operations.

    The end goal of the attack is assessed to be ransomware-aligned, as it led to the deletion of numerous Azure resources in addition to backup and recovery-related resources, suggesting the threat actor was looking to impair the victim’s ability to recover from the destructive activity. However, no ransom note or successful data exfiltration was observed in connection with the intrusion.

    “This activity highlights a broader shift toward AI-orchestrated attacks, where threat actors can coordinate complex post-compromise operations across cloud environments with greater speed and scale,” Microsoft said. “As these capabilities evolve, defenders must similarly use AI to investigate and respond across large environments.”

    Attackers Azure Compromised Delete JADEPUFFERLinked Principals resources Service
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

    MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics

    Fortra Patches Critical Vulnerabilities in BoKS

    Danish university DTU breach exposes data of up to 200,000 people

    doxx.net Raises $38 Million to Prevent AI Agent-on-the-Internet Misadventures

    Kiteworks patches max severity code injection vulnerability

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    UK-Iranian dual national arrested over RAF Fairford investigation bailed

    October 3, 2026

    20% Off Brooks Promo Code | October 2026

    October 3, 2026

    Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

    October 3, 2026

    Bankers sue to overturn OCC trust-bank rule used by crypto firms

    October 3, 2026
    Latest Posts

    Google’s top hacker hunter explains why hacking groups get codenames

    August 8, 2026

    Nicola Sturgeon ‘has not spoken to’ estranged husband, Peter Murrell, since he was jailed | Nicola Sturgeon

    August 8, 2026

    Amid Abuse Claims Against Max Miller, This Democrat Thinks He Can Win His Seat

    August 8, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    UK-Iranian dual national arrested over RAF Fairford investigation bailed

    October 3, 2026

    20% Off Brooks Promo Code | October 2026

    October 3, 2026

    Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

    October 3, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.