利用CVE-2025-3248漏洞通过Langflow实例发起AI Agent勒索软件攻击
Sysdig研究人员发现一种新型AI Agent勒索软件攻击方式,攻击者利用Langflow实例中的CVE-2025-3248漏洞,实现自动化数据库勒索。该恶意软件被称为JadePuffer,能够自主识别目标数据库、加密数据并索要赎金,代表了勒索软件向AI驱动自动化演进的新趋势。
Sysdig研究人员发现一种新型AI Agent勒索软件攻击方式,攻击者利用Langflow实例中的CVE-2025-3248漏洞,实现自动化数据库勒索。该恶意软件被称为JadePuffer,能够自主识别目标数据库、加密数据并索要赎金,代表了勒索软件向AI驱动自动化演进的新趋势。
The FBI has seized hundreds of domains linked to NetNut, a residential proxy service owned by Israeli firm Alarum Technologies, following an investigation connecting NetNut to the Popa botnet—a network of at least two million compromised devices.
Researchers have linked the Android-based Popa botnet, which has compromised millions of TV boxes for advertising fraud and data scraping over four years, to NetNut, a residential proxy provider owned by the publicly-traded Israeli firm Alarum Technologies Ltd.
An offensive cybersecurity startup offering millions for zero-day vulnerabilities is operated by two far-right conspiracy theorists and convicted felons, whose past ventures included fake intelligence firms and a defunct AI lobbying platform run under aliases.