AKAMAI has detected a new Gafgyt botnet campaign that exploits a vulnerability in Langflow, a framework for AI applications, allowing attackers to hijack AI infrastructure through remote code execution (RCE). The exploit targets Langflow's untrusted code execution feature, enabling the deployment of a DDoS payload aimed at flooding networks via different attack modes. The botnet variant uses a modified RC4 stream cipher for command-and-control traffic, complicating detection efforts. Recommended defenses include patching vulnerabilities, applying strict filtering, and treating AI development environments as untrusted.
Gafgyt Botnet Exploits Langflow Flaw to Hijack AI Systems for DDoS
CyberSIXT Evidence Panel
Primary Source
akamai.com
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Langflow, Rails flaws let attackers probe credentials and C2
thehackernews.com
-
CISA Flags Critical Flaws in IBM Langflow, N able and Tomcat
securityaffairs.com
-
CISA warns of exploits in IBM Langflow, Nable, and Tomcat flaws
securityweek.com
-
CISA Warns of Active Exploits in Langflow, Tomcat, Ncentral Flaws
thehackernews.com
-
CISA Flags IBM Langflow CVE-2026-9198 Code Injection in KEV List
cisa.gov
-
CISA adds DDWRT, Langflow and WordPress bugs to KEV list
securityaffairs.com
-
Gafgyt Botnet Exploits Langflow Flaw to Hijack AI Systems for DDoS
securityonline.info
-
CISA warns of active exploits in WordPress, Langflow, DDWRT
securityonline.info
-
CISA warns of critical Langflow RCE flaw CVE-2026-0770
cisa.gov