www.infosecurity-magazine.com 7/20/2026, 2:10:47 PM · external

JadePuffer's ENCFORGE ransomware erases AI models via Langflow

JadePuffer's ENCFORGE ransomware erases AI models via Langflow
CyberSIXT Evidence Panel
Primary Source sysdig.com
Threat Actor
JadePuffer

JADEPUFFER , a ransomware campaign operated by a large language model, has returned with a new variant called ENCFORGE, specifically designed to destroy AI model artifacts. This campaign utilizes a targeted approach, impacting various file formats critical to machine learning including PyTorch and TensorFlow files. Recovery costs from such attacks could range from $75,000 to $500,000 per model, given the extensive training time involved.

The ransomware exploits a security flaw in the Langflow platform, enabling the operator to evade standard security measures and execute the attack autonomously. Unlike traditional ransomware, JadePuffer's goal is data destruction rather than extortion.

View Primary Source Via www.infosecurity-magazine.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline