- Microsoft’s Storm-3168 used AI orchestration and compromised service principals to launch a destructive ransomware attack on Azure, demanding Bitcoin payment.
- The attack deleted storage accounts, databases, and recovery resources, with many deletions successful despite some safeguards.
- Exposed credentials in a public GitHub issue facilitated the intrusion, highlighting AI-driven threats evolving faster than traditional defenses.
In early June 2026, the threat actor known as JADEPUFFER, tracked by Microsoft as Storm-3168, executed a destructive ransomware attack on an Azure environment using compromised service principals. The operation spanned roughly 18 hours, targeting Azure Storage Accounts, SQL databases, Key Vaults, Function Apps, and more, according to Microsoft’s analysis. The actor left a ransom note demanding Bitcoin payment, marking a shift toward AI-orchestrated intrusions.
This was the first-known ransomware operation run end-to-end with large language model assistance, exploiting a Langflow flaw (CVE-2025-3248) to gain entry. Consequently, the attack harvested credentials, encrypted files, and dropped database tables, with a second strike using the ENCFORGE ransomware targeting AI infrastructure. Microsoft observed two compromised service principals—one for reconnaissance and another for destructive operations—executing over 300 read operations in 16 hours, then deleting more than 100 storage accounts in seven minutes. However, Azure resource locks and deletion protection blocked some attempts, demonstrating the value of independent safeguards. The initial breach stemmed from a publicly exposed client secret in a GitHub issue, which remained accessible through edit history. No ransom note or data exfiltration was confirmed, but the pattern suggests ransomware-aligned motives. “This activity highlights a broader shift toward AI-orchestrated attacks, where threat actors can coordinate complex post-compromise operations across cloud environments with greater speed and scale,” Microsoft stated.
✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.
