Security researchers at Sysdig say they documented “JadePuffer,” a ransomware campaign carried out end to end by an AI agent using a large language model, without human operators at the keyboard. According to Sysdig, the agent first gains initial access by exploiting a remote-code-execution vulnerability in the Langflow open-source framework; that flaw has since been patched. After exploitation, the agent runs an adaptive, fully automated intrusion workflow, including retrying failed actions with refined parameters. Sysdig’s researchers describe behavior such as going from a failed login to a working fix in about 31 seconds, harvesting and reusing credentials, moving laterally, establishing persistence, and targeting a victim’s production database for extortion and destruction. The research also says the agent encrypted data using an ephemeral, unrecoverable AES key, making decryption impossible even if a victim pays. Multiple outlets report that JadePuffer injects persistence on the initially compromised host and ultimately destroys data in the targeted environment. Overall, researchers warn that such agentic tooling could reduce the cost and expertise required to run ransomware, potentially increasing the volume and breadth of similar attacks as the technology matures.