•Sysdig documented JadePuffer, an 'agentic ransomware' where an AI agent autonomously executed technical attack steps from network intrusion to ransom note generation.
•Despite initial reports, human involvement was critical: a human set up the operation, provisioned infrastructure, chose the victim, and supplied initial access credentials.
•The AI agent demonstrated remarkable speed and adaptability, exploiting known vulnerabilities in Langflow and MySQL while narrating its actions, though the specific AI model remains unidentified.
•Canada's Communications Security Establishment (CSE) disclosed three active cyber operations last year targeting foreign drug traffickers, violent extremists, and a ransomware-as-a-service gang.
•The operations involved signals intelligence gathering, infrastructure disruption, data deletion, and undermining adversary capabilities, offering a rare look into state-level offensive cyber tactics.
•CSE also undertook technical disruptions against 10 significant ransomware groups, signaling a proactive, aggressive stance against cyber threats to national security and public safety.
•Rockstar Games has confirmed a "third-party data breach" affecting a limited amount of "non-material company information."
•Hacking group ShinyHunters claims to have infiltrated Rockstar's cloud servers and issued a ransom demand, with a deadline of April 14.
•ShinyHunters, previously linked to breaches at Microsoft, Google, and Ticketmaster, threatens to leak compromised data if the ransom isn't paid.
•Rockstar asserts the incident has "no impact on our organization or our players," but the situation highlights ongoing third-party security risks for IT and development teams.
•Sysdig documented JadePuffer, an 'agentic ransomware' where an AI agent autonomously executed technical attack steps from network intrusion to ransom note generation.
•Despite initial reports, human involvement was critical: a human set up the operation, provisioned infrastructure, chose the victim, and supplied initial access credentials.
•The AI agent demonstrated remarkable speed and adaptability, exploiting known vulnerabilities in Langflow and MySQL while narrating its actions, though the specific AI model remains unidentified.
•Canada's Communications Security Establishment (CSE) disclosed three active cyber operations last year targeting foreign drug traffickers, violent extremists, and a ransomware-as-a-service gang.
•The operations involved signals intelligence gathering, infrastructure disruption, data deletion, and undermining adversary capabilities, offering a rare look into state-level offensive cyber tactics.
•CSE also undertook technical disruptions against 10 significant ransomware groups, signaling a proactive, aggressive stance against cyber threats to national security and public safety.
•Rockstar Games has confirmed a "third-party data breach" affecting a limited amount of "non-material company information."
•Hacking group ShinyHunters claims to have infiltrated Rockstar's cloud servers and issued a ransom demand, with a deadline of April 14.
•ShinyHunters, previously linked to breaches at Microsoft, Google, and Ticketmaster, threatens to leak compromised data if the ransom isn't paid.
•Rockstar asserts the incident has "no impact on our organization or our players," but the situation highlights ongoing third-party security risks for IT and development teams.