Langflow actively exploited initial access flaw (CVE-2025-3248)
Vulnerability
Summary
Hide ▲
Show ▼
The Langflow flaw CVE-2025-3248 was exploited for initial access by JADEPUFFER, creating credential-harvesting and ransomware risk for exposed deployments. The exploit path enabled deeper network access and destructive follow-on activity against the victim environment. The compromise occurred in the June 2026 intrusion context and shows the flaw being used as a real-world entry point.
Related Happenings
Storm-3168 repeated Azure App Services probing campaign
Campaign
H score32
First: 28.09.2026 12:08
Last: 28.09.2026 12:08
Sources 1
How related:
Microsoft said it has also detected repeated probing from Storm-3168 linked infrastructure against several Azure App services for different customers, adding that the attacks are likely automated or scripted given the division of work using multiple service principals and the timing between the different operations.
About this happening:
A repeated probing campaign from Storm-3168 linked infrastructure hit several Azure App Services across different customers, signaling coordinated cloud reconnaiss...
Storm-3168 repeated Azure App Services probing campaign
CampaignHow related: Microsoft said it has also detected repeated probing from Storm-3168 linked infrastructure against several Azure App services for different customers, adding that the attacks are likely automated or scripted given the division of work using multiple service principals and the timing between the different operations.
About this happening: A repeated probing campaign from Storm-3168 linked infrastructure hit several Azure App Services across different customers, signaling coordinated cloud reconnaiss...
MuddyWater broad exploitation wave across exposed SmarterMail, n8n, N-central, Langflow, and Laravel Livewire systems
Exploitation Wave
H score76
First: 06.07.2026 21:34
Last: 06.07.2026 21:34
Sources 1
About this happening:
MuddyWater ran a broad exploitation wave across more than 12,000 internet-exposed systems, creating a large attack surface for follow-on access, credential theft, and...
MuddyWater broad exploitation wave across exposed SmarterMail, n8n, N-central, Langflow, and Laravel Livewire systems
Exploitation WaveAbout this happening: MuddyWater ran a broad exploitation wave across more than 12,000 internet-exposed systems, creating a large attack surface for follow-on access, credential theft, and...
Cavern (Cav3rn) modular C2 framework targeting Israeli organizations
Malware Activity
H score60
First: 06.07.2026 21:34
Last: 06.07.2026 21:34
Sources 1
About this happening:
A newly documented Cavern (Cav3rn) C2 framework is giving operators a stronger post-exploitation foothold against Israeli organizations. The toolset is tied to an Ir...
Cavern (Cav3rn) modular C2 framework targeting Israeli organizations
Malware ActivityAbout this happening: A newly documented Cavern (Cav3rn) C2 framework is giving operators a stronger post-exploitation foothold against Israeli organizations. The toolset is tied to an Ir...
Cavern Manticore campaign targeting Israeli government and IT organizations
Campaign
H score70
First: 06.07.2026 19:00
Last: 06.07.2026 19:00
Sources 1
About this happening:
The Cavern Manticore campaign is targeting Israeli government and IT organizations since early 2026, increasing the risk of unauthorized access and data theft...
Cavern Manticore campaign targeting Israeli government and IT organizations
CampaignAbout this happening: The Cavern Manticore campaign is targeting Israeli government and IT organizations since early 2026, increasing the risk of unauthorized access and data theft...
JADEPUFFER agentic Langflow ransomware campaign
Campaign
H score26
First: 03.07.2026 21:55
Last: 03.07.2026 21:55
Sources 1
How related:
JADEPUFFER was first documented by Sysdig, describing it as the first-ever ransomware operation run end-to-end with the help of a large language model (LLM).
About this happening:
JADEPUFFER now spans a Microsoft Azure destructive operation in early June 2026 and earlier Langflow ransomware activity tied to CVE-2025-3248. Microsoft track...
JADEPUFFER agentic Langflow ransomware campaign
CampaignHow related: JADEPUFFER was first documented by Sysdig, describing it as the first-ever ransomware operation run end-to-end with the help of a large language model (LLM).
About this happening: JADEPUFFER now spans a Microsoft Azure destructive operation in early June 2026 and earlier Langflow ransomware activity tied to CVE-2025-3248. Microsoft track...
Latest development: 28.09.2026 12:08
JADEPUFFER, tracked by Microsoft as Storm-3168, used compromised service principals inside a Microsoft Azure environment to enumerate and then delete Azure Storage Accounts, SQL databases, Key Vaults, Function Apps, recovery protection locks, Virtual Machines, and App Services. Microsoft observed one service principal handling reconnaissance and resource discovery while another handled destructive operations and credential collection; most targeted Azure Storage accounts were successfully deleted, some deletions were blocked by Azure resource locks and storage account-level deletion protection, and no ransom note or successful data exfiltration was observed.
Timeline
-
28.09.2026 12:08 2 articles · 3h ago
Langflow actively exploited initial access flaw (CVE-2025-3248)
Initial DisclosureCVE-2025-3248 in Langflow was already being used as an entry point in the early June 2026 intrusion. The exploit gave JADEPUFFER a foothold that led to credential theft and destructive follow-on actions.
Show sources
- JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources — thehackernews.com — 28.09.2026 12:08
- JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources — thehackernews.com — 28.09.2026 12:08