MediumNews
Autonomous agents attack Azure using compromised identities, destroying resources
- Published
- Record updated
Summary
Microsoft reports that Jadepuffer, an autonomous AI attacker also tracked as Storm-3168, has expanded into Azure environments using two compromised service principals in the same tenant. One principal performed reconnaissance over more than 15 hours with over 300 successful read operations, while the other handled discovery, destructive actions and credential collection. Within about 35 minutes the attackers attempted more than 150 destructive or credential-related operations, including over 100 storage account deletions, most of them successful.
Topics
Related items
- MediumHackers abuse Google Ads, Bing redirects to push Claude ClickFix attacksSame vendor · BleepingComputer
- InfoAnthropic bans users from being 'cruel' to its AI systemsSame vendor · BBC Technology
- InfoThe Download: AI’s refusal problem and weight-loss drug side effectsSame vendor · MIT Technology Review
- HighGHSA-h4xc-3qfq-jf93: Pydantic AI Web chat UI (`Agent.to_web()`, `clai web`): a website visited by the developer can trigger agent runs and server-side tool execution on the local chat endpointSame vendor · GitHub Advisory Database
- InfoMicrosoft Teams to get support for third-party deepfake detection toolsSame vendor · BleepingComputer