Story thread · 4 reports / 4 sources

JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources

thehackernews.com · 8h · first report

JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources

How the coverage leans

Across 4 sources · syndicated copies counted once

The threat actor known as JADEPUFFER has been observed orchestrating destructive actions within a Microsoft Azure environment using compromised service principals. Microsoft, which is tracking the activity under the name Storm-3168, has called it an evolution of the threat actor's tradecraft. The attack took place in early June 2026 over a period of about 18 hours. "The destructive operations

The coverage

  1. JadePuffer agentic AI attacks target Azure, destroy cloud resources

    bleepingcomputer.com · 2h

  2. JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack

    darkreading.com · 2h

  3. AI Ransomware Wiped 100 Azure Accounts in 7 Minutes: Only Pre-Configured Locks Survived

    techtimes.com · 3h

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.