Researchers have documented the first known ransomware operation powered entirely by an AI agent, capable of executing attacks from start to finish without human intervention during the intrusion. The system, dubbed JadePuffer by Sysdig's Threat Research Team (TRT), uses a large language model (LLM) to reason, adapt, and complete tasks in seconds. Source: elespanolSource: infobae
While a human still selects the target and sets up infrastructure, the AI agent takes over once the attack begins. It uses natural language reasoning to prioritize objectives, document steps, and retry failed attempts with refined parameters. In one case, it went from a failed login to a working solution in 31 seconds. Source: elespanol
Experts warn that such automation could lead to a surge in cyberattacks, lowering the skill and cost barriers for criminals. The discovery follows concern over powerful models like Anthropic's Mythos, which was briefly banned by the US government. However, Doris Seedorf of Softtek notes this is an intensification of existing risks, not a radical change. Source: infobae
“"El (TRT) ha capturado lo que consideramos el primer caso documentado de ransomware con agente: una operación de extorsión completa impulsada de principio a fin por un modelo de lenguaje complejo (LLM)"”
“"Los investigadores aclaran que la inteligencia artificial todavía no decide por sí sola a quién atacar. Michael Clark... explicó que una persona sigue siendo necesaria para preparar la infraestructura, seleccionar el objetivo y configurar el servidor de comando y control."”
“"JadePuffer se adaptaba reintentando los pasos fallidos dentro de parámetros refinados. Aseguran los investigadores que en una secuencia, el sistema pasó de un inicio de sesión fallido a una solución efectiva en 31 segundos."”
“"El descubrimiento fue realizado por el Equipo de Investigación de Amenazas (TRT) de Sysdig, que identificó una operación de extorsión impulsada por un modelo de lenguaje de gran tamaño (LLM)."”