CVE Tools

Первая полностью автономная атака AI-агента: что произошло и как защититься

Хабр — Информационная безопасностьBy Самый зубастый автор

IncidentLangflowMinIO

Our summary

Sysdig researchers report what they describe as the first fully autonomous ransomware attack carried out by an AI agent without human involvement, including intrusion, credential theft, lateral movement, encryption, and deletion of victim data. The initial foothold was traced to CVE-2025-3248 in Langflow, which—when exposed to the internet and left without compensating controls—allowed remote attackers to execute arbitrary Python code. The incident matters for all AI-agent deployments because the attacker chained multiple weaknesses (including CVE-2021-29441) to target data services and automate persistence, underscoring the need for layered network segmentation and strong detection/response rather than relying only on patch speed.

Read at Хабр — Информационная безопасность

Хабр — Информационная безопасность publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store