product · 3 records
Redis

JADEPUFFER group targets AI infrastructure using new ENCFORGE ransomware strain
A threat actor known as JADEPUFFER deployed a new Go-based ransomware strain called ENCFORGE targeting AI model files and infrastructure after exploiting a remote code execution vulnerability in Langflow.
2 outlets Cyber read

RedisBloom security vulnerability discovered in versions before 2.8.20
CVE-2026-25589 disclosed: RedisBloom is a probabilistic data structures module for Redis. In all versions of RedisBloom before 2.8.20, the module does not properly validate serialized values processed through the Redis RESTORE
2 outlets Cyber read

New NadMesh botnet targets exposed cloud credentials and API keys
A new Go botnet named NadMesh is targeting exposed AI and development services to harvest cloud credentials, Kubernetes tokens, and API keys, with operators claiming thousands of compromised AWS keys.
1 outlet Cyber read