organization · 3 records
Unit 42

JADEPUFFER group targets AI infrastructure using new ENCFORGE ransomware strain
A threat actor known as JADEPUFFER deployed a new Go-based ransomware strain called ENCFORGE targeting AI model files and infrastructure after exploiting a remote code execution vulnerability in Langflow.
2 outlets Cyber read

Russian hackers exploit Zimbra vulnerability to steal email data
A Russian state-supported espionage group exploited a zero-day vulnerability in Zimbra's webmail client to steal email data and authentication codes from Western government and commercial organizations between July 2025 and early 2026.
1 outlet Cyber read

Researchers identify three passkey hijacking vulnerabilities in Google Chrome Password Manager
Unit 42 researchers disclosed three passkey hijacking vulnerabilities in Google Chrome Password Manager requiring local malware compromise on Windows systems.
1 outlet