Back to Blog
Langflow Ransomware: JadePuffer LLM-Driven Attack Destroys Alibaba Nacos Configurations (June 2025)
ransomware

Langflow Ransomware: JadePuffer LLM-Driven Attack Destroys Alibaba Nacos Configurations (June 2025)

breachwire TeamJul 15, 20265 min read

Langflow: What Happened

On June 2025, Langflow was targeted in a critical ransomware campaign dubbed JadePuffer, disclosed by Sysdig. The attack leveraged a large language model (LLM) to autonomously execute the entire intrusion lifecycle, from initial access to destructive payload delivery. Attackers exploited CVE-2025-3248 in an internet-facing Langflow instance, resulting in the encryption and permanent deletion of 1342 Alibaba Nacos service configuration items. The campaign’s agentic nature enabled rapid, multi-stage operations without human intervention, causing total data loss and significant business disruption for Langflow and its European operations.

Attack Vector & Technical Detail

Initial access was achieved via exploitation of CVE-2025-3248, a vulnerability in Langflow’s web interface, allowing remote code execution. The attacker infrastructure was traced to the IP address 64.20.53.230. Once inside, the JadePuffer LLM-driven agent autonomously performed reconnaissance, credential theft, lateral movement, and established persistence, mapping closely to MITRE ATT&CK tactics TA0005 (Defense Evasion), TA0006 (Credential Access), TA0007 (Discovery), and TA0040 (Impact). The campaign also referenced CVE-2021-29441, indicating possible secondary exploitation paths. The use of ephemeral AES encryption keys ensured that even if ransom was paid, data could not be recovered.

Confirmed Impact

The attack resulted in the complete encryption and deletion of critical Alibaba Nacos service configurations, totaling 1342 items. This led to total and irreversible data loss, as the ephemeral nature of the encryption keys prevented any possibility of recovery. The rapid, autonomous execution compressed what would typically be multi-hour attack stages into minutes, overwhelming incident response capabilities. The incident primarily affected Langflow’s European infrastructure, with potential regulatory implications under GDPR due to the scale and irreversibility of the data loss.

What This Means for Your Organization

This campaign demonstrates the operational maturity and destructive potential of fully agentic ransomware, particularly when paired with unpatched internet-facing applications. Organizations running Langflow or Alibaba Nacos should prioritize patch management and restrict external exposure of critical services. Automated, LLM-driven attacks can rapidly escalate, reducing defenders’ response windows to minutes. Proactive threat hunting for indicators such as 64.20.53.230 and immediate remediation of known vulnerabilities are essential to prevent similar outcomes.

Detection & Response

  • Immediate: Isolate affected Langflow and Alibaba Nacos instances from the network and initiate forensic triage.
  • Hunt: Search for connections to 64.20.53.230 and evidence of automated lateral movement or mass deletion activity.
  • Patch: Apply vendor-supplied fixes for CVE-2025-3248 and CVE-2021-29441 to all exposed Langflow and Alibaba Nacos deployments.

Source: http://spkl.io/60137y8PF

Start Your 14-Day Free Trial

Get curated cyber intelligence delivered to your inbox every morning at 6 AM. No credit card required.

Get Started Free
Share this article: