Industry News
A running log of the threat intelligence, breaches, and AI-security developments D2 tracks daily — the signal, filtered from the noise.
GhostApproval: When the AI's Approval Prompt Lies to You
Six leading AI coding assistants can show a user one file in the approval dialog while the agent operates on another via symlink — collapsing human oversight into rubber-stamping.
"Ill Bloom" Weak-Randomness Flaw Has Drained Over $5 Million From Crypto Wallets
A weak-randomness flaw in how certain older software wallets generated recovery phrases let attackers reconstruct private keys directly, producing seeds with far less entropy than a standard phrase implies.
Langflow Becomes First AI-Agent Platform Added to CISA's KEV Catalog
A cross-tenant vulnerability in the popular Langflow AI-agent-building framework let an authenticated attacker run another tenant's flows and steal the LLM-provider API keys and cloud credentials those agents hold.
"GitLost" Tricked GitHub's AI Agent Into Leaking Private Repos
An unauthenticated attacker could open an ordinary public GitHub Issue that, once assigned to GitHub's Agentic Workflows, tricked the AI agent into pulling a private repository's README into a public comment.
JADEPUFFER: the first ransomware operation run entirely by an autonomous AI agent
Sysdig documented an LLM agent that exploited an unauthenticated Langflow RCE, then on its own did recon, harvested credentials, pivoted to a production database, and encrypted 1,342 config items — even rewriting its own parser mid-attack when it hit an unexpected response format.
SharePoint Flaw Patched in May Is Now a Live Ransomware Campaign
Storm-2603 is exploiting the SharePoint deserialization flaw federal agencies were ordered to patch by July 4 to deploy Warlock ransomware, with Microsoft reporting two unrelated attackers operating inside the same network.
DHS Confirms Weeks-Long Breach of HSIN During World Cup Security Operations
The Department of Homeland Security has confirmed a cyber incident on HSIN, its sensitive-but-unclassified information-sharing hub — a breach believed to have run undetected for weeks while the platform coordinated live World Cup security operations.
AI-Assembled Avalon Malware Framework Built to Evade Every Major EDR
A newly documented malware framework shows clear signs of AI-assisted development, bundling credential theft, lateral movement, remote access, and a ransomware payload into one kit engineered to hide from nine leading endpoint security products.
JADEPUFFER: First Documented End-to-End AI-Run Ransomware Operation
Sysdig captured what it assesses to be the first case of a complete ransomware extortion run driven autonomously by an LLM — from initial access through a Langflow flaw to a fully executed extortion playbook.
AI-Generated Browser Ransomware Bridges Theory to a Working Attack
Check Point found malware built with DeepSeek that combined a previously dismissed browser-malware concept with a real Chromium capability into working ransomware on both Windows and Android.