Part of a story covered by 10 sources: “Storm-3168 (JADEPUFFER) used two stolen Azure service principals to delete 100+ storage accounts and harvest keys” — merged summary and timeline →
JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack
AI summary · grok-4.7
JadePuffer allegedly used exposed credentials to delete an Azure tenant's storage, apps, and databases.
Dark Reading reports that JadePuffer, described as an agentic threat actor, compromised an Azure tenant. The actor may have used exposed credentials to reach cloud resources and then deleted storage, applications, and databases. The short report frames the incident as a destructive cloud attack rather than a confirmed extortion case.
- JadePuffer is described as an agentic AI threat actor.
- Exposed credentials may have provided access to an Azure tenant.
- The actor deleted cloud storage, applications, and databases.
Full article
The "agentic threat actor" may have used exposed credentials to access resources and delete cloud-based storage, applications, and databases.
The full text could not be extracted from this site (paywall, bot protection or heavy scripting). Read it at darkreading.com.