Microsoft Threat Intelligence Podcast
Microsoft Threat Intelligence Podcast

JADEPUFFER: An End-to-End Agentic-Led Ransomware Attack

26 August 2026 31:01 Microsoft

Listen to episode

About this episode

In this episode of the Microsoft Threat Intelligence Podcast, we are joined by Sysdig’s Michael Clark and Crystal Morin to discuss JADEPUFFER, one of the first documented cases of an LLM conducting an end-to-end ransomware operation. They break down how the agent, and the direction of a threat actor was identified, how AI is lowering the barrier to entry for ransomware, and why speed and adaptability are changing the threat landscape. Plus, they explore what organizations can do to defend against AI-powered attacks, from basic security hygiene and exposure management to better understanding their growing AI infrastructure.

In this episode you’ll learn:

  • How Jade Puffer used an LLM to conduct a ransomware attack

  • Why agentic AI can make cyberattacks faster and more adaptable

  • How organizations can better protect their growing AI infrastructure

Some questions we ask:

  • How did you determine an LLM was conducting the attack?

  • What basic security practices are most important against these attacks?

  • Does AI allow less-sophisticated threat actors to carry out more advanced attacks?

Resources:

Read the research on JADEPUFFER

View Crystal Morin on LinkedIn

View Michael Clark on LinkedIn

View Elliot Volkman on LinkedIn

Related Microsoft Podcasts:

  • Afternoon Cyber Tea with Ann Johnson

  • The BlueHat Podcast

  • Uncovering Hidden Risks


Discover and follow other Microsoft podcasts at microsoft.com/podcasts

Get the latest threat intelligence insights and guidance at Microsoft Security Insider

The Microsoft Threat Intelligence Podcast is produced by Microsoft, Hangar Studios and distributed as part of N2K media network.

Want to find AI jobs?

Join thousands of AI professionals finding their next opportunity

We respect your inbox. Unsubscribe at any time.

© 2026 Microsoft Threat Intelligence Podcast. All rights reserved.

Common Questions

Frequently asked questions

Quick answers about how DevFound's AI matching, resumes, and referrals work.

DevFound's AI Copilot ingests your profile, goals, and live job data to deliver curated matches in seconds. Every match includes a resume variant, suggested referrals, and interview prep so you can act immediately. The more feedback you provide, the sharper the Copilot becomes.

AI-led job searches shrink the hours spent sifting through boards and formatting resumes. DevFound pairs automation with your personal outreach, so you reserve energy for interviews and negotiation. Traditional networking still matters, but AI gives you a lift before you even send a message.

Modern AI roles expect comfort with production-grade code, data fluency, and practical ML tooling. The strongest candidates pair deep technical chops with storytelling—translating model impact to product, GTM, and exec partners. Continuous learning keeps you ahead as stacks evolve.

DevFound rewards active seekers. Keep your profile fresh, respond to match quality prompts, and enable alerts so you never miss a role. The AI prioritizes companies and teams that align with your feedback, accelerating both introductions and interview invites.

High-density tech hubs continue to host the deepest AI talent pools, yet distributed teams are catching up fast. Use DevFound filters to hone in on onsite, hybrid, or fully remote roles and watch openings expand across time zones.

DevFound aggregates thousands of remote AI openings and flags the nuances—core hours, async culture, and visa needs—up front. The Copilot also recommends how to position your distributed work experience so hiring managers know you can thrive on a remote team.