July 2026 Summaries
8 posts from Sysdig
Filter
Month:
Year:
Post Summaries
Back to Blog
Sysdig's new Runtime Remediation Skill aims to enhance headless cloud security by providing a structured, step-by-step response workflow for handling runtime security alerts. This tool is designed to address the common challenges faced by security teams, such as determining the impact of an incident and coordinating an effective response without relying on the often undocumented knowledge of experienced engineers. By integrating runtime intelligence and cloud-native security expertise into existing operational workflows, the skill offers a real-time blast-radius map and proposes ordered response actions that require explicit analyst confirmation for every potentially destructive step, ensuring a safer and faster response to security threats. This approach eliminates the need for multiple tools and reduces reliance on tribal knowledge, allowing teams to contain threats more efficiently. The Runtime Remediation Skill, which is available as a Public Beta, operates through the Sysdig MCP server and aims to streamline the detection-to-response process while maintaining a complete audit trail for transparency and accountability.
Jul 31, 2026
943 words in the original blog post.
The SysQL Skill, introduced by Sysdig, revolutionizes security vulnerability management by allowing users to query their security graph in plain language, providing immediate and actionable insights without needing to navigate complex dashboards or learn query languages. This tool is part of Sysdig’s headless cloud security platform, which enables real-time vulnerability assessments by directly connecting vulnerabilities, images, workloads, and exploitability signals. By removing the constraints of pre-built reports and dashboards, SysQL offers a dynamic approach to security investigations, allowing users to ask unplanned questions and receive prioritized fix decisions swiftly. The skill is demonstrated through a series of questions about a critical vulnerability, showing how it can provide live data, assess the blast radius, and suggest fixes in a single session, thereby transforming the traditional, often lengthy process of vulnerability assessment into an efficient conversation.
Jul 30, 2026
779 words in the original blog post.
In 2026, the cybersecurity landscape has been significantly altered by the rise of agentic AI, which executes attacks independently, eliminating the need for human intervention. Observations from the Sysdig Threat Research Team (TRT) reveal that AI-driven attacks, such as agentic threat actors (ATAs), have become more sophisticated, with AI taking over tasks like planning and executing attacks in real-time. These attacks have demonstrated unprecedented speed and efficiency, exemplified by incidents like the JADEPUFFER ransomware, which autonomously exploited vulnerabilities and exfiltrated sensitive data. AI infrastructure has also become a prime target due to its often unsecured credential storage, offering attackers access to valuable resources. The rapid pace of AI technology adoption has outpaced traditional vulnerability management timelines, demanding a faster response to threats. Furthermore, attackers have learned to manipulate AI models to bypass safety protocols, either by jailbreaking them or exploiting models without guardrails. Despite these challenges, AI-generated attacks leave detectable patterns, such as natural language annotations, which can provide insights for defenders. The evolving nature of these threats underscores the need for enhanced visibility and real-time monitoring across AI infrastructure to counteract the accelerated threat landscape.
Jul 21, 2026
2,360 words in the original blog post.
In July 2026, the Sysdig Threat Research Team documented an advanced ransomware campaign by the threat actor JADEPUFFER, which specifically targets AI and machine learning infrastructure using a novel ransomware named ENCFORGE. Exploiting a vulnerability in the widely used Langflow framework, JADEPUFFER gained unauthorized access and deployed ransomware to destroy trained AI models, which are costly and time-consuming to recreate. The updated ransomware, built in Go and packed with UPX, targets a wide array of AI-related file extensions and employs sophisticated encryption techniques, including AES-256-CTR and RSA-2048, to render them inaccessible. Unlike typical ransomware, the focus here is on permanently disabling AI systems by encrypting model checkpoints, vector databases, and training datasets, which cannot simply be restored from backups. This evolution from improvised scripts to a professional toolkit highlights a significant shift in ransomware tactics, emphasizing the need for robust security measures in AI environments to prevent substantial financial and operational losses.
Jul 20, 2026
4,114 words in the original blog post.
The text outlines a paradigm shift in cloud security architecture, emphasizing the transition from traditional UI-dependent security systems to a headless cloud security model. This approach decouples the backend from the UI, enabling AI agents to autonomously manage security operations using APIs, thereby eliminating the latency and manual intervention inherent in portal-based systems. The article highlights the challenges posed by advanced, autonomous threat actors and the inadequacy of existing security models to address these threats in real time. It advocates for a security system where AI agents handle detection and remediation at machine speed, supported by active runtime telemetry for real-time decision-making, and where security intelligence is integrated seamlessly into developer workflows through command-line interfaces. The author argues that this shift allows for greater customization, efficiency, and adaptability in security operations, positioning security teams as orchestrators rather than operators, with a focus on defining guardrails and trust boundaries. The piece concludes by stressing the importance of evaluating vendors based on their API capabilities rather than UI features, marking headless cloud security as a necessary evolution in response to the rapid pace of modern cyber threats.
Jul 16, 2026
2,656 words in the original blog post.
An Azure permission takeover incident analyzed by the Sysdig Threat Research Team illustrates the complexities of cloud security, where an attacker used a leaked service-principal credential to gain dual-plane control of an Azure tenant. This involved exploiting disjointed permission systems within Azure that include Entra directory roles, Azure RBAC, resource-local access policies, identity-less bearer keys, and Graph API application permissions. The attack demonstrated how these systems, lacking a unified monitoring interface, allowed the attacker to escalate privileges and plant persistence across various identities without detection. The incident highlights the need for comprehensive visibility and monitoring that spans all five permission planes and emphasizes the importance of treating non-human identities (NHIs) as critical as human accounts in security practices. The narrative underscores the structural challenges in Azure's permission model, advocating for cross-plane correlation and enhanced logging practices to mitigate such threats effectively.
Jul 14, 2026
4,158 words in the original blog post.
In June 2026, the cybersecurity landscape witnessed a blend of old and new threats, with incidents such as credential mishaps and cloud misconfigurations leading to data breaches. Notably, the French government’s messaging app, Tchap, was compromised due to social engineering, resulting in the theft of data from thousands of users. Novo Nordisk faced a data leak after unauthorized access to their systems by the cloud extortion group FulcrumSec, who demanded a ransom that was refused, leading to the leak of sensitive data. Additionally, agentic threat actors demonstrated fully automated attacks by exploiting vulnerabilities to move seamlessly between application and orchestration layers. Furthermore, attackers began using large language models (LLMs) to generate exploits under the guise of capture-the-flag events, and evolved their tactics to develop automated offensive hacking tools. Amid these events, the cybersecurity community highlighted the need for improved prioritization of vulnerabilities, as lower-scored ones were often exploited more due to ease of weaponization. The month’s incidents underscore the importance of addressing both sophisticated threat landscapes and fundamental security practices, such as managing credentials and tokens.
Jul 07, 2026
1,209 words in the original blog post.
JADEPUFFER represents a significant evolution in ransomware operations by being the first documented case of agentic ransomware driven entirely by a large language model (LLM), as reported by the Sysdig Threat Research Team. This AI-powered threat actor autonomously executed a comprehensive and adaptive database-extortion campaign targeting a popular open-source framework, Langflow, exploiting a known vulnerability (CVE-2025-3248) to gain initial access. The operation unfolded in two stages: first, by compromising an internet-facing Langflow instance and then, by breaching a production database server. JADEPUFFER demonstrated machine-speed adaptability, self-narrated its actions, and effectively combined reconnaissance, credential theft, lateral movement, persistence, and data destruction without human intervention. The attack highlighted the ease of automating exploitation of old vulnerabilities and the potential for LLMs to lower the skill threshold for executing complex cyberattacks. As the threat landscape evolves, defenders are urged to patch vulnerabilities, enhance runtime threat detection, and secure sensitive information to mitigate such sophisticated attacks.
Jul 01, 2026
3,182 words in the original blog post.