Microsoft says AI-driven actor JadePuffer wiped Azure cloud resources in minutes
Microsoft Security Research reported that a threat actor it tracks as Storm-3168, also known as JadePuffer, compromised two legitimate Azure service principals belonging to one tenant and used them to map the victim's environment before launching an automated destruction campaign against storage, applications, databases and backup controls. The attack, which occurred in early June, involved one account spending over 15 hours on reconnaissance while a second executed rapid, wide-ranging discovery and destructive operations within seconds. Microsoft said the pattern matches ransomware or extortion tactics but noted it did not observe a ransom note or confirm data theft.