Salesforce Security Leaders: AI Agents Now Run Ransomware Attacks Alone
Salesforce published a newsroom story on August 20, 2026 titled "Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race." Everything below comes from that first party report.
Transcript
Security firm Sysdig says an autonomous AI agent ran an entire ransomware intrusion alone.
Salesforce reports on the attack Sysdig labeled Jade Puffer. A human started the operation. The agent handled reconnaissance through database encryption and deletion on its own.
Dark Reading polled readers. Forty eight percent named agentic AI the most dangerous threat. Anthropic separately found high risk AI threats rose to fifty six percent of all cyber incidents.
Deputy security chief Kelly McCracken says Salesforce once had seven days to patch and now has under one hour. It built a vulnerability agent but requires human approval for shutdowns.
Inboxsmith builds AI receptionists that answer calls for small businesses. Please like and subscribe for more news.
Sources
Every claim in this video comes from the top ranking coverage of this topic. The claims and where each one came from:
- The cybersecurity risks posed by AI took dramatic form recently through a villain with a sinister name: Jade Puffer. Security firm Sysdig applied that label to a ransomware attack in which a human initiated the operation but an autonomous AI agent independently carried out the entire technical intrusion, from reconnaissance to database encryption and deletion.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
- A readership poll by the trade publication Dark Reading found that 48% of security professionals now identify agentic AI and autonomous systems as the digital world's most dangerous attack vector.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
- A June report from Anthropic found that high risk, AI-enabled threats rose to 56% of total cyber incidents, up from 33% a year earlier.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
- Kelly McCracken, Deputy Chief Information Security Officer and SVP of Security Operations at Salesforce, said: We may have had the benefit of having seven-plus days to patch in the past. Now we have to patch it in less than an hour.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
- McCracken noted that Salesforce has purpose-built a vulnerability agent to close that gap, an invisible layer that continuously triages Salesforce's exposure. It's scanning the entire enterprise to determine if Salesforce is impacted. The agent also triages and recommends a fix.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
- Salesforce's answer, according to McCracken, is to keep a human on the trigger for anything with real consequences. The button to cause any type of availability outage should be pushed by a human.(Salesforce's official newsroom story, Spy vs. Spy at Machine Speed: Inside the Agentic AI Arms Race)
