{
 "license": "CC-BY-4.0",
 "attribution": "Fide AI, Agentic Cyber Explorer",
 "url": "https://agentic-cyber-explorer.pages.dev/events/microsoft-storm-3168-azure-destruction-2026/",
 "asOf": "2026-09-26",
 "id": "microsoft-storm-3168-azure-destruction-2026",
 "date": "2026-09-25",
 "datePrecision": "day",
 "title": "Microsoft details Storm-3168's automated destruction of Azure resources through compromised service principals",
 "lane": "attack",
 "kind": "incident",
 "summary": "Microsoft reports that Storm-3168, which it links to the JADEPUFFER operator Sysdig described as agentic ransomware, used two compromised service principals to enumerate an Azure tenant, then attempted more than 150 destructive or credential-collection operations in 35 minutes, deleting most targeted storage accounts along with a Key Vault and Function App. Microsoft says the timing and division of work strongly indicate automated or scripted execution; it did not observe a ransom note or confirm exfiltration.",
 "whyItMatters": "It shows an automated, identity-driven cloud attack by an operator linked to agentic ransomware as seen in the defender's logs, and how independent safeguards such as resource locks limited the damage.",
 "actors": [
  "microsoft",
  "jadepuffer"
 ],
 "topics": [
  "ai-enabled-intrusion",
  "threat-intelligence",
  "data-exfiltration"
 ],
 "atlas": [],
 "artifacts": [],
 "sources": [
  {
   "url": "https://www.microsoft.com/en-us/security/blog/2026/09/25/storm-3168-agentic-driven-cloud-attacks-using-compromised-service-principals/",
   "publisher": "Microsoft Security",
   "title": "Storm-3168: Agentic-driven cloud attacks using compromised service principals",
   "date": "2026-09-25",
   "type": "primary",
   "accessed": "2026-09-25"
  }
 ],
 "keyFacts": [
  {
   "fact": "The destructive sequence lasted about seven minutes and included more than 100 storage-account deletion attempts; resource locks and deletion protection saved some accounts.",
   "locator": "A seven-minute destructive sequence"
  },
  {
   "fact": "Attempts to delete SQL databases failed because the requests used an unsupported API version.",
   "locator": "A seven-minute destructive sequence"
  },
  {
   "fact": "The service principal’s secret had earlier been exposed in a public GitHub issue and remained in its edit history; Microsoft could not confirm it was the access path.",
   "locator": "Possible initial access"
  },
  {
   "fact": "Microsoft's headline calls the attacks agentic-driven, but its analysis says only that the timing strongly indicates automated or scripted execution.",
   "locator": "Introduction"
  }
 ],
 "significance": 4,
 "fideQuestions": [],
 "methods": [],
 "review": "assistant-drafted",
 "addedOn": "2026-09-25"
}