In this blog post, “What Every SMB Using Azure Needs to Know About AI-Driven Cyberattacks,” we will explain how sophisticated agentic-powered ransomware compromised and destroyed an entire organisation’s Azure tenant without hacking a single user account.
This AI agent-driven incident was first discovered in July 2026 and is known as the first documented agentic ransomware operation to destroy an entire Azure tenant and delete hundreds of resources in seconds.
Behind the fascinating attack is a group called Storm-3168 that developed a cloud operation targeting organisations that run their cloud infrastructure in Azure.
The method is simple but driven by agentic automation. The operation starts with discovering workload identities in the form of service principals in public repositories. In a specific case, a GitHub issue contained credentials that were publicly exposed. The credentials were removed from the GitHub issue but never changed in Azure, which did not help.
Publicly Exposed Credentials
In my 20+ years of experience in IT, software development, and cybersecurity, I have witnessed many incidents where credentials in the form of secrets were exposed publicly by developers and engineers without them even realising it.
Of course, there are many engineering standards that can prevent these kinds of incidents, and large enterprises apply them. However, in many SMBs, these standards are not common and are definitely not enforced.
As a rule, I always recommend that my customers enable and implement Microsoft Defender for Cloud, which offers protection against agentic and non-agentic attacks that can literally destroy and dismantle an entire business operation and inflict damage worth hundreds of thousands of dollars.
Full Destruction in 7 Minutes
When I read the post-incident report of the July 2026 attack, I was amazed that the entire attack, from discovery to full destruction, took less than 24 hours. This means that the attack was AI-orchestrated; otherwise, it would have taken days, if not weeks, for a human to execute.
The attack was broken down into seven stages, with the first stage being the discovery of all the Azure resources, which took almost 16 hours. Once the discovery was completed, the rapid destructive phase began and took seven minutes.
To maximise the impact of the destruction, the attackers ran a final sweep of all the remaining storage access keys.
Attack Surfaces and Agentic Cyber Attacks
The key takeaway is that this kind of attack happened because of an obvious credential exposure in a public GitHub issue; however, that is only one part of the story.
The main story here is the speed of destruction and automation that is AI-driven and does not leave an organisation a second chance to save its infrastructure. The speed of the attack needs to resonate with managers at all levels, including business owners.
When an organisation is facing a coordinated automated attack, the only defensive position it has is to use a security tool that is also driven by AI automation.
Get in Touch
If you need help defending your Azure cloud infrastructure from coordinated agentic AI-driven attacks, get in touch with us, and we can design and implement Microsoft Defender for Cloud in your tenant in