Ray - Tool

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
November 18, 2025
Last Seen
August 2, 2026

Ray is an open-source distributed computing framework used to orchestrate AI/ML workloads.

Ray is a tool tracked across 5 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed November 18, 2025; most recent activity August 2, 2026.

Overview

Ray is an open-source distributed computing framework used to orchestrate AI/ML workloads. Recent reporting describes a vulnerability in Ray that can be exploited to hijack AI clusters, with ShadowRay 2.0 actively leveraging this flaw to seize control of cluster nodes. This highlights the risk of insecure AI infrastructure and the need for timely patching and tight access controls.

Related Threat Clusters

  • Vect and TeamPCP Form Alliance for Ransomware Operations

    In late March 2026, the Vect ransomware group partnered with TeamPCP, a credential theft specialist, to enhance their cybercriminal operations. This collaboration aims to leverage TeamPCP's extensive credential…

    8 articles · Updated July 2, 2026
  • Black Hat USA 2026 Reveals New AI Agent Exploitation Threats

    At Black Hat USA 2026, 29% of sessions focused on AI security, highlighting a shift in attack methodologies targeting agent infrastructure. Significant briefings from Check Point Research revealed vulnerabilities in…

    2 articles · Updated August 2, 2026
  • ShadowRay 2.0 Campaign Exploits Ray Clusters for Crypto Mining

    A global campaign named ShadowRay 2.0 is targeting exposed Ray clusters, exploiting the unpatched CVE-2023-48022 vulnerability. The attacks, attributed to a threat actor known as IronErn440, have been active since at…

    8 articles · Updated November 18, 2025
  • TeamPCP Exploits Cloud Misconfigurations for Large-Scale Attacks

    TeamPCP, a cloud-native threat actor that emerged in December 2025, is targeting misconfigured cloud services such as Docker APIs and Kubernetes clusters. The group is building a distributed proxy and scanning…

    3 articles · Updated February 10, 2026
  • ShadowRay 2.0 Campaign Targets Vulnerable Ray Clusters for Cryptomining

    The ShadowRay 2.0 campaign exploits a critical vulnerability (CVE-2023-48022) in the Ray open-source framework, allowing attackers to hijack exposed Ray clusters for cryptomining, data theft, and DDoS attacks. Oligo…

    6 articles · Updated November 20, 2025

Recent Intelligence Reports

  • Read the article at Forkast — forkast.news · August 2, 2026
  • Black Hat USA 2026 Signals Agent Exploitation Has Become Its Own Infrastructure Discipline — Cryptorank · August 2, 2026
  • Vect and TeamPCP partner for ransomware campaigns — News.Sophos · July 2, 2026
  • TeamPCP Industrializes Cloud Misconfigurations Into a Self — Cybersecuritynews · February 10, 2026
  • Internet-exposed Ray clusters targeted by self-replicating botnet — Scworld · November 20, 2025
  • ShadowRay 2.0 Exploits Ray Vulnerability to Hijack AI Clusters — Esecurityplanet · November 19, 2025
  • Self-replicating botnet attacks Ray clusters — Theregister · November 19, 2025
  • Cryptomining Campaign Exploiting Exposed Ray AI Infrastructure (Campaign) — Wiz · November 19, 2025

Frequently asked questions

What is Ray?

Ray is an open-source distributed computing framework used to orchestrate AI/ML workloads.

Is Ray still active?

The most recent intelligence report mentioning Ray on ThreatCluster is dated August 2, 2026. Activity was first observed November 18, 2025, giving a tracked span from then to August 2, 2026.

What is Ray associated with?

Across ThreatCluster reporting, Ray most frequently co-occurs with DeadCatx3, IronErn440, ShellForce, TeamPCP, Botnet, among 12 tracked related entities.

What are the latest developments involving Ray?

The most significant recent cluster is “Vect and TeamPCP Form Alliance for Ransomware Operations” (8 articles · Updated July 2, 2026). Ray appears across 5 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on Ray?

Ray appears in 10 intelligence report mentions across 5 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown