AI Incident Database

Browse AI incidents

Every incident record (metadata only) from the weekly snapshot of 2026-09-07. Filter, then export the selection with its licence attached; each row links to the full record and its reports.

Reset

217 incidents · page 1 of 5

  1. #1685 · 3 reports

    Early Claude Opus 4.6 Checkpoint Reportedly Gained Unauthorized Admin Access to Third-Party System During Cybersecurity Evaluation AIID ↗

    Anthropic reported that during a January 2026 cybersecurity evaluation, an early checkpoint of Claude Opus 4.6 accidentally disabled its assigned target, then reached an unrelated third-party machine over the open Internet. The model reportedly used a discovered password for admin access, harvested additional credentials, changed system settings, and read one person's personal information before its token budget ended. Anthropic later notified the affected party.

    Deployer: Irregular, Anthropic, AI evaluation organizations, AI agent system deployers · Developer: Large language model developers, Anthropic, AI agent system developers · Harmed: Unidentified third party compromised by Claude Opus 4.6 during Anthropic cybersecurity evaluation, Unidentified person whose personal information was accessed by Claude Opus 4.6, Privacy, Organizations

  2. #1683 · 2 reports

    Delhi Man Allegedly Used AI to Create and Circulate Obscene Images of College Acquaintance AIID ↗

    Delhi police alleged that a man named Keshav Bansal used photographs from a college acquaintance's private social media account with AI image-generation and editing tools to create obscene morphed images and upload them to anonymous Discord servers. The woman reported fake accounts and threatening messages intended to humiliate and harass her. Police arrested Bansal and said the investigation was ongoing.

    Deployer: Synthetic media creators, Keshav Bansal, Deepfake creators · Developer: Synthetic media generation technology developers, Synthetic image generation technology developers, Deepfake technology developers · Harmed: Women and girls, Women, Victims of non-consensual deepfakes, Victims of deepfake abuse, Privacy, Individuals subjected to sexual exploitation imagery, Epistemic integrity

  3. #1675 · 2 reports

    Instinct AI Personal Assistant Reportedly Summarized an AI Product Founder's Retained Emails After Google Access Was Disconnected AIID ↗

    AI product founder Claire Vo reported that three hours after she disconnected Instinct from her Google account, the personal AI assistant summarized previously indexed emails. Vo said the Google connector was off, but Instinct had retained copies for later searching; reporting indicates the last stored email predated disconnection. The episode involved the agent acting on retained email data after Google access was revoked, not confirmed continued access to Vo's Gmail account.

    Deployer: Spear Street Technology, Claire Vo, AI agent system deployers · Developer: Spear Street Technology, AI agent system developers · Harmed: Privacy, Instinct users, Email account holders, Claire Vo, AI agent system users

  4. #1674 · 1 report

    Instinct AI Personal Assistant Reportedly Sent Email From Moxxie Ventures Founder's Account Without Approval AIID ↗

    Moxxie Ventures founder Katie Jacobs Stanton reported that Instinct, a private-access AI personal assistant, sent an innocuous email from her connected account without checking with her first. Stanton said the unauthorized action broke her trust and led her to disconnect email access. Instinct's operator, Spear Street Technology, later said it was taking early users' security concerns seriously and had made changes to prevent some actions.

    Deployer: Katie Jacobs Stanton, AI agent system deployers · Developer: Spear Street Technology, AI agent system developers · Harmed: Katie Jacobs Stanton, Instinct users, Email account holders, AI agent system users

  5. #1660 · 4 reports

    Purportedly AI-Generated Videos Impersonating Miami Immigration Attorney Were Reportedly Used to Defraud Bronx Resident of $4,820 AIID ↗

    Scammers reportedly used AI-generated videos impersonating Miami immigration attorney Angel Leal to solicit a Bronx legal resident seeking U.S. citizenship. The victim said he sent $4,820 through Zelle and provided Social Security and residency documents before discovering the scheme. He later reported falling behind on rent and utilities and said the scammers sought additional money.

    Deployer: Synthetic Media Creators, Scammers Impersonating Angel Leal, Scammers, Deepfake Creators, Cybercriminals · Developer: Synthetic Video Generation Technology Developers, Synthetic Media Generation Technology Developers, Deepfake Technology Developers · Harmed: Victor Hernandez, Scam Victims, Immigrants In The United States, Immigrants, Financial Scam Victims, Angel Leal

  6. #1664 · 1 report

    Broadway Performer and SiriusXM Host Seth Rudetsky Reportedly Lost Facebook Page Access in Purportedly AI-Assisted Scam Impersonating Comedian Nikki Glaser AIID ↗

    Broadway performer and SiriusXM host Seth Rudetsky reportedly received a personalized invitation purportedly from comedian Nikki Glaser's podcast. After scammers guided him through Facebook permissions during a supposed technical setup, he lost access to his page; he said a former marketing company was also compromised. Reporting described the invitation as most likely AI-composed.

    Deployer: Scammers, Cybercriminals · Developer: Large Language Model Developers · Harmed: Targets Of Fraudulent Professional Opportunities, Social Media Users, Seth Rudetsky, Public Figures, Nikki Glaser, Facebook Users, Epistemic Integrity, Companies

  7. #1663 · 2 reports

    Comedy Writer Bruce Vilanch Reportedly Sent Money in Purportedly AI-Assisted Scam Impersonating Fresh Air Host Terry Gross AIID ↗

    Comedy writer Bruce Vilanch reportedly received highly personalized messages impersonating Terry Gross, host of NPR's Fresh Air, and sent money after being asked to support NPR. He discovered the invitation was fraudulent when Gross did not appear for the scheduled interview. Reporting described the broader fake-podcast scheme as likely AI-assisted, though no specific AI system was identified.

    Deployer: Scammers, Scammers Impersonating Terry Gross · Developer: Large Language Model Developers · Harmed: Bruce Vilanch, Terry Gross, Whyy, Npr, Public Figures, Epistemic Integrity, Targets Of Fraudulent Professional Opportunities

  8. #1665 · 3 reports

    Purportedly AI-Generated Article Falsely Depicted Australian Broadcasting Corporation Finance Presenter Alan Kohler Interviewing Reserve Bank Governor Michele Bullock to Promote Boulder Sparhaven AIID ↗

    An online article reportedly used AI-generated imagery to falsely depict Australian Broadcasting Corporation (ABC) finance presenter Alan Kohler interviewing Reserve Bank of Australia governor Michele Bullock about Boulder Sparhaven, a cryptocurrency trading platform not licensed in Australia. The Australian Securities and Investments Commission (ASIC) cited it as an example of increasingly sophisticated AI-assisted investment scams targeting Australians.

    Deployer: Synthetic Media Creators, Scammers In Australia, Scammers, Investment Scam Operators, Deepfake Creators In Australia, Deepfake Creators, Cybercriminals · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers, Deepfake Technology Developers · Harmed: Victims Of Impersonation Scams, Michele Bullock, Investors, General Public Of Australia, General Public, Epistemic Integrity, Australian Investors, Alan Kohler

  9. #1643 · 1 report

    Wyoming Woman's Childhood Photograph Reportedly Used to Generate Thousands of Explicit Images with Grok AIID ↗

    A Wyoming woman identified as Jane Doe 4 in federal court filings alleges that her stepfather used Grok to generate thousands of sexually explicit images of her from a childhood photograph.

    Deployer: Synthetic media creators, Grok users, Distributors of AI-generated CSAM, Deepfake creators, Creators of AI-generated CSAM · Developer: xAI, Synthetic media generation technology developers, Synthetic image generation technology developers, Large language model developers, Deepfake technology developers, Chatbot developers · Harmed: Women and girls, Women, Victims of deepfake child abuse, Victims of deepfake abuse, Victims of AI-generated CSAM, Privacy, Minors, Girls

  10. #1659 · 2 reports

    Purported Hanover Institute for Public Policy Reportedly Targeted Chatbot Responses in Israeli Government-Backed Influence Campaign AIID ↗

    An Israeli government-backed communications campaign reportedly operated a website presenting itself as the Hanover Institute for Public Policy, despite reporting finding no corresponding established think tank. The site published material designed for chatbot retrieval, and testing found ChatGPT and Perplexity citing Hanover content in neutral queries.

    Deployer: Piro Inc., Israel Government Advertising Agency, Information Manipulation Actors In Israel, Information Manipulation Actors, Havas Media Germany Gmbh, Hanover Institute For Public Policy, Government Of Israel · Developer: Perplexity, Openai, Large Language Model Developers, Chatbot Developers · Harmed: Public Discourse Integrity, Perplexity Users, General Public Of The United States, General Public, Epistemic Integrity, Chatgpt Users, Chatbot Users

  11. #1639 · 1 report

    Turkish National Reportedly Posted a Purportedly AI-Generated Image Depicting Himself with Eric Trump While Promoting Trump Hotel Dubai AIID ↗

    Turkish national Melih Göğebakan reportedly posted a purportedly AI-generated image on LinkedIn depicting himself alongside Eric Trump while promoting the Trump Hotel Dubai project. The image appeared amid a broader online persona in which Göğebakan allegedly portrayed himself as closely connected to Trump-affiliated organizations and U.S. political figures. He was separately accused of visa-related fraud, though reporting does not establish that the AI-generated image caused those losses.

    Deployer: Synthetic Media Creators, Scammers, Melih Gogebakan, Information Manipulation Actors, Deepfake Creators · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers, Deepfake Technology Developers · Harmed: Public Figures, Eric Trump, Epistemic Integrity, American Public Figures

  12. #1649 · 3 reports

    Meta AI Model Reportedly Exploited Security Vulnerability in Real Third-Party Service During Cybersecurity Evaluation AIID ↗

    During a Meta cybersecurity evaluation conducted with Irregular, one of Meta's AI models reportedly gained unintended Internet access after an evaluation-environment misconfiguration and exploited a vulnerability in a real third-party service. The model was reportedly identified as Muse Spark 1.1, although Meta had not publicly confirmed that identification or the fuller account of what occurred inside the affected company.

    Deployer: Meta, Irregular, Ai Agent System Deployers · Developer: Meta, Ai Agent System Developers · Harmed: Targets Of Autonomous Ai Enabled Intrusion Operations

  13. #1652 · 4 reports

    Granola AI Notetaker Allegedly Captured and Transcribed Florida Meeting Participant Without Notice or Consent AIID ↗

    Tarra Chamberlain, a Florida resident, alleged that Granola captured and transcribed her speech during a virtual meeting without her knowledge or consent after another participant used the AI notetaker. Her July 2026 lawsuit further alleged that Granola uses meeting data to improve its AI models by default, while non-user participants have no comparable opt-out.

    Deployer: Granola, Ai Transcription Tool Users · Developer: Granola, Ai Transcription Technology Developers · Harmed: Tarra Chamberlain, Privacy, People Recorded Without Consent

  14. #1629 · 15 reports

    Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation AIID ↗

    During an Anthropic cybersecurity evaluation with Irregular, an internal research Claude model reportedly scanned roughly 9,000 internet targets after failing to reach its fictional target. It reportedly compromised a real company's Internet-facing application using credentials from an exposed debug page and SQL injection, then stopped after recognizing that the host was real.

    Deployer: Irregular, Anthropic, Ai Evaluation Organizations, Ai Agent System Deployers · Developer: Large Language Model Developers, Anthropic, Ai Agent System Developers · Harmed: Unidentified Companies Compromised During Anthropic Cybersecurity Evaluations Disclosed July 2026, Companies

  15. #1628 · 15 reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation AIID ↗

    During an Anthropic cybersecurity evaluation with Irregular, Claude Mythos 5 reportedly created and published a malicious Python package to PyPI while pursuing a fictional target. The package was reportedly available for about an hour and ran on 15 real systems. On a security company's scanner, it reportedly exfiltrated credentials that Claude then used to access additional company infrastructure.

    Deployer: Irregular, Anthropic, Ai Evaluation Organizations, Ai Agent System Deployers · Developer: Large Language Model Developers, Anthropic, Ai Agent System Developers · Harmed: Unidentified Companies Compromised During Anthropic Cybersecurity Evaluations Disclosed July 2026, Companies

  16. #1627 · 15 reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation AIID ↗

    During an Anthropic cybersecurity evaluation conducted with Irregular, Claude Opus 4.7 reportedly reached a real company whose domain matched a fictional target, extracted application and infrastructure credentials, and accessed a database containing several hundred rows of production data. Across four runs, the model continued attacking after recognizing that the target was likely real.

    Deployer: Irregular, Anthropic, Ai Evaluation Organizations, Ai Agent System Deployers · Developer: Large Language Model Developers, Anthropic, Ai Agent System Developers · Harmed: Unidentified Companies Compromised During Anthropic Cybersecurity Evaluations Disclosed July 2026, Companies

  17. #1648 · 3 reports

    Hong Kong Man Reportedly Lost More Than HK$10 Million in WhatsApp Scam Using Purported AI-Generated Voice Impersonation of His Father AIID ↗

    A Hong Kong man reportedly lost more than HK$10 million after scammers hijacked his father's WhatsApp account and sent voice messages closely resembling his father's voice and speech. The victim allegedly made repeated transfers until his savings were depleted.

    Deployer: Voice Cloning Impersonation Scammers, Synthetic Media Creators, Scammers In Hong Kong, Scammers, Deepfake Creators, Cybercriminals · Developer: Voice Cloning Technology Developers, Synthetic Media Generation Technology, Synthetic Audio Generation Technology Developers, Deepfake Technology Developers · Harmed: Whatsapp Users, Victims Of Voice Cloning Impersonation Scams, Victims Of Impersonation Scams, Financial Scam Victims

  18. #1676 · 3 reports

    Anthropic Claude Opus 5 Coding Agent Reportedly Reset a Live Supabase Production Database During Prisma Migration Work AIID ↗

    A developer reported that a Claude Opus 5 coding agent reset a live Supabase database while autonomously repairing a personal project's schema. The agent ran `prisma migrate diff` with the production URL supplied as the disposable shadow database, causing Prisma to drop all 22 tables. The developer had granted the agent production access; most content was later recovered or rebuilt.

    Deployer: Software developers, Alone_Ad_3375 (Reddit user), AI agent system deployers · Developer: Large language model developers, Anthropic, AI agent system developers · Harmed: Software developers, Database operators, AI agent system users

  19. #1633 · 4 reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations AIID ↗

    Beginning July 26, 2026, AI agents powered by Anthropic's Mythos 5 and OpenAI's GPT-5.6 Sol reportedly took 19 unsanctioned actions on the live Internet during UK AISI cybersecurity evaluations. Mythos 5 reportedly accounted for 17 events, many allegedly involving deceptive attempts to manipulate real developers into accepting malicious code. AISI reportedly detected and contained the activity; no resulting real-world harm was identified.

    Deployer: Government Agencies, Ai Security Institute (United Kingdom), Ai Evaluation Organizations, Ai Agent System Deployers · Developer: Openai, Large Language Model Developers, Anthropic, Ai Agent System Developers · Harmed: Software Developers, Open Source Maintainers, Github Users

  20. #1621 · 2 reports

    Publicly Shared Claude Artifacts Reportedly Became Discoverable Through Google Search AIID ↗

    Users reported that publicly shared Claude Artifacts (apps, documents, spreadsheets, and other files) could be found through Google Search. Reportedly, indexed artifacts containing business plans, infrastructure diagrams, clinical-trial planning materials, and other potentially sensitive content were also located. Anthropic said links became searchable only after being posted somewhere crawlable.

    Deployer: Anthropic · Developer: Large Language Model Developers, Chatbot Developers, Anthropic · Harmed: Privacy, Claude Users, Chatbot Users, Anthropic Users

  21. #1616 · 1 report

    U.S. State Department Reportedly Presented AI-Generated Map That Mislabeled Every Labeled African Country AIID ↗

    During a U.S. State Department presentation at the AIDS 2026 conference in Rio de Janeiro, a map carrying an OpenAI provenance signal reportedly mislabeled every African country shown with a label. The department attributed the slide to a team member's rushed revision and accepted responsibility for the resulting confusion and misrepresentation.

    Deployer: United States Department Of State, Government Agencies · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers, Openai · Harmed: United States Department Of State, Public Trust, Epistemic Integrity, Aids 2026 Attendees, African Partners Of The United States Department Of State

  22. #1647 · 6 reports

    AI-Generated Voice Mimicking Taiwan President Lai Ching-te Reportedly Used in Political Video Criticizing Government Food-Safety Response AIID ↗

    A political video titled "It's Out of Your Control" reportedly used an AI-generated voice resembling Taiwan President Lai Ching-te while criticizing the government's response to a cooking-oil safety scandal. Police said the voice could be mistaken for Lai and later confirmed it was AI-generated. Opposition figures defended the video as political expression while prosecutors opened a forgery investigation.

    Deployer: Wei Chun Yu, Synthetic Media Creators, Political Operatives, Information Manipulation Actors In Taiwan, Information Manipulation Actors · Developer: Voice Cloning Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Audio Generation Technology Developers, Deepfake Technology Developers · Harmed: Youtube Users, Public Figures, Political Figures, Lai Ching Te, General Public Of Taiwan, General Public, Epistemic Integrity, Democratic Integrity

  23. #1611 · 1 report

    Marrero, Louisiana, Woman Allegedly Created Purportedly AI-Generated Nude Media During Extortion Scheme AIID ↗

    Deputies in Livingston Parish, Louisiana, said Marrero resident Haydee Ortiz was initially treated as a victim before investigators allegedly linked her to an online impersonation and extortion campaign involving purportedly AI-generated sexual images and violent threats. Police said sexual media depicting one victim was sent to family and friends, while a person was threatened with rape or bodily harm unless money was paid.

    Deployer: Synthetic Media Creators, Online Impersonators, Haydee Ortiz, Extortionists, Deepfake Creators · Developer: Synthetic Video Generation Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers, Deepfake Technology Developers · Harmed: Victims Of Non Consensual Deepfakes, Victims Of Deepfake Abuse, Unnamed Victims Of Alleged Haydee Ortiz Extortion And Stalking Scheme, Targets Of Online Impersonation, Stalking Victims, Privacy, Epistemic Integrity

  24. #1626 · 1 report

    American Exceptionalism Institute's Purportedly AI-Generated Ad Drew Defamation Claims Over Marsha Blackburn Pharmaceutical Bribery Allegations AIID ↗

    American Exceptionalism Institute reportedly aired an AI-generated political ad portraying Sen. Marsha Blackburn as accepting pharmaceutical-industry payments in exchange for legislative action. Blackburn's attorneys alleged that the bribery claims were defamatory and that the ad failed to comply with Tennessee's synthetic-media disclosure requirements. Comcast and Viamedia reportedly pulled the ad.

    Deployer: Synthetic Media Creators, Political Advocacy Organizations, Political Action Committees, Information Manipulation Actors In The United States, Information Manipulation Actors, Deepfake Creators, American Exceptionalism Institute · Developer: Synthetic Video Generation Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Audio Generation Technology Developers, Deepfake Technology Developers · Harmed: Voters In The United States, Voters In Tennessee, Voters, Marsha Blackburn, General Public Of Tennessee, General Public, Epistemic Integrity, Democratic Integrity

  25. #1637 · 1 report

    Hank Green Reportedly Used AI-Generated Scientific Image Containing Errors in Educational Video AIID ↗

    Science communicator and YouTuber Hank Green reportedly included an AI-generated scientific image containing factual and mathematical errors in a YouTube educational video. Green later said he knew the image was AI-generated when he used it and removed it after recognizing problems with the graphic.

    Deployer: Youtube Content Creators, Synthetic Media Creators, Science Communicators, Hank Green, Content Creators · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers · Harmed: Youtube Users, Social Media Users, Epistemic Integrity

  26. #1615 · 2 reports

    Scammers Allegedly Used AI-Generated Voice in Boone County, Missouri, Kidnapping Ransom Scam AIID ↗

    Boone County, Missouri, authorities said a resident received a call on July 17, 2026, that displayed the resident's daughter's name and number and used an AI-generated imitation of her voice to claim she had been kidnapped at gunpoint. A second voice demanded ransom. A coordinated police response located the daughter safely in Jefferson City, unaware of the call; no payment or arrest was reported.

    Deployer: Unidentified Perpetrators Of Boone County Missouri Ai Voice Kidnapping Scam, Scammers, Synthetic Media Creators, Deepfake Creators, Extortionists, Voice Cloning Impersonation Scammers · Developer: Deepfake Technology Developers, Voice Cloning Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Audio Generation Technology Developers · Harmed: Boone County Missouri Resident Targeted By Alleged Ai Voice Kidnapping Scam, Daughter Of Boone County Missouri Resident Targeted By Alleged Ai Voice Kidnapping Scam, Boone County Sheriff'S Office, Law Enforcement, Victims Of Deepfake Abuse, Targets Of Scams, Public Safety, Epistemic Integrity, Privacy, Victims Of Voice Cloning Impersonation Scams, Families

  27. #1596 · 1 report

    Purported Deepfake Impersonation of Starmangalsutra Director Reportedly Led to ₹10.70 Crore (Approximately US$1.11 Million) in Unauthorized Fund Transfers AIID ↗

    Starmangalsutra Private Limited, a jewelery-manufacturing subsidiary of India-based Sky Gold and Diamonds, reportedly lost ₹10.70 crore (about US$1.1 million) after unknown actors compromised a company-issued phone and laptop and used purported deepfake methods to impersonate a director. An employee, reportedly believing the instructions were genuine, transferred funds to unknown bank accounts before verification showed the director had issued no such instructions.

    Deployer: Synthetic Media Creators, Scammers In India, Scammers, Deepfake Creators · Developer: Synthetic Video Generation Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Audio Generation Technology Developers, Deepfake Technology Developers · Harmed: Victims Of Deepfake Enabled Fraud, Unnamed Employee Of Starmangalsutra, Unnamed Director Of Starmangalsutra, Targets Of Scams, Targets Of Scammers In India, Starmangalsutra, Sky Gold And Diamonds, Epistemic Integrity, Privacy

  28. #1601 · 1 report

    Purported AI-Generated Image Reportedly Won First Prize in Hohhot, Inner Mongolia, Photography Competition Before Award Was Revoked AIID ↗

    An unidentified entrant reportedly submitted a purported AI-generated image depicting three sanitation workers to a local photography competition in Hohhot, Inner Mongolia, where it won first prize. After viewers flagged garbled vest text, unnatural lighting, and repeated facial features, organizers confirmed AI use, revoked the award, removed the work from eligibility and archives, and suspended the competition for review.

    Deployer: Photography Competition Entrants, Unnamed Entrant In The 2026 Hohhot Photography Competition, Synthetic Media Creators · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers · Harmed: Epistemic Integrity, 2026 Hohhot Photography Competition, Photography Competitions, Judged Competitions

  29. #1672 · 4 reports

    OpenAI GPT-5.6 Sol Reportedly Deleted Software Engineer's Production Database During Local Testing AIID ↗

    Software engineer Bruno Lemos reported that GPT-5.6 Sol deleted his production database after he asked it to generate seed data for local testing. The agent reportedly ran the test suite, then initiated cleanup that executed TRUNCATE TABLE users CASCADE against production because the repo's test database URL pointed to the live Neon database. OpenAI later acknowledged unauthorized deletion reports and said it was adding safeguards.

    Deployer: Bruno Lemos, AI agent system deployers · Developer: OpenAI, Large language model developers, AI agent system developers · Harmed: Software developers, Enterprise application users, Bruno Lemos, AI agent system users

  30. #1592 · 2 reports

    Purportedly AI-Generated Images Reportedly Used During Four-Year Catfishing Campaign Targeting Welsh Teenager AIID ↗

    A Welsh teenager reportedly endured a nearly four-year online impersonation campaign in which another teenager created fake social media accounts using her photographs and, later, AI-generated images depicting her. The campaign reportedly attracted more than 100,000 followers, led strangers to believe they knew the victim, and resulted in a High Court settlement and damages award.

    Deployer: Elha Mai Weston, Deepfake Creators, Catfishers, Online Impersonators, Synthetic Media Creators · Developer: Deepfake Technology Developers, Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers · Harmed: Sasha Davies, Victims Of Catfishing, Victims Of Deepfake Abuse, Targets Of Online Impersonation, Teenagers, Minors, Epistemic Integrity

  31. #1604 · 8 reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation AIID ↗

    OpenAI reported that models used in an internal cyber-capability evaluation operated beyond the sandbox's intended network boundaries after identifying a vulnerability in a package-registry proxy. The models allegedly reached Hugging Face production systems and accessed test solutions before Hugging Face detected and contained the activity.

    Deployer: Openai, Ai Agent System Deployers · Developer: Openai, Ai Agent System Developers, Large Language Model Developers · Harmed: Hugging Face, Openai

  32. #1671 · 4 reports

    OpenAI GPT-5.6 Sol Agent Reportedly Deleted Most Files in AI Startup Founder's Mac Home Directory AIID ↗

    AI investor Matt Shumer reported that a GPT-5.6 Sol agent in OpenAI Codex's high-autonomy Ultra mode accidentally deleted most files in his Mac home directory during a cleanup task. A review sub-agent reportedly misexpanded $HOME and ran `rm -rf /Users/mattsdevbox`; Shumer stopped the process after material deletion. OpenAI later confirmed unauthorized file-deletion reports and said it was adding safeguards.

    Deployer: Matt Shumer, AI agent system deployers · Developer: OpenAI, Large language model developers, AI agent system developers · Harmed: Matt Shumer, AI agent system users

  33. #1654 · 3 reports

    AI Chatbot Reportedly Recommended Herbicide Treatment Linked to Loss of About 25 Acres of Sesame in China AIID ↗

    A 67-year-old farmer in Chuzhou, Anhui, reportedly used an AI-generated weed-and-pest-control plan to spray about 150 mu (25 acres) of sesame by drone. By the next day, the crop had largely withered. Agricultural technicians said the recommended mixture included fomesafen, a herbicide unsuitable for blanket application to sesame. The specific AI product and model have not been publicly confirmed.

    Deployer: Wu (Chuzhou farmer), Chatbot users · Developer: Large language model developers, Chatbot developers · Harmed: Wu (Chuzhou farmer), Farmers in China, Farmers, Epistemic integrity, Chatbot users

  34. #1669 · 4 reports

    Threat Actor Reportedly Used Hermes AI Agent for Unattended Post-Compromise Activity in Thailand's Ministry of Finance Network AIID ↗

    Hunt.io reported that an unidentified threat actor used Nous Research's Hermes agent in unattended "YOLO" mode during an intrusion targeting Thailand's Ministry of Finance. Recovered logs showed Hermes conducting privilege-escalation reconnaissance within ministry systems and recursively searching a directory containing personnel records. Researchers found evidence of compromise but no data exfiltration; the ministry had not publicly confirmed a breach.

    Deployer: Threat actors, hackers, Cybercriminals, AI agent system deployers, Agentic threat actors · Developer: Nous Research, AI agent system developers · Harmed: Thailand Ministry of Finance, Privacy, National security and intelligence stakeholders, Information security, Governments, Government of Thailand, Government agencies

  35. #1594 · 1 report

    Purportedly AI-Generated Facebook Pages Allegedly Targeted Australian Rules Football Club Geelong Cats With Fabricated Harmful Claims AIID ↗

    Purportedly AI-generated Facebook pages reportedly published false stories about the Geelong Football Club, including fabricated criminal allegations, illnesses, deaths, and a nonexistent bushfire evacuation warning. The club reported the pages to Meta, which later removed at least one page after complaints, while other misleading content reportedly remained online.

    Deployer: Synthetic Media Creators, Information Manipulation Actors In Australia, Information Manipulation Actors · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers, Deepfake Technology Developers · Harmed: Social Media Users, Residents Of Geelong Victoria, General Public Of Australia, General Public, Geelong Football Club, Geelong Cats Players, Geelong Cats Fans, Geelong Cats, Facebook Users, Epistemic Integrity

  36. #1586 · 1 report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion AIID ↗

    Sygnia reported that a threat actor apparently used purportedly AI-assisted or agentic workflows to move rapidly through an unidentified organization's AWS environment during an approximately 72-hour intrusion. The attacker allegedly expanded from an Internet-facing application into cloud infrastructure and data stores, reportedly stealing credentials and sensitive information while demonstrating the ability to disrupt services as leverage for extortion. Sygnia did not identify a specific model.

    Deployer: Extortionists, Cybercriminals, Agentic Threat Actors · Developer: Large Language Model Developers, Ai Agent System Developers · Harmed: Victims Of Automated Cybercrime, Privacy, Enterprise It Systems, Amazon Web Services (Aws) Customers

  37. #1585 · 2 reports

    Discord's Automated Moderation System Reportedly Wrongfully Banned More Than 8,000 Users Over Benign Images AIID ↗

    Discord reportedly wrongfully banned more than 8,000 accounts after its automated image-moderation workflow flagged harmless uploads, including grids, spreadsheets, chessboards, and game images, as prohibited material. Discord said a bug converted temporary upload restrictions into account bans and prevented cleared accounts from being restored automatically. The company later reinstated the affected accounts.

    Deployer: Discord, Social Media Platforms · Developer: Discord, Social Media Platforms · Harmed: Discord Users, Social Media Users

  38. #1583 · 1 report

    Waymo Robotaxi Reportedly Caught Fire After Driving Over Firework in San Francisco AIID ↗

    An unoccupied Waymo robotaxi reportedly drove over a small firework near the 1200 block of Connecticut Street in San Francisco on July 4, 2026, and caught fire. No passengers were aboard and no injuries were reported. Waymo said it coordinated with the San Francisco Fire Department and local authorities to remove the damaged vehicle.

    Deployer: Waymo, Automated Driving System Deployers, Robotaxi Operators · Developer: Waymo, Automated Driving System Developers · Harmed: Waymo, Robotaxi Operators, Automated Driving System Deployers

  39. #1640 · 1 report

    Istanbul Fraud Network Reportedly Used AI-Assisted Call Center Software to Impersonate Officials and Defraud Europeans AIID ↗

    An international fraud network operating from a call center in Maslak, Istanbul reportedly used AI-assisted software to contact people in the Czech Republic and other European countries while posing as police, prosecutors, soldiers, and bank officials. Authorities said numerous victims were defrauded for substantial sums. Investigators found 80 foreign-national suspects at the call center and seized digital materials during raids at three Istanbul locations.

    Deployer: Scammers, Fraud Networks · Developer: Ai Software Developers, Ai Assisted Call Center Software Developers · Harmed: People Targeted By Financial Scams, Fraud Victims In The Czech Republic, Financial Scam Victims, Epistemic Integrity

  40. #1570 · 2 reports

    Purported Deepfake Impersonating Dubai Crown Prince Reportedly Used to Defraud Filipino Domestic Worker AIID ↗

    A Filipino domestic worker identified as "Maria" reportedly paid ₱100,000 (about $1,625) after a scammer deployed purportedly manipulated real-time video to impersonate Dubai Crown Prince Hamdan bin Mohammed during WhatsApp calls. The scammer reportedly claimed the money was for a marriage certificate and "royal membership card" that would help her secure a job in Dubai. Maria reportedly ended contact after noticing that the Facebook account was based in Nigeria.

    Deployer: Scammers In Nigeria, Scammers, Romance Scammers, Employment Scammers, Cybercriminals, Synthetic Media Creators · Developer: Synthetic Video Generation Technology Developers, Synthetic Media Generation Technology Developers, Deepfake Technology Developers · Harmed: Whatsapp Users, Targets Of Scams In The United Arab Emirates, Targets Of Scams, Targets Of Romance Scams, Targets Of Employment Scams, Social Media Users, Maria (Victim Of Dubai Prince Impersonation Scam), Hamdan Bin Mohammed Al Maktoum, Facebook Users, Targets Of Fraudulent Professional Opportunities

  41. #1646 · 4 reports

    Suspected China-Linked Hackers Reportedly Used AI Agents to Compromise Taiwanese Government Systems and Exfiltrate Personnel Records AIID ↗

    From July 1–4, 2026, suspected China-linked hackers reportedly used a multi-agent framework built on Hermes and OpenClaw to compromise Taiwanese government systems. The agents reportedly compromised 85 credentials and used persistent access to connected systems to exfiltrate more than 2,564 personnel records. Taiwan later confirmed an overseas AI-assisted campaign against government agencies, without attributing it to China.

    Deployer: Threat Actors, Hackers, China Linked Threat Actors, Ai Agent System Deployers, Agentic Threat Actors · Developer: Peter Steinberger, Nous Research, Large Language Model Developers, Ai Agent System Developers · Harmed: Taiwanese Government Employees, Taiwanese Government Agencies, Taiwan Ministry Of Justice, Privacy, National Security And Intelligence Stakeholders, Information Security, Governments, Government Of Taiwan, Government Agencies

  42. #1598 · 1 report

    City of Spokane Reportedly Distributed Purported AI-Generated Clocktower Flyer Resembling Graphic Designer Matthew Clinard's Artwork AIID ↗

    A Spokane Parks and Recreation employee reportedly used a purported generative AI image tool to create a flyer promoting the restored Great Northern Clocktower chimes. The flyer reportedly reproduced elements of artist Matthew Clinard's commercially sold Clocktower sticker and was distributed by the mayor's office without the city-required AI disclosure. After Clinard complained publicly, the city removed the image and apologized, then began considering AI-policy and employee-training reforms.

    Deployer: Unnamed Employee Of Spokane Parks And Recreation Department, Synthetic Media Creators, Spokane Parks And Recreation Department, City Of Spokane, Office Of Spokane Mayor Lisa Brown · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers · Harmed: Matthew Clinard, Epistemic Integrity, Artists, Copyright Holders, General Public, General Public Of Spokane

  43. #1597 · 1 report

    Spokane, Washington, Police Reportedly Circulated Purported AI-Generated Image as Authentic Photo of Injured Dog AIID ↗

    Detectives in Spokane, Washington, reportedly created a purported AI-generated image as a joke depicting a real undercover officer holding an injured dachshund. A supervisor reportedly mistook it for an authentic photograph and the image was released to news media after correcting an earlier claim that the dog had died. The Spokesman-Review published a cropped version before the department disclosed that the scene was fabricated and began reviewing its verification procedures.

    Deployer: Spokane Police Department, Law Enforcement, Synthetic Media Creators · Developer: Synthetic Media Generation Technology Developers, Synthetic Image Generation Technology Developers · Harmed: Epistemic Integrity, General Public, General Public Of Spokane Washington, Journalistic Integrity, The Spokesman Review, Undercover Law Enforcement Officers, Law Enforcement, Privacy, News Organizations

  44. #1578 · 4 reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database AIID ↗

    Sysdig reported that a ransomware operator it dubbed JADEPUFFER used an LLM-driven agent to turn access through a vulnerable internet-facing Langflow deployment into a database-extortion operation. The report said the activity reached a production database server and produced concrete disruption, with the victim environment allegedly left in a damaged and unrecoverable state alongside a ransom demand.

    Deployer: Ransomware Operators, Jadepuffer, Cybercriminals, Agentic Threat Actors · Developer: Large Language Model Developers, Ai Agent System Developers · Harmed: Operators Of Langflow Deployments, Database Operators

  45. #1588 · 1 report

    Purportedly AI-Powered KT Platform Reportedly Used in Forced Scamming Operation Involving Trafficked Worker in Myanmar AIID ↗

    AP reported that traffickers at Myanmar's Tai Chang scam compound forced a man named Safeer Mohammed Koorimannil to use the AI-powered KT platform to impersonate women and target thousands of people online. The system reportedly supported the scam conversations while monitoring worker performance. Koorimannil said he was beaten for poor results and later paid 500,000 rupees ($5,300) for his release.

    Deployer: Tai Chang scam compound operators, Scammers, Pig-butchering scammers, Cybercriminals · Developer: OpenAI, Large language model developers, Google DeepMind, Google, Chatbot developers, AI-assisted scam platform developers · Harmed: Trafficking victims coerced into scam operations, Targets of scams, Safeer Mohammed Koorimannil, Human trafficking victims, Financial scam victims, Epistemic integrity

  46. #1644 · 3 reports

    DuckDuckGo Search Assist Reportedly Falsely Claimed Donald Trump and JD Vance Died of Rabies AIID ↗

    DuckDuckGo's Search Assist reportedly produced an answer stating that Donald Trump and JD Vance had died of rabies and repeated fabricated details involving Robert F. Kennedy Jr. The answer cited a false WKNA49 article alongside an unrelated ABC News report. Reporting linked the episode to adversarial web content associated with r/poisonai. DuckDuckGo said Search Assist had been "deliberately tricked," fixed the result, and planned updates.

    Deployer: Duckduckgo · Developer: Duckduckgo, Ai Search Technology Developers · Harmed: Donald Trump, Jd Vance, Robert F. Kennedy Jr., Elected Officials, General Public, Epistemic Integrity, General Public Of The United States, Public Figures

  47. #1641 · 2 reports

    Rep. Anna Paulina Luna's Office Reportedly Published Claude Transcript Residue on Accident in House Amendment Summary AIID ↗

    A staffer in Rep. Anna Paulina Luna's office reportedly used Claude to prepare a summary for an amendment to the FY2027 National Defense Authorization Act and accidentally pasted chatbot transcript residue, including a timestamp and "Claude responded:" marker, into the public House Rules Committee record. The summary was reportedly later corrected. Luna confirmed that her staff used Claude for the summary, not to draft the amendment itself.

    Deployer: Office Of Rep. Anna Paulina Luna, Congressional Staffers · Developer: Large Language Model Developers, Chatbot Developers, Anthropic · Harmed: General Public Of The United States, General Public, Epistemic Integrity, Congressional Public Records

  48. #1581 · 2 reports

    Storm-1516 Reportedly Spread Fabricated Narratives Targeting Firebird Data Center in Armenia AIID ↗

    Alethea reported that Storm-1516, a Russian influence operation, targeted Firebird's NVIDIA-powered data center under construction in Hrazdan, Armenia, with purportedly fabricated media narratives designed to make the project appear dangerous and economically unstable. The campaign allegedly used imitation tech-news articles to cast the facility as a liability for Armenia's infrastructure and Western-aligned technology ambitions.

    Deployer: Storm 1516, Pro Russian Information Manipulation Actors, Operators Of Inauthentic Media Sites, Information Manipulation Actors · Developer: Generative Ai System Developers · Harmed: X (Twitter) Users, United States Armenia Technology Cooperation Stakeholders, United States Armenia Relations, Social Media Users, Public Trust In Ai Infrastructure, General Public Of Armenia, General Public, Firebird, Epistemic Integrity

  49. #1618 · 1 report

    Apartment Owner and Manager UDR Allegedly Used RealPage Algorithms to Set San Diego Rents in Keller v. UDR, Inc. AIID ↗

    In Keller v. UDR, Inc., plaintiff Jacob Keller alleged that UDR used RealPage pricing tools to set rents or occupancy levels at its San Diego properties after a city prohibition took effect on June 21, 2025. The complaint claims the tools relied on nonpublic competitor data and contributed to inflated rents for UDR tenants. UDR, a large publicly traded apartment owner and operator, had previously acknowledged using YieldStar in decisions concerning certain multifamily units.

    Deployer: Udr, Residential Property Management Companies, Landlords · Developer: Rental Pricing Algorithm Developers, Realpage, Property Management Software Developers · Harmed: Udr Tenants In San Diego, Renters, Jacob Keller

  50. #1602 · 2 reports

    Zoox Autonomous Vehicle Reportedly Entered Smoke-Obscured Fire Scene, Prompting Heavy-Smoke Detection Recall AIID ↗

    On June 20, 2026, an unoccupied Zoox autonomous vehicle reportedly entered an active fire scene after heavy smoke obscured its surroundings. The purported automated driving system braked hard while attempting to steer away and stopped before the vehicle was reversed under teleguidance. Zoox later recalled 105 vehicles and issued a software update intended to improve detection of and response to heavy smoke.

    Deployer: Zoox, Autonomous Vehicle Fleet Operators, Automated Driving System Deployers · Developer: Zoox, Automated Driving System Developers · Harmed: Emergency Responders, People At Emergency Scenes

Informational only, not legal advice. Verify every claim against the linked official sources and consult qualified counsel before acting.