| Microsoft: Fake ChatGPT-branded VS Code extensions with 1.5 million installs secretly exfiltrated developer code to China |
2026-01-26 |
Technology |
High
|
Microsoft |
— |
— |
— |
| OpenClaw: Critical RCE flaw and malicious marketplace skills expose tens of thousands of AI agent instances |
2026-01-26 |
Technology |
Critical
|
OpenClaw |
— |
— |
— |
| Waymo: Self-driving vehicle strikes child near elementary school |
2026-01-23 |
Transportation & Logistics |
Critical
|
Waymo |
United States |
— |
— |
| Cursor: Allowlist bypass flaw could let prompt injection trigger arbitrary code execution |
2026-01-23 |
Technology |
Low
|
Cursor |
United States |
— |
— |
| U.S. Department of Justice: Confidential informant’s AI deepfake evidence leads to wrongful indictment |
2026-01-21 |
Government & Public Sector |
High
|
U.S. Department of Justice |
United States |
— |
— |
| Unnamed Swiss entrepreneur: AI voice-clone scam impersonating business partner costs millions of francs |
2026-01-21 |
Other |
High
|
Unnamed Swiss entrepreneur |
Switzerland |
— |
— |
| Xsolis: Phishing attack exposes 1.4 million patient records at healthcare AI vendor |
2026-01-20 |
Healthcare |
High
|
Xsolis |
United States |
— |
— |
| Eightfold AI: Job applicants sue AI hiring platform over hidden background-check-style profiles |
2026-01-20 |
Technology |
Medium
|
Eightfold AI, Inc. |
United States |
— |
— |
| ComfortDelGro: Self-driving shuttle strikes road divider in Singapore despite human takeover |
2026-01-17 |
Transportation & Logistics |
Low
|
ComfortDelGro |
Singapore |
— |
— |
| Anthropic: Fourth disclosed hacking incident — early Claude Opus 4.6 breaches a real external system during a January evaluation |
2026-01-15 |
Technology |
Medium
|
Anthropic |
United States |
Opus 4.6 |
Claude |
| Microsoft: ‘Reprompt’ prompt-injection flaw enabled single-click Copilot data theft |
2026-01-15 |
Technology |
Low
|
Microsoft |
United States |
— |
— |
| Character.AI: Kentucky becomes first state to sue AI chatbot company over child safety failures |
2026-01-09 |
Technology |
High
|
Character Technologies / Character.AI |
United States |
— |
— |
| OpenAI: ‘ZombieAgent’ zero-click flaw let attackers exfiltrate data via Deep Research agent |
2026-01-08 |
Technology |
Low
|
OpenAI |
United States |
— |
OpenAI |
| Opendoor: $39 million settlement over misrepresented AI home-pricing algorithm |
2026-01-08 |
Real Estate |
High
|
Opendoor Technologies Inc. |
United States |
— |
— |
| AITOPIA impersonators: Fake AI Chrome extensions stole ChatGPT and DeepSeek conversations from 900,000 users |
2026-01-06 |
Technology |
Medium
|
AITOPIA |
— |
— |
OpenAI, DeepSeek |
| Alibaba: Research AI agent covertly mined crypto and tunneled out of its training environment |
2025-12-31 |
Technology |
Medium
|
Alibaba |
China |
ROME (internal research model) |
— |
| Instacart: Ends AI-powered differential pricing tests after investigation finds 23% price gaps |
2025-12-22 |
Retail & E-commerce |
Medium
|
Instacart |
United States |
— |
— |
| Amazon: AI coding agent Kiro deletes production environment, causes 13-hour AWS outage |
2025-12-15 |
Technology |
High
|
Amazon |
United States |
— |
— |
| Government of Mexico: Claude Code jailbroken to exfiltrate 195 million records |
2025-12-15 |
Government & Public Sector |
Critical
|
Government of Mexico |
Mexico |
GPT-4.1 |
Claude, OpenAI |
| Stephen Brigandi, Tim Murphy: Oregon Attorneys Sanctioned $110,204 Over AI-Fabricated Citations |
2025-12-12 |
Other |
High
|
Stephen Brigandi, Tim Murphy |
United States |
ChatGPT |
OpenAI |
| Independent user: Google’s Antigravity AI coding agent deletes entire hard drive while clearing a cache |
2025-12-05 |
Other |
Medium
|
— |
Greece |
Gemini 3 |
Google |
| Victoria Goldiee: Freelance journalist’s AI-fabricated articles retracted by five publications |
2025-11-19 |
Media & Entertainment |
Medium
|
Victoria Goldiee |
— |
— |
— |
| Suno: Breach exposes personal data of 55 million AI music platform users |
2025-11-15 |
Technology |
High
|
Suno |
United States |
— |
— |
| Anthropic: State-sponsored group jailbreaks Claude Code for cyber espionage |
2025-11-13 |
Other |
Critical
|
Anthropic (Claude Code) |
United States |
— |
Claude |
| ServiceNow: ‘BodySnatcher’ flaw in Now Assist AI Agents could let attackers impersonate any user |
2025-10-30 |
Technology |
Low
|
ServiceNow |
United States |
— |
— |