| Anthropic, Cloudflare, Datadog, Sentry: ‘GhostJacking’ attack hijacks AI coding agents via poisoned logs |
2026-08-10 |
Technology |
Low
|
Anthropic, Cloudflare, Datadog, Sentry |
United States |
— |
Claude |
| Independent user: OpenClaw AI agent hacks gym booking system, cancels stranger’s reservation |
2026-08-10 |
Other |
Low
|
Independent user |
Australia |
— |
Claude |
| Microsoft: Critical Copilot Cowork flaw could let attackers escalate privileges across Microsoft 365 |
2026-08-11 |
Technology |
Low
|
Microsoft |
United States |
— |
Microsoft |
| Unnamed Spanish digital certificate provider: Deepfake glitch exposes fraudster who bypassed video identity verification |
2026-08-11 |
Finance & Banking |
Medium
|
Unnamed Spanish digital certificate provider |
Spain |
— |
— |
| Microsoft: Critical Azure SRE Agent flaw could let attackers hijack AI agent’s cloud permissions |
2026-08-11 |
Technology |
Low
|
Microsoft |
United States |
— |
Microsoft |
| NY-21 congressional campaign: AI deepfake video of opponent sparks election-law debate |
2026-08-11 |
Media & Entertainment |
Low
|
Anthony Constantino for Congress |
United States |
— |
— |
| Zoom: AI-assisted research uncovers zero-click ‘Zoomsday’ code-execution flaw |
2026-08-11 |
Technology |
Low
|
Zoom |
United States |
— |
— |
| Marathon Engineering: AI meeting notetaker’s transcript becomes key evidence in gender-discrimination suit |
2026-08-12 |
Consulting & Professional Services |
Medium
|
Marathon Engineering |
United States |
— |
Fireflies AI |
| American Airlines: AURA AI system rebooks passengers off reachable flights without consent |
2026-08-12 |
Transportation & Logistics |
Medium
|
American Airlines |
United States |
— |
— |
| Government of Taiwan: Autonomous AI agents breach 21 government systems in first-of-its-kind cyberattack |
2026-08-12 |
Government & Public Sector |
Critical
|
Government of Taiwan |
Taiwan |
— |
— |
| Otter.ai: Federal judge allows wiretapping and biometric privacy claims over AI notetaker to proceed |
2026-08-13 |
Technology |
Medium
|
Otter.ai |
United States |
— |
— |
| Unnamed Australian urology clinic: AI scribe fabricates patient’s psychedelic mushroom use in medical letter |
2026-08-14 |
Healthcare |
Medium
|
Unnamed Australian urology clinic |
Australia |
— |
— |
| xAI: Prompt injection via X bios triggers false CSAM and assassination-threat posts about Elon Musk |
2026-08-15 |
Technology |
Medium
|
xAI |
United States |
— |
Grok |
| Andon Labs: AI store manager Luna fires human employee for repeated tardiness |
2026-08-15 |
Retail & E-commerce |
Low
|
Andon Labs |
United States |
— |
— |
| ASIC: AI deepfake celebrity investment scams surge across Australia |
2026-08-17 |
Finance & Banking |
Critical
|
Australian Securities and Investments Commission (ASIC) — nationwide scam campaign |
Australia |
— |
— |
| MLflow: Actively exploited SSRF flaw lets attackers steal cloud credentials at scale |
2026-08-17 |
Technology |
High
|
MLflow |
— |
— |
— |
| Tesla: Driverless Robotaxi rams through bollards in Austin |
2026-08-18 |
Transportation & Logistics |
Low
|
Tesla |
United States |
— |
— |
| Sainsbury’s: Facewatch facial-recognition AI wrongly flags paying customer as shoplifter |
2026-08-18 |
Retail & E-commerce |
Medium
|
Sainsbury's |
United Kingdom |
— |
— |
| Microsoft Copilot: ‘CoSnitch’ Flaw Enabled One-Click Data Theft via Memory Poisoning |
2026-08-18 |
Technology |
Low
|
Microsoft |
United States |
— |
Microsoft |
| State Farm: Defense lawyers admit AI-fabricated case citations in Los Angeles fire lawsuit |
2026-08-18 |
Finance & Banking |
Medium
|
State Farm |
United States |
— |
— |
| Siemens: US agencies warn of active AI-generated exploit campaign against S7 PLCs in critical infrastructure |
2026-08-19 |
Energy & Utilities |
Medium
|
Siemens (S7 Series PLC operators) |
United States |
— |
— |
| Alation: AI Data Platform Confirms Cyberattack Affecting Customer Systems |
2026-08-19 |
Technology |
Medium
|
Alation |
United States |
— |
— |
| xAI: ‘Cryptographic Context Injection’ flaw in Grok could exfiltrate user data via malicious web pages |
2026-08-20 |
Technology |
Low
|
xAI |
United States |
— |
Grok |
| Savannah Police Department: Officers arrested for misusing AI license-plate readers to track personal acquaintances |
2026-08-21 |
Government & Public Sector |
High
|
Savannah Police Department / Flock Safety |
United States |
— |
— |
| Instinct: Beta AI personal assistant sends email without approval, retains data after disconnect |
2026-08-21 |
Technology |
Low
|
Instinct (Spear Street Technology) |
United States |
— |
— |