AI Incidents

A tracked record of real-world incidents where AI systems caused or were involved in harm.

Showing 51–75 of 372 incidents
Incident Incident Date ↑ Industry ↕ Severity ↕ Company ↕ Country ↕ Model Vendor
OpenAI: ‘ZombieAgent’ zero-click flaw let attackers exfiltrate data via Deep Research agent 2026-01-08 Technology Low OpenAI United States — OpenAI
Opendoor: $39 million settlement over misrepresented AI home-pricing algorithm 2026-01-08 Real Estate High Opendoor Technologies Inc. United States — —
Character.AI: Kentucky becomes first state to sue AI chatbot company over child safety failures 2026-01-09 Technology High Character Technologies / Character.AI United States — —
Anthropic: Fourth disclosed hacking incident — early Claude Opus 4.6 breaches a real external system during a January evaluation 2026-01-15 Technology Medium Anthropic United States Opus 4.6 Claude
Microsoft: ‘Reprompt’ prompt-injection flaw enabled single-click Copilot data theft 2026-01-15 Technology Low Microsoft United States — —
ComfortDelGro: Self-driving shuttle strikes road divider in Singapore despite human takeover 2026-01-17 Transportation & Logistics Low ComfortDelGro Singapore — —
Xsolis: Phishing attack exposes 1.4 million patient records at healthcare AI vendor 2026-01-20 Healthcare High Xsolis United States — —
Eightfold AI: Job applicants sue AI hiring platform over hidden background-check-style profiles 2026-01-20 Technology Medium Eightfold AI, Inc. United States — —
U.S. Department of Justice: Confidential informant’s AI deepfake evidence leads to wrongful indictment 2026-01-21 Government & Public Sector High U.S. Department of Justice United States — —
Unnamed Swiss entrepreneur: AI voice-clone scam impersonating business partner costs millions of francs 2026-01-21 Other High Unnamed Swiss entrepreneur Switzerland — —
Waymo: Self-driving vehicle strikes child near elementary school 2026-01-23 Transportation & Logistics Critical Waymo United States — —
Cursor: Allowlist bypass flaw could let prompt injection trigger arbitrary code execution 2026-01-23 Technology Low Cursor United States — —
OpenAI: Research model uploads data to public paste site, cites the URL as its own source 2026-01-24 Technology Low OpenAI United States — OpenAI
Microsoft: Fake ChatGPT-branded VS Code extensions with 1.5 million installs secretly exfiltrated developer code to China 2026-01-26 Technology High Microsoft — — —
OpenClaw: Critical RCE flaw and malicious marketplace skills expose tens of thousands of AI agent instances 2026-01-26 Technology Critical OpenClaw — — —
Adelphi University: Court overturns AI-detection cheating finding against student with autism 2026-01-28 Education Medium Adelphi University United States — —
Codeway: Misconfigured Firebase database exposed 300 million AI chat messages 2026-01-29 Technology High Codeway Turkey — Claude, OpenAI, Gemini
Step Finance: AI Trading Agents Drain $27 Million Treasury, Platform Shuts Down 2026-01-31 Finance & Banking High Step Finance Spain — —
Home Bargains: Facewatch facial-recognition AI wrongly flags customer as shoplifter 2026-02-01 Retail & E-commerce Medium Home Bargains United Kingdom — —
Fideuram: AI voice-clone fraud drains €95 million from Intesa Sanpaolo’s private-banking unit 2026-02-01 Finance & Banking Critical Fideuram (Intesa Sanpaolo) Italy — —
Evoke Security: Cybersecurity firm nearly hires deepfake job candidate 2026-02-01 Technology Low Evoke Security United States — —
Yale University: Student sues over AI-cheating suspension flagged by GPTZero 2026-02-01 Education Medium Yale University United States — —
Moltbook: Misconfigured database exposes 1.5 million AI agent API keys 2026-02-01 Technology High Moltbook — — —
Bondu: AI toy exposes 50,000 children’s chat transcripts via unsecured web console 2026-02-03 Technology High Bondu — — —
Johnson & Johnson: AI-added surgical navigation system linked to strokes and skull injuries in sinus surgeries 2026-02-09 Healthcare Critical Johnson & Johnson United States — —