AI Incidents

A tracked record of real-world incidents where AI systems caused or were involved in harm.

Showing 151–175 of 281 incidents
Incident Incident Date Industry Severity Company Country Model Vendor
Multiple developers: ‘TrapDoor’ campaign poisons Claude Code and Cursor via hidden instructions in malicious npm, PyPI and Crates.io packages 2026-05-19 Technology High Multiple npm, PyPI and Crates.io developers (TrapDoor campaign) Claude
Starbucks: AI inventory tool retired across 11,000 stores after chronic miscounts 2026-05-18 Retail & E-commerce Medium Starbucks United States
Unnamed Singapore businessman: Deepfake Zoom call impersonating PM Lawrence Wong leads to $3.8 million fraud 2026-05-14 Other High Unnamed Singapore businessman Singapore
Pizza Hut: Franchisee sues over Dragontail AI delivery system, alleges $100 million in losses 2026-05-14 Retail & E-commerce Medium Pizza Hut United States
Anthropic: Claude’s Chrome extension let any plugin hijack the AI agent, researchers find 2026-05-14 Technology Low Anthropic United States Claude
EY Canada: Cybersecurity Report Withdrawn After Investigation Finds Most Citations Fabricated 2026-05-14 Consulting & Professional Services Medium EY (Ernst & Young) Canada Canada
Aesthetify GmbH: German court holds company liable for AI chatbot’s false claims 2026-05-12 Healthcare Medium Aesthetify GmbH Germany
OpenAI: Undisclosed agent swarm floods RubyGems with 2,000+ malicious packages, gains RCE on RubyDoc servers 2026-05-11 Technology High OpenAI United States OpenAI
PraisonAI: Authentication-bypass flaw in AI agent framework targeted within hours of disclosure 2026-05-11 Technology Low PraisonAI
Palo Alto Unified: Family sues district for $150 million over AI-cheating accusation 2026-05-11 Education Medium Palo Alto Unified School District United States
Marimo: Attacker uses autonomous LLM agent for post-exploitation after critical RCE 2026-05-10 Technology Medium Marimo
Avride: Federal regulators investigate self-driving robotaxi after 16 crashes 2026-05-08 Transportation & Logistics High Avride United States
CB Financial Services: Employee’s unauthorized AI tool use exposes customer SSNs 2026-05-05 Finance & Banking Medium CB Financial Services, Inc. United States
Braintrust: AI evaluation startup breach exposes customer API keys 2026-05-05 Technology Medium Braintrust United States
Character.AI: Pennsylvania sues over chatbot posing as a licensed psychiatrist 2026-05-05 Healthcare Critical Character.AI United States
xAI: Attacker uses Morse-code prompt injection to drain Grok-linked crypto wallet 2026-05-04 Technology Medium xAI United States Grok xAI
Google: Gemini AI model breaches three real companies during cybersecurity evaluation 2026-05-01 Technology Low Google United States Gemini Google
Reddit: AI spam-detection system retroactively erases decade of r/AskHistorians answers 2026-04-30 Technology Medium Reddit United States
OpenAI, Mistral AI: ‘Mini Shai-Hulud’ worm defeats supply-chain provenance protections, compromises 170+ npm and PyPI packages 2026-04-28 Technology Critical OpenAI, Mistral AI, GitHub, TanStack, European Commission
PocketOS: Cursor AI coding agent deletes production database and backups 2026-04-25 Technology High PocketOS United States Opus 4.6 Claude
Anthropic: Unsafe MCP SDK defaults expose 7,000+ AI agent servers to remote code execution 2026-04-20 Technology Medium Anthropic United States Claude
Vercel: Third-party AI vendor breach exposes customer credentials via OAuth token theft 2026-04-20 Technology Critical Vercel United States
Anthropic, Google, GitHub: Cross-vendor ‘Comment and Control’ prompt injection leaks AI coding agents’ API keys 2026-04-16 Technology Low Anthropic, Google, GitHub United States Claude, Gemini
Greg Lake: Omaha Attorney Suspended Indefinitely Over AI-Hallucinated Court Brief 2026-04-15 Other High Greg Lake United States
The New York Times: Reporter’s AI tool fabricates quote attributed to Pierre Poilievre 2026-04-14 Media & Entertainment Low The New York Times United States