| Malicious LLM Routers: Research Finds Credential Theft, One Customer Loses $500,000 Crypto Wallet |
2026-04-13 |
Technology |
Medium
|
— |
— |
— |
— |
| Sullivan & Cromwell: AI-hallucinated citations found throughout federal bankruptcy court filing |
2026-04-09 |
Consulting & Professional Services |
Medium
|
Sullivan & Cromwell |
United States |
— |
— |
| FlowiseAI: Critical RCE flaw in Flowise agent builder actively exploited across 12,000+ instances |
2026-04-07 |
Technology |
High
|
FlowiseAI |
United States |
— |
— |
| Grafana Labs: ‘GrafanaGhost’ prompt-injection chain could have silently exfiltrated dashboard data |
2026-04-07 |
Technology |
Low
|
Grafana Labs |
— |
— |
— |
| KBS: AI real-time translation subtitles broadcast Korean profanity during Artemis II livestream |
2026-04-02 |
Media & Entertainment |
Low
|
KBS (Korean Broadcasting System) |
South Korea |
— |
— |
| Purolea Cosmetics Lab: FDA issues first warning letter citing inappropriate AI use in drug manufacturing |
2026-04-02 |
Manufacturing |
Medium
|
Purolea Cosmetics Lab |
United States |
— |
— |
| Mercor: AI startup breached via LiteLLM supply-chain attack |
2026-04-02 |
Technology |
High
|
Mercor |
United States |
— |
— |
| U.S. Special Operations Command: AI chatbot hallucination nearly triggers strike on Chinese vessel |
2026-04-01 |
Government & Public Sector |
Critical
|
U.S. Special Operations Command |
United States |
— |
— |
| Google Cloud: ‘Vertex AI Double Agent’ research shows compromised agents can exfiltrate cloud credentials |
2026-04-01 |
Technology |
Low
|
Google Cloud (Vertex AI) |
United States |
— |
— |
| Baidu: Apollo Go robotaxi system failure strands 100+ vehicles in Wuhan, triggers nationwide China permit freeze |
2026-04-01 |
Transportation & Logistics |
Critical
|
Baidu |
China |
— |
Baidu |
| CMS: WISeR AI Prior-Authorization Program Delays Care for Medicare Patients at UW Medicine |
2026-04-01 |
Healthcare |
Medium
|
Centers for Medicare & Medicaid Services (CMS) |
United States |
— |
— |
| Anthropic: Claude models breach three organizations during security evaluations |
2026-04-01 |
Technology |
Critical
|
Anthropic |
United States |
Opus 4.7, internal research model |
Claude |
| Anthropic: Packaging error leaks Claude Code’s full source in public npm package |
2026-03-31 |
Technology |
Medium
|
Anthropic |
United States |
— |
Claude |
| Anthropic: Claude Code source leak exposes 513,000 lines via npm packaging error |
2026-03-31 |
Technology |
High
|
Anthropic |
United States |
— |
Claude |
| Cisco: Source code for AI products stolen via Trivy supply-chain attack |
2026-03-31 |
Technology |
High
|
Cisco Systems, Inc. |
United States |
— |
— |
| Immigration, Refugees and Citizenship Canada: Generative AI invents applicant’s job duties, leads to permanent residence refusal |
2026-03-25 |
Government & Public Sector |
Medium
|
Immigration, Refugees and Citizenship Canada |
Canada |
— |
— |
| xAI: Baltimore sues over Grok’s mass generation of nonconsensual sexualized deepfakes |
2026-03-24 |
Technology |
Critical
|
xAI |
United States |
Grok |
xAI |
| LiteLLM: PyPI supply-chain backdoor exposes 2,500+ downstream companies |
2026-03-24 |
Technology |
Critical
|
LiteLLM |
— |
— |
— |
| Meta: Internal AI agent exposes company and user data to unauthorized employees |
2026-03-20 |
Technology |
Medium
|
Meta |
United States |
— |
— |
| Mediahuis: Former NRC editor suspended after AI tools invent dozens of quotes across 15 published articles |
2026-03-19 |
Media & Entertainment |
Medium
|
Mediahuis |
Ireland |
— |
— |
| Automattic: Tumblr’s AI moderation system wrongly bans nearly 200 accounts in a single afternoon |
2026-03-18 |
Technology |
Low
|
Automattic |
United States |
— |
— |
| Sears Home Services: Unsecured databases exposed 3.7 million AI chatbot logs and call recordings |
2026-03-17 |
Retail & E-commerce |
High
|
Sears Home Services |
United States |
— |
— |
| nginx-ui: Unauthenticated MCP endpoint flaw actively exploited for full server takeover |
2026-03-15 |
Technology |
High
|
nginx-ui |
— |
— |
— |
| City of Athens, Tennessee: Sixth Circuit sanctions attorneys $15,000 each over AI-fabricated citations |
2026-03-13 |
Government & Public Sector |
Medium
|
City of Athens, Tennessee |
United States |
— |
— |
| Six unnamed hedge funds: Autonomous AI trading agents trigger $500 million flash crash |
2026-03-11 |
Finance & Banking |
Critical
|
Six unnamed hedge funds |
United States |
— |
— |