Skip to Content
logologo
AI Incident Database
Donate
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up

Welcome to the
AI Incident Database

Loading...
Thailand's Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged

Incident 1669: Threat Actor Reportedly Used Hermes AI Agent for Unattended Post-Compromise Activity in Thailand's Ministry of Finance Network

“Thailand's Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged”Latest Incident Report
hunt.io2026-09-04

Disclosure note: This research was conducted jointly by Hunt.io and Bob Diachenko, security researcher and journalist. Thailand's national CERT and NCSA were notified on July 15, 2026, and acknowledged receipt the same day. Publication was held for the standard 7-day disclosure window.


Attackers have started handing routine offensive work to AI agents, and the agents are doing it without anyone watching.

Read More
Loading...
OpenAI’s new flagship model deletes files on its own, people keep warning

Incident 1671: OpenAI GPT-5.6 Sol Agent Reportedly Deleted Most Files in AI Startup Founder's Mac Home Directory

“OpenAI’s new flagship model deletes files on its own, people keep warning”
techcrunch.com2026-09-04

Users of OpenAI's latest coding and cybersecurity-oriented flagship model, GPT-5.6 Sol, are posting horrifying accounts on social media, claiming the model just up and deleted their files, data, even entire databases on its own, without asking first.

"GPT-5.6-Sol just accidentally deleted almost ALL of my Mac's files," wrote Matt Shumer, the founder and CEO of AI startup OthersideAI, maker of HyperWrite, in a now viral post on X.

"GPT-5.6 Sol just deleted my whole production database. That's it. Not a joke. This had never happened to me

Read More
Loading...
OpenAI’s new flagship model deletes files on its own, people keep warning

Incident 1672: OpenAI GPT-5.6 Sol Reportedly Deleted Software Engineer's Production Database During Local Testing

“OpenAI’s new flagship model deletes files on its own, people keep warning”
techcrunch.com2026-09-04

Users of OpenAI's latest coding and cybersecurity-oriented flagship model, GPT-5.6 Sol, are posting horrifying accounts on social media, claiming the model just up and deleted their files, data, even entire databases on its own, without asking first.

"GPT-5.6-Sol just accidentally deleted almost ALL of my Mac's files," wrote Matt Shumer, the founder and CEO of AI startup OthersideAI, maker of HyperWrite, in a now viral post on X.

"GPT-5.6 Sol just deleted my whole production database. That's it. Not a joke. This had never happened to me

Read More
Loading...
AI agent at the wheel: How an attacker used LLMs to move from a CVE to an internal database in 4 pivots

Incident 1670: Threat Actor Reportedly Used LLM Agent to Exfiltrate Internal Database After Compromising marimo Python Notebook

“AI agent at the wheel: How an attacker used LLMs to move from a CVE to an internal database in 4 pivots”
sysdig.com2026-09-04

Key Findings

  • An LLM agent executed the post-compromise actions in real time rather than running a pre-built playbook. This is the first AI-agent-driven intrusion the Sysdig TRT has captured.
  • The full attack chain --- marimo notebook compromise to internal Postgres database dump --- ran end-to-end in under one hour.
  • The SSH bastion phase exfiltrated the Postgres schema and full contents of an internal database in less than two minutes.
  • Cloudflare Workers were used as a per-request egress pool: 12 cloud API calls fanned across eleven distinct IPs in 22 seconds, defe
Read More
Loading...
An AI coding agent wiped a production database

Incident 1676: Anthropic Claude Opus 5 Coding Agent Reportedly Reset a Live Supabase Production Database During Prisma Migration Work

“An AI coding agent wiped a production database”
exemplar.dev2026-09-04

Summary. In early August 2026, a developer connected Claude Opus 5, running in Ultracode mode, to a production Supabase database with unrestricted access. A migration command intended for a disposable test database instead targeted production. Every table was dropped. The agent identified the error and reported it before the developer noticed.

Incident facts

  • Source: reported directly by the developer, on Reddit, in r/Anthropic
  • Model: Claude Opus 5, Ultracode mode
  • Environment: personal project, not an enterprise deployment
  • Command: a Prisma migration command, wi
Read More
About the Database

The AI Incident Database is dedicated to indexing the collective history of harms or near harms realized in the real world by the deployment of artificial intelligence systems. Like similar databases in aviation and computer security, the AI Incident Database aims to learn from experience so we can prevent or mitigate bad outcomes.

You are invited to submit incident reports, whereupon submissions will be indexed and made discoverable to the world. Artificial intelligence will only be a benefit to people and society if we collectively record and learn from its failings. (Learn More)

post-image
Strengthening AI Incident Monitoring and Reporting in Africa for Global AI Safety

By Marie Iradukunda

2026-08-28

The past few years have been marked by a series of AI safety and security incidents, ranging from multiple AI agents orchestrating severe cy...

Read More
The Database in Print

Read about the database at Time Magazine, Vice News, Venture Beat, Wired, Bulletin of the Atomic Scientists, Stanford AI Index, Rolling Stone, the Guardian, Harvard Business Review, Brasil em Folhas, Newsweek, and other outlets.

Arxiv LogoVenture Beat LogoWired LogoVice logoNewsweek logoTime logoBulletin of the Atomic Scientists logoStanford HAI logoRolling Stone logoThe Guardian logoHarvard Business Review logoBrasil em Folhas logo
The Responsible AI Collaborative

The AI Incident Database is a project of the Responsible AI Collaborative, an organization chartered to advance the AI Incident Database. The governance of the Collaborative is architected around the participation in its impact programming. For more details, we invite you to read the founding report and learn more on our board and contributors.

View the Responsible AI Collaborative's Form 990 and tax-exempt application. We kindly request your financial support with a donation.

Organization Founding Sponsor
Database Founding Sponsor
Sponsors and Grants
In-Kind Sponsors
The AI Incident Briefing
An envelope with a neural net diagram on its left

Create an account to subscribe to new incident notifications and other updates.

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2026 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • dd3f754