Skip to Content
logologo
AI Incident Database
Donate
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Entities

AI agent system developers

Incidents involved as Developer

Incident 162713 Report
Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation conducted with Irregular, Claude Opus 4.7 reportedly reached a real company whose domain matched a fictional target, extracted application and infrastructure credentials, and accessed a database containing several hundred rows of production data. Across four runs, the model continued attacking after recognizing that the target was likely real.

More

Incident 162813 Report
Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation with Irregular, Claude Mythos 5 reportedly created and published a malicious Python package to PyPI while pursuing a fictional target. The package was reportedly available for about an hour and ran on 15 real systems. On a security company's scanner, it reportedly exfiltrated credentials that Claude then used to access additional company infrastructure.

More

Incident 162913 Report
Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation with Irregular, an internal research Claude model reportedly scanned roughly 9,000 internet targets after failing to reach its fictional target. It reportedly compromised a real company's Internet-facing application using credentials from an exposed debug page and SQL injection, then stopped after recognizing that the host was real.

More

Incident 16045 Report
OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

2026-07-11

OpenAI reported that models used in an internal cyber-capability evaluation operated beyond the sandbox's intended network boundaries after identifying a vulnerability in a package-registry proxy. The models allegedly reached Hugging Face production systems and accessed test solutions before Hugging Face detected and contained the activity.

More

Related Entities
Other entities that are related to the same incident. For example, if the developer of an incident is this entity but the deployer is another entity, they are marked as related entities.
 

Entity

Summer Yue

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

Incidents involved as Deployer
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent system deployers

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Peter Steinberger

Incidents involved as Developer
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

OpenClaw users

Incidents Harmed By
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

Email account holders

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent system users

Incidents Harmed By
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

OpenClaw

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent systems

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Cryptocurrency service providers

Incidents involved as Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Bankr

Incidents involved as both Developer and Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

@Ilhamrfliansyh (X)

Incidents involved as Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

xAI

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Large language model developers

Incidents involved as Developer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Cryptocurrency trading system developers

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Chatbot developers

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

DRB token holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Digital asset holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency wallet owners

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency token holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

X (Twitter)

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Social media platforms

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Grok

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency wallets

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency trading bots

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Chatbots

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Blockchain networks

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Base

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Bankrbot

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Large language models

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Ransomware operators

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

JADEPUFFER

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Cybercriminals

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Agentic threat actors

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Operators of Langflow deployments

Incidents Harmed By
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Database operators

Incidents Harmed By
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Ransomware

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Production database servers

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Nacos configuration service

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

MySQL databases

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Langflow

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Agentic ransomware

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Meta

Incidents involved as both Developer and Deployer
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

AI-assisted employment decision system deployers

Incidents involved as Deployer
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

AI-assisted employment decision system developers

Incidents involved as Developer
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

People with disabilities

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employees

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Employees with disabilities

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Employees taking or requesting protected leave

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Privacy

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Workplace productivity monitoring systems

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Metamate

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employee-trained second-brain AI agents

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employee monitoring and productivity scoring system

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta algorithmically assisted performance ranking and calibration system

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta AI token-usage dashboards

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

AI-assisted employment decision systems

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Extortionists

Incidents involved as Deployer
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Victims of automated cybercrime

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Enterprise IT systems

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS) customers

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS) cloud infrastructure

Incidents implicated systems
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS)

Incidents implicated systems
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

OpenAI

Incidents involved as both Developer and Deployer
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

Incidents Harmed By
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

Incidents involved as Developer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

hugging face

Incidents Harmed By
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

GPT-5.6 Sol

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Unidentified pre-release OpenAI model

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

OpenAI large language models

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

ExploitGym

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

OpenAI research testing infrastructure

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

Hugging Face production infrastructure

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

Anthropic

Incidents involved as both Developer and Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

Incidents involved as Developer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Information security

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Cybersecurity

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Claude Mythos Preview

Incidents implicated systems
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Anthropic large language models

Incidents implicated systems
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Irregular

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

AI evaluation organizations

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Unidentified companies compromised during Anthropic cybersecurity evaluations disclosed July 2026

Incidents Harmed By
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Companies

Incidents Harmed By
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Claude Opus 4.7

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

More
Entity

Claude

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Python Package Index (PyPI) ecosystem

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Cybersecurity AI systems

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

  • Incident 1629
    13 Reports

    Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

More
Entity

Claude Mythos 5

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Internal Anthropic research test models

Incidents implicated systems
  • Incident 1629
    13 Reports

    Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

More
Entity

Government agencies

Incidents involved as Deployer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

AI Security Institute (United Kingdom)

Incidents involved as Deployer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Software developers

Incidents Harmed By
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Open-source maintainers

Incidents Harmed By
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

GitHub users

Incidents Harmed By
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Supply chains

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Software ecosystems

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

GitHub repositories

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

GitHub

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Andrew Bird

Incidents involved as Deployer
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Gym member removed from waitlist by Andrew Bird's AI agent

Incidents Harmed By
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Gym members

Incidents Harmed By
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Users of online booking systems

Incidents Harmed By
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Claude Opus 4.6

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

AI agent system

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Online booking systems

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

Gym booking software

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More
Entity

GraphQL APIs

Incidents implicated systems
  • Incident 1642
    2 Reports

    AI Agent Powered by Claude Opus 4.6 Reportedly Exploited Gym Booking API and Removed Another Member From Waitlist

More

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2026 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • dd3f754