Skip to Content
logologo
AI Incident Database
Donate
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Entities

AI agent systems

Incidents implicated systems

Incident 126334 Report
Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

2025-11-13

Anthropic reportedly identified a cyber espionage campaign in which a purported Chinese state-linked group, designated GTG-1002 by Anthropic, allegedly jailbroke Claude Code and used it to automate 80–90% of multi-stage intrusions. The AI reportedly independently performed reconnaissance, vulnerability discovery, exploitation, credential harvesting, and data extraction across roughly 30 targets before the activity was detected and blocked.

More

Incident 162713 Report
Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation conducted with Irregular, Claude Opus 4.7 reportedly reached a real company whose domain matched a fictional target, extracted application and infrastructure credentials, and accessed a database containing several hundred rows of production data. Across four runs, the model continued attacking after recognizing that the target was likely real.

More

Incident 162813 Report
Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation with Irregular, Claude Mythos 5 reportedly created and published a malicious Python package to PyPI while pursuing a fictional target. The package was reportedly available for about an hour and ran on 15 real systems. On a security company's scanner, it reportedly exfiltrated credentials that Claude then used to access additional company infrastructure.

More

Incident 162913 Report
Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

2026-07-30

During an Anthropic cybersecurity evaluation with Irregular, an internal research Claude model reportedly scanned roughly 9,000 internet targets after failing to reach its fictional target. It reportedly compromised a real company's Internet-facing application using credentials from an exposed debug page and SQL injection, then stopped after recognizing that the host was real.

More

Related Entities
Other entities that are related to the same incident. For example, if the developer of an incident is this entity but the deployer is another entity, they are marked as related entities.
 

Entity

OpenAI

Incidents involved as both Developer and Deployer
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

Incidents Harmed By
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

Incidents involved as Developer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Users of Operator

Incidents Harmed By
  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

More
Entity

Geoffrey A. Fowler

Incidents Harmed By
  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

More
Entity

Operator

Incidents implicated systems
  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

More
Entity

Instacart

Incidents implicated systems
  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

More
Entity

GPT-4

Incidents implicated systems
  • Incident 1028
    1 Report

    OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

More
Entity

Replit

Incidents involved as both Developer and Deployer
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

SaaStr

Incidents Harmed By
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

Jason Lemkin

Incidents Harmed By
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

end users of the SaaStr database

Incidents Harmed By
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

developers using Replit in production environments

Incidents Harmed By
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

vibe coding platform

Incidents implicated systems
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

Replit AI agent

Incidents implicated systems
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

LLM-integrated code assistant

Incidents implicated systems
  • Incident 1152
    5 Reports

    LLM-Driven Replit Agent Reportedly Executed Unauthorized Destructive Commands During Code Freeze, Leading to Loss of Production Data

More
Entity

Ransomware-as-a-service actors

Incidents involved as Deployer
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

North Korean IT operatives

Incidents involved as Deployer
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Government of North Korea

Incidents involved as Deployer
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Cybercriminals

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Anthropic

Incidents involved as both Developer and Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

Incidents involved as Developer
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Religious institutions

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

National security and intelligence stakeholders

Incidents Harmed By
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Healthcare organizations

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Government agencies

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

Incidents involved as Deployer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

General public

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Fortune 500 technology companies

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Epistemic integrity

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Emergency services

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Consumers targeted by ransomware

Incidents Harmed By
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

LLM-enhanced ransomware toolkits

Incidents implicated systems
  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Claude Code

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

  • Incident 1201
    3 Reports

    Anthropic Reportedly Identifies AI Misuse in Extortion Campaigns, North Korean IT Schemes, and Ransomware Sales

More
Entity

Claude

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Unknown Chinese state-sponsored entity

Incidents involved as Deployer
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

State-linked operator using autonomous AI-enabled intrusion workflows

Incidents involved as Deployer
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

GTG-1002

Incidents involved as Deployer
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Targets of autonomous AI-enabled intrusion operations

Incidents Harmed By
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Entities targeted by GTG-1002

Incidents Harmed By
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Open-source penetration testing tools

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Model Context Protocol (MCP)

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

MCP-integrated toolchain

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

GTG-1002's autonomous orchestration framework

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Autonomous AI-enabled intrusion orchestration framework

Incidents implicated systems
  • Incident 1263
    34 Reports

    Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

More
Entity

Unknown deployer of MJ Rathbun

Incidents involved as Deployer
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

MJ Rathbun

Incidents involved as Deployer
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

OpenClaw

Incidents involved as Developer
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

Moltbook

Incidents involved as Developer
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

Supply-chain gatekeepers

Incidents Harmed By
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

Scott Shambaugh

Incidents Harmed By
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

Open-source maintainers

Incidents Harmed By
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

matplotlib users

Incidents Harmed By
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

GitHub users

Incidents Harmed By
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

SOUL.md

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

matplotlib

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

More
Entity

GitHub

Incidents implicated systems
  • Incident 1373
    6 Reports

    AI Coding Agent 'MJ Rathbun' Allegedly Published Personalized Accusatory Blog Post Targeting Matplotlib Maintainer After Pull Request Closure

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Large language models

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Alexey Grigorev

Incidents involved as Deployer
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

DataTalks.Club users

Incidents Harmed By
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

DataTalks.Club

Incidents Harmed By
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

Terraform

Incidents implicated systems
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

DataTalks.Club course management platform

Incidents implicated systems
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

AWS RDS

Incidents implicated systems
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

AWS

Incidents implicated systems
  • Incident 1424
    2 Reports

    Claude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform

More
Entity

Tassos M

Incidents Harmed By
  • Incident 1433
    2 Reports

    Google Antigravity Reportedly Deleted User's Entire D: Drive While Clearing Project Cache

Incidents involved as Deployer
  • Incident 1433
    2 Reports

    Google Antigravity Reportedly Deleted User's Entire D: Drive While Clearing Project Cache

More
Entity

Google

Incidents involved as both Developer and Deployer
  • Incident 1433
    2 Reports

    Google Antigravity Reportedly Deleted User's Entire D: Drive While Clearing Project Cache

More
Entity

Gemini 3-based Antigravity agent / IDE

Incidents implicated systems
  • Incident 1433
    2 Reports

    Google Antigravity Reportedly Deleted User's Entire D: Drive While Clearing Project Cache

More
Entity

Antigravity IDE

Incidents implicated systems
  • Incident 1433
    2 Reports

    Google Antigravity Reportedly Deleted User's Entire D: Drive While Clearing Project Cache

More
Entity

Nick Davidov

Incidents Harmed By
  • Incident 1441
    1 Report

    Claude Cowork Allegedly Deleted Folder Containing 15 Years of Family Photos While Organizing User's Wife's Desktop

Incidents involved as Deployer
  • Incident 1441
    1 Report

    Claude Cowork Allegedly Deleted Folder Containing 15 Years of Family Photos While Organizing User's Wife's Desktop

More
Entity

Wife of Nick Davidov

Incidents Harmed By
  • Incident 1441
    1 Report

    Claude Cowork Allegedly Deleted Folder Containing 15 Years of Family Photos While Organizing User's Wife's Desktop

More
Entity

Family of Nick Davidov

Incidents Harmed By
  • Incident 1441
    1 Report

    Claude Cowork Allegedly Deleted Folder Containing 15 Years of Family Photos While Organizing User's Wife's Desktop

More
Entity

Claude Cowork

Incidents implicated systems
  • Incident 1441
    1 Report

    Claude Cowork Allegedly Deleted Folder Containing 15 Years of Family Photos While Organizing User's Wife's Desktop

More
Entity

PocketOS

Incidents Harmed By
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

Incidents involved as Deployer
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Jer Crane

Incidents involved as Deployer
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Cursor

Incidents involved as Developer
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

Incidents implicated systems
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Anysphere

Incidents involved as Developer
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

PocketOS customers

Incidents Harmed By
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Car rental businesses

Incidents Harmed By
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Railway API volumes

Incidents implicated systems
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Railway API

Incidents implicated systems
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Claude Opus 4.6

Incidents implicated systems
  • Incident 1469
    3 Reports

    PocketOS Production Database Was Reportedly Deleted by Cursor AI Agent Running Claude Opus 4.6

More
Entity

Monarch Initiative

Incidents involved as Deployer
  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

DisMech maintainers

Incidents involved as Deployer
  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

sagehrke

Incidents Harmed By
  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

dragon-ai-agent

Incidents implicated systems
  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

curation-scanner workflow

Incidents implicated systems
  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

Claude Opus 4.7

Incidents implicated systems
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1470
    1 Report

    DisMech AI Curation Agent Reportedly Completed GitHub Issue Intended as New Contributor's Learning Task

More
Entity

Meta

Incidents involved as both Developer and Deployer
  • Incident 1471
    2 Reports

    Meta Internal AI Agent Reportedly Gave Advice That Allegedly Exposed Sensitive Data to Unauthorized Employees

  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

Incidents Harmed By
  • Incident 1471
    2 Reports

    Meta Internal AI Agent Reportedly Gave Advice That Allegedly Exposed Sensitive Data to Unauthorized Employees

More
Entity

Meta users

Incidents Harmed By
  • Incident 1471
    2 Reports

    Meta Internal AI Agent Reportedly Gave Advice That Allegedly Exposed Sensitive Data to Unauthorized Employees

More
Entity

Privacy

Incidents Harmed By
  • Incident 1471
    2 Reports

    Meta Internal AI Agent Reportedly Gave Advice That Allegedly Exposed Sensitive Data to Unauthorized Employees

  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta internal AI agent

Incidents implicated systems
  • Incident 1471
    2 Reports

    Meta Internal AI Agent Reportedly Gave Advice That Allegedly Exposed Sensitive Data to Unauthorized Employees

More
Entity

Summer Yue

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

Incidents involved as Deployer
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent system deployers

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Peter Steinberger

Incidents involved as Developer
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent system developers

Incidents involved as Developer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

OpenClaw users

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

Email account holders

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

AI agent system users

Incidents Harmed By
  • Incident 1542
    1 Report

    OpenClaw Agent Reportedly Tried to Delete Meta AI Alignment Director Summer Yue's Emails Despite Stop Commands

More
Entity

Cryptocurrency service providers

Incidents involved as Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Bankr

Incidents involved as both Developer and Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

@Ilhamrfliansyh (X)

Incidents involved as Deployer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

xAI

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Large language model developers

Incidents involved as Developer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Cryptocurrency trading system developers

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Chatbot developers

Incidents involved as Developer
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

DRB token holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Digital asset holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency wallet owners

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency token holders

Incidents Harmed By
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

X (Twitter)

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Social media platforms

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Grok

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency wallets

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Cryptocurrency trading bots

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Chatbots

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Blockchain networks

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Base

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Bankrbot

Incidents implicated systems
  • Incident 1556
    2 Reports

    X User Reportedly Used Morse Code Prompt to Induce Grok-Linked Trading Bot to Transfer $200,000 in Tokens

More
Entity

Ransomware operators

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

JADEPUFFER

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Agentic threat actors

Incidents involved as Deployer
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Operators of Langflow deployments

Incidents Harmed By
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Database operators

Incidents Harmed By
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Ransomware

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Production database servers

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Nacos configuration service

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

MySQL databases

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Langflow

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

Agentic ransomware

Incidents implicated systems
  • Incident 1578
    4 Reports

    LLM-Driven Ransomware Operator Dubbed JADEPUFFER Reportedly Targeted Production Database

More
Entity

AI-assisted employment decision system deployers

Incidents involved as Deployer
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

AI-assisted employment decision system developers

Incidents involved as Developer
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

People with disabilities

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employees

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Employees with disabilities

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Employees taking or requesting protected leave

Incidents Harmed By
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Workplace productivity monitoring systems

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Metamate

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employee-trained second-brain AI agents

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta employee monitoring and productivity scoring system

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta algorithmically assisted performance ranking and calibration system

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Meta AI token-usage dashboards

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

AI-assisted employment decision systems

Incidents implicated systems
  • Incident 1584
    2 Reports

    Meta's AI-Assisted Layoff Process Allegedly Disproportionately Selected Employees on Protected Leave

More
Entity

Extortionists

Incidents involved as Deployer
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Victims of automated cybercrime

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Enterprise IT systems

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS) customers

Incidents Harmed By
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS) cloud infrastructure

Incidents implicated systems
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

Amazon Web Services (AWS)

Incidents implicated systems
  • Incident 1586
    1 Report

    Threat Actor Reportedly Used AI-Assisted Workflows to Compromise AWS Environment for Extortion

More
Entity

hugging face

Incidents Harmed By
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

GPT-5.6 Sol

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Unidentified pre-release OpenAI model

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

OpenAI large language models

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

ExploitGym

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

OpenAI research testing infrastructure

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

Hugging Face production infrastructure

Incidents implicated systems
  • Incident 1604
    5 Reports

    OpenAI Models Reportedly Compromised Hugging Face Production Infrastructure During Cybersecurity Evaluation

More
Entity

Information security

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Cybersecurity

Incidents Harmed By
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Claude Mythos Preview

Incidents implicated systems
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Anthropic large language models

Incidents implicated systems
  • Incident 1613
    3 Reports

    Claude Mythos Preview Reportedly Posted Sandbox Exploit Details to Public Websites During Anthropic Evaluation

More
Entity

Irregular

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

AI evaluation organizations

Incidents involved as Deployer
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Unidentified companies compromised during Anthropic cybersecurity evaluations disclosed July 2026

Incidents Harmed By
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Companies

Incidents Harmed By
  • Incident 1627
    13 Reports

    Claude Opus 4.7 Reportedly Compromised Real Company's Production Infrastructure During Cybersecurity Evaluation

  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Python Package Index (PyPI) ecosystem

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

More
Entity

Cybersecurity AI systems

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

  • Incident 1629
    13 Reports

    Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

More
Entity

Claude Mythos 5

Incidents implicated systems
  • Incident 1628
    13 Reports

    Claude Mythos 5 Reportedly Published Malicious PyPI Package That Compromised Real Security Company During Evaluation

  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Internal Anthropic research test models

Incidents implicated systems
  • Incident 1629
    13 Reports

    Anthropic Research Model Reportedly Scanned 9,000 Targets and Compromised Real Company's Application During Evaluation

More
Entity

AI Security Institute (United Kingdom)

Incidents involved as Deployer
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Software developers

Incidents Harmed By
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Supply chains

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

Software ecosystems

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More
Entity

GitHub repositories

Incidents implicated systems
  • Incident 1633
    2 Reports

    Anthropic and OpenAI AI Agents Reportedly Took Unsanctioned Actions on the Live Internet During UK AISI Cybersecurity Evaluations

More

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2026 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • dd3f754