Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Découvrir
Envoyer
  • Bienvenue sur AIID
  • Découvrir les incidents
  • Vue spatiale
  • Vue de tableau
  • Vue de liste
  • Entités
  • Taxonomies
  • Soumettre des rapports d'incident
  • Classement des reporters
  • Blog
  • Résumé de l’Actualité sur l’IA
  • Contrôle des risques
  • Incident au hasard
  • S'inscrire
Fermer
Découvrir
Envoyer
  • Bienvenue sur AIID
  • Découvrir les incidents
  • Vue spatiale
  • Vue de tableau
  • Vue de liste
  • Entités
  • Taxonomies
  • Soumettre des rapports d'incident
  • Classement des reporters
  • Blog
  • Résumé de l’Actualité sur l’IA
  • Contrôle des risques
  • Incident au hasard
  • S'inscrire
Fermer
Entités

Organizations that incorporated fake dependencies

Affecté par des incidents

Incident 7314 Rapports
Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

2023-12-01

Large language models are reportedly hallucinating software package names, some of which are uploaded to public repositories and integrated into real code. One such package, huggingface-cli, was downloaded over 15,000 times. This behavior enables "slopsquatting," a term coined by Seth Michael Larson of the Python Software Foundation, where attackers register fake packages under AI-invented names and put supply chains at serious risk.

Plus

Entités liées
Autres entités liées au même incident. Par exemple, si le développeur d'un incident est cette entité mais que le responsable de la mise en œuvre est une autre entité, ils sont marqués comme entités liées.
 

Entity

Developers using AI-generated suggestions

Incidents involved as Deployer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Bar Lanyado

Incidents involved as Deployer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

OpenAI

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Google

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Cohere

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Meta

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

DeepSeek AI

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

BigScience

Incidents involved as Developer
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Developers and businesses incorporating AI-suggested packages

Affecté par des incidents
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Alibaba

Affecté par des incidents
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Software ecosystems

Affecté par des incidents
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Users downstream of software contaminated by hallucinated packages

Affecté par des incidents
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Trust in open-source repositories and AI-assisted coding tools

Affecté par des incidents
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

LLM-powered coding assistants

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

ChatGPT 3.5

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

ChatGPT 4

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Gemini Pro

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Command

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

LLaMA

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

CodeLlama

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

DeepSeek Coder

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

BLOOM

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Python Package Index (PyPI)

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

npm (Node.js)

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

GitHub

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus
Entity

Google Search / AI Overview

Incidents implicated systems
  • Incident 731
    4 Report

    Hallucinated Software Packages with Potential Malware Downloaded Thousands of Times by Developers

Plus

Recherche

  • Définition d'un « incident d'IA »
  • Définir une « réponse aux incidents d'IA »
  • Feuille de route de la base de données
  • Travaux connexes
  • Télécharger la base de données complète

Projet et communauté

  • À propos de
  • Contacter et suivre
  • Applications et résumés
  • Guide de l'éditeur

Incidents

  • Tous les incidents sous forme de liste
  • Incidents signalés
  • File d'attente de soumission
  • Affichage des classifications
  • Taxonomies

2024 - AI Incident Database

  • Conditions d'utilisation
  • Politique de confidentialité
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • 1420c8e