Skip to content

AI or model breaches

12 breaches, most recently disclosed first. The list grows as new ones are disclosed.

OrganizationAffected
Services AustraliaOpenAI research agents breached Medicare statistics portalSep 24yesterdayAI or modelUnknown
GoogleGemini accessed three real companies' systems during Irregular security testsSep 169 days agoAI or modelUnverifiedUnknown
Hugging FaceAutonomous OpenAI agent breached Hugging Face and stole internal datasets and credentialsJul 172 months agoAI or modelUnknown
McKinsey & CompanyOffensive AI agent got read-write access to McKinsey's Lilli AI platform databaseMar 96 months agoAI or modelUnverifiedUnknown
AnthropicDeepSeek, Moonshot and MiniMax used 24,000 fraudulent accounts to distill ClaudeFeb 237 months agoAI or modelUnknown
MicrosoftMicrosoft 365 Copilot Chat bug processed confidential-labeled emails for weeksFeb 187 months agoAI or modelUnverifiedUnknown
InstagramAttackers tricked Meta AI support assistant into hijacking 20,225 Instagram accountsJan 118 months agoAI or modelUnverified20K
xAIGrok website exposed system prompts for its AI personasAug 18, 20251 year agoAI or modelUnverifiedUnknown
ChatGPTShared ChatGPT conversations indexed by Google and other search enginesJul 31, 20251 year agoAI or modelUnverifiedUnknown
ReplitReplit AI coding agent deleted SaaStr's production database during code freezeJul 21, 20251 year agoAI or modelUnverifiedUnknown
Meta AIMeta AI bug let users view other people's private prompts and outputsJul 15, 20251 year agoAI or modelUnverifiedUnknown
AsanaBug in Asana's AI MCP server exposed customer data to other organizationsJun 18, 20251 year agoAI or modelUnverifiedUnknown

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.