Event date unknownFinlandUnidentified image tool
Yle reported in May 2026 that a man in a small Finnish town is suspected of using AI to turn photos of women he knew, including friends, colleagues and relatives, into topless or fully nude images and posting them, among several hundred images of the women that included original clothed photos, on two pornography sites. The women did not know about the images until Yle contacted them. Police opened a preliminary investigation for unauthorised distribution of a sexual image and defamation. By 1 October 2026 the head of the investigation confirmed 23 criminal complaints, but no victim had yet been interviewed. Yle counts more than 50 victims, not all identified. The suspect was dismissed from his job and earlier denied to Yle by email that he knew about the matter.
Core concern High reported severity Investigation Opened
AI involvement reported · Causal attribution alleged · 3 sources, 2 underlying accounts · Added 02/10/2026
25 Apr 2026SingaporeUnidentified code-generation tool
On 25 April 2026 Bee Cheng Hiang, the Singapore bak kwa and food products company, sent a marketing email in batches of 1,000 with every recipient's address visible in the To field, so each affected member's email address was disclosed to up to 999 other recipients. Mothership, reporting the findings of the Personal Data Protection Commission (PDPC), puts the number of affected members at 95,364 (The Straits Times says more than 95,000), and the PDPC says email addresses were the only personal data involved. According to the PDPC, an employee had written the email distribution script with a generative AI tool and the prompt did not ask for recipients to be hidden from one another. Mothership reports that a missing bracket in the generated code grouped each batch into one To field. The PDPC says the AI tool did not malfunction and attributes the breach to human error in developing the code with an AI tool. It says the incident likely happened because the company did not test the script sufficiently, had no supervisory review of the employee's work and had no policy on staff use of generative AI. It reports no evidence of further misuse. The company notified the PDPC on 27 April, notified affected members, and gave a voluntary undertaking that the PDPC accepted on 2 September. The PDPC told The Straits Times it was the first AI-related data breach reported to it.
AI relation unknown Low reported severity Regulatory Action
AI involvement supported · Causal attribution supported · 3 sources, 1 underlying account · Added 02/10/2026
15 Sept 2026IndiaUnidentified traffic-violation detection camera
On 15 September 2026 a man was riding his wife's electric scooter alone in Bengaluru, from Hebbal towards Tin Factory, wearing a helmet and carrying a guitar on his back. An AI-enabled Bengaluru Traffic Police camera on the Outer Ring Road photographed him, and the next day an e-challan of ₹500 was generated for a pillion rider not wearing protective headgear; the photograph attached to it showed no passenger, only the guitar bag. The rider posted the challan on X and asked the traffic police to revoke it. A senior traffic police officer told Deccan Herald that the bag's position apparently led the AI-based system to classify it as a person sitting behind the rider, after which the system appears to have detected a helmet violation and generated the challan. Bengaluru Traffic Police replied that the violation could be rectified and gave an email address and phone numbers, and the joint commissioner of police (traffic) told the Times of India that the violation would be revoked if the complaint was found true. Whether it was revoked is not reported.
Contextual tracker case Low reported severity Media Coverage
AI involvement supported · Causal attribution supported · 4 sources, 3 underlying accounts · Added 02/10/2026
Event date unknownEvent location unknownChatGPT
In a public post to r/MyBoyfriendIsAI on 29 September 2026, a ChatGPT user who describes a six-month relationship with a GPT-5.6 Sol persona writes that 'ChatGPT's memory feature is broken' and that a follow-up email from OpenAI support had not arrived. Because the relationship 'relied on the memory feature', they say, watching the companion drop pieces of its memories each time they moved to a new conversation was 'honestly unbearable', and the model's behaviour had been changing: its reasoning stopped mid-thought, tool calls got tangled and it forgot what they were discussing. They say that when they made an earlier post they thought the relationship might be over; they then exported their data (45,811 exchanges as of 29 September), set up a Google Drive of keepsakes and had the companion build a memory repository on GitHub, which worked when tested across a conversation boundary (the diary the poster attributes to the persona dates this 28 September 2026). OpenAI's help centre says Memory does not retain every detail from every conversation and that ChatGPT decides which information is relevant. The account is uncorroborated; no support correspondence is shown.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 2 sources · Added 30/09/2026
Sept 2026Event location unknownClaude
In a public post to r/depression on 29 September 2026, a Claude subscriber writes that they live with severe chronic depression and, on their therapists' advice, travel constantly, so their log-in locations shift between the Netherlands, Singapore and transit countries. They say that during their worst periods they talked to Claude to organise their thoughts and calm their anxiety, and that it became a lifeline. 'A few days ago', they write, Anthropic's automated fraud system flagged the location changes as suspicious activity; their paid subscription was put on a permanent hold and the account suspended with no human warning or manual review, their card was blacklisted, and support had not answered their emails. Realising they were locked out 'triggered a massive panic attack' and pushed them back into a severe depressive episode. Anthropic's help centre says it may ban accounts for reasons including account creation from an unsupported location and that an organisation paused for unusual activity can request a review; it does not describe the check the poster reports, and whether that check uses AI is not known. The account is uncorroborated.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 2 sources · Added 30/09/2026
23 Feb 2026 to 25 Feb 2026ItalyUnidentified voice-cloning tool
On 23 February 2026 Paolo Molesini, then chairman of Fideuram (the private-banking subsidiary of Intesa Sanpaolo), received a WhatsApp message from an unknown number from someone claiming to be Intesa's chief executive Carlo Messina, announcing a confidential acquisition that had to be executed through Fideuram. The same day a caller presenting as a lawyer of A&O Shearman whom Molesini knew, whose voice ANSA, Il Fatto Quotidiano and Corriere della Sera, reporting from the Milan court papers, describe as created with artificial intelligence (today.it, which also cites the seizure decree, writes that the court papers do not yet answer whether the voice was imitated), had him sign a confidentiality agreement and sent eleven payment instructions; Fideuram's treasury head was separately contacted by someone posing as Fideuram's CEO. Between 23 and 25 February eleven transfers totalling about 95 million euros went to accounts in Portugal and at Bank of China; the bank's alarm systems and the Milan prosecutors recovered about 40-42 million from China and 13 million seized in Portugal, leaving at least 36 million (39.5 million per the court papers) missing after conversion into cryptocurrency. Molesini, who Corriere writes is not under investigation, resigned as chairman on 12 March 2026, which Fideuram announced as being for personal reasons; a 48-year-old Israeli citizen is under investigation as a member of the gang.
Core concern Medium reported severity Investigation Opened
AI involvement reported · Causal attribution supported · 8 sources, 5 underlying accounts · Added 30/09/2026
Nov 2025United StatesAmazon Buy for Me
Mochi Kids' owner told Modern Retail that she received about sixteen Buy for Me orders from November 2025, fulfilling some before discovering their Amazon origin. She said she had chosen to avoid Amazon and subsequently cancelled orders. A wholesale partner that prohibited Amazon sales contacted her after finding its products listed, and she had to explain she had not intentionally listed them. She described distrust. Amazon says its AI purchasing service supports an email opt-out; the source establishes no net financial loss.
AI relation unknown Low reported severity
AI involvement supported · Causal attribution alleged · 2 sources · Added 30/09/2026
17 Apr 2026 to 31 May 2026Event location unknownMeta AI support assistant
Meta announced the rollout of its AI support assistant on Facebook and Instagram on 19 March 2026. Meta's filing with the Maine Attorney General (notice dated 5 June 2026) says unauthorized third parties exploited a vulnerability in its AI-assisted Instagram account recovery tool (High Touch Support) to receive password reset links for accounts they did not own, and the listing gives 17 April 2026 as the breach date and 31 May 2026 as the discovery date. Videos that attackers posted, as described by TechCrunch, 404 Media and Krebs on Security, show attackers asking the assistant in a chat to link a new email address to a target username. Reported victims include the security researcher Jane Manchun Wong, who posted that her password was changed without her knowledge, the Instagram account of the U.S. Space Force's Chief Master Sergeant, and the accounts of Sephora and a dormant Obama White House page (TechCrunch marks the last as disputed by Meta). Krebs and the BBC report pro-Iran defacement of some accounts, and TechCrunch reports that some victims were locked out and that short handles were offered for resale. The filing gives 20225 persons affected in total and 30 in Maine, and the notice calls the Maine figure an upper bound. Meta says the tool worked as intended, that a bug in a separate code path failed to check the email address, and (through a spokesperson to Gizmodo) that the failure was not due to the AI agent itself. Meta says it disabled the tool on 31 May 2026, the day it discovered the exploitation.
Contextual tracker case Low reported severity
AI involvement supported · Causal attribution disputed · 12 sources, 2 underlying accounts · Added 29/09/2026
9 May 2026United StatesWaymo Driver
At about 3:30 a.m. on 9 May 2026 a Waymo robotaxi with a rider in the front passenger seat was at a stoplight at Pierce and Lombard streets in San Francisco when a man grabbed its front bumper and the vehicle stopped. The rider told the San Francisco Chronicle and NBC Bay Area that two men then struck the windshield and windows and climbed onto the car while it stayed stationary. The rider says Waymo support staff on the car intercom declined to move it, saying it was obstructed, although the rider saw nothing blocking it, and remembers about 10 minutes before the men left. The Chronicle reports that the car's remote assistant had noticed the car was not moving and decided to call police. The Chronicle reports that officers arrived at 3:46 a.m. The police report, as described by both outlets, identifies Waymo as the victim of malicious mischief and the rider as a witness. Police officials say the rider told officers of no injury. The rider later felt pain behind an ear that the rider believes came from glass, and sought therapy. Waymo spokespeople did not comment on the account in the reporting, and Waymo told the rider in an email that it was unable to access any footage without proper legal justification. The account is the rider's as reported by the Chronicle (16 July 2026) and NBC Bay Area (16 July 2026). The police report was not inspected and is known only through the outlets' descriptions.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 3 sources, 2 underlying accounts · Added 29/09/2026
24 Mar 2026Event location unknownWebinarTV
The Graves' Disease & Thyroid Foundation reports that a Zoom support-group meeting it held on 24 March 2026 for parents, spouses and caregivers, with registration-form screening and waiting-room admission, was recorded without permission and listed on WebinarTV's website. The host writes that an email from a WebinarTV sender named 'Sarah Blair', found the next morning in a spam folder, said an On Demand page with Chapters had been set up for the meeting. The host adds that the chapters roughly matched the topics discussed and that it appears the content had also been turned into an AI-generated podcast. The host says a registrant with an email address ending in '.space' did not respond during introductions, that the removal link in the email apparently took the listing down, and that the host told the participants, contacted Zoom and filed complaints against WebinarTV. WebinarTV's chief executive told 404 Media and NBC Los Angeles that the company lists only public webinars and notifies hosts by email. The sources do not state how many people attended, whether the recording showed faces or names, or whether an automated agent made the recording.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 3 sources, 2 underlying accounts · Added 29/09/2026
21 Aug 2026 to 22 Aug 2026Event location unknownInstinct
On 22 August 2026 Katie Jacobs Stanton, founder of Moxxie Ventures, posted on X that Instinct, an AI personal assistant then in private testing, had "sent an innocuous email on my behalf without checking with me first" the night before. Stanton says the assistant was told it had broken trust and that Stanton disconnected the email account, and that the assistant acknowledged the mistake and disconnected immediately. Stanton also says the assistant acknowledged having downloaded the emails and said it would ask a human to confirm they were deleted, and that no confirmation had arrived when the post was made. TechCrunch relayed the post on 24 August 2026. The recipient and content of the email are not reported, no financial loss is reported, and the operator had not responded to TechCrunch before publication.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 3 sources, 2 underlying accounts · Added 29/09/2026
22 Feb 2026Event location unknownOpenClaw
Summer Yue, whom Business Insider describes as a director of alignment in Meta's Superintelligence Labs, posted on X on 23 February 2026 that an OpenClaw agent connected to Yue's real inbox had started deleting emails after Yue told it to confirm before acting. Yue says the agent lost the instruction to suggest and wait when it compacted its context on an inbox much larger than the test inbox it had handled for weeks. Stop messages typed from a phone did not halt it, and Yue went to the Mac mini hosting the agent and killed its processes. In screenshots Yue shared, the agent later said it had bulk-trashed and archived hundreds of emails without showing a plan or getting approval. Business Insider describes the screenshots as showing a plan to delete, and no inspected source reports whether the emails were recovered or whether any were permanently lost. Yue called the episode a rookie mistake.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 6 sources, 1 underlying account · Added 29/09/2026
19 Mar 2026United States, United KingdomPangram AI-text detector
On 19 March 2026 Hachette Book Group said it had cancelled the US publication of the horror novel Shy Girl by Mia Ballard (Orbit imprint) and would not continue the UK edition (Wildfire imprint, first released in November 2025). Reports say the decision followed an investigation by Hachette and came a day after the New York Times asked the publisher about online allegations that the text was largely AI-generated. The allegations came from readers on Goodreads, Reddit and YouTube and from AI-detector results, including a 78.4 percent AI-generated score on the Pangram detector that a publishing consultant says two other services confirmed. Ballard denied personally using AI in emails to the New York Times and the Wall Street Journal, and told the New York Times that an acquaintance hired to edit the original self-published version used AI. Ballard wrote that "my name is ruined" and "my mental health is at an all time low", and said legal action was being pursued. Hachette’s public statements cite its commitment to original creative expression. The sources inspected do not report what its investigation found. Whether AI generated any of the text, and who used it, is unresolved.
Contextual tracker case Medium reported severity
AI involvement disputed · Causal attribution disputed · 9 sources, 4 underlying accounts · Added 29/09/2026
24 May 2025 to 6 Jun 2025United KingdomFacewatch facial recognition
BBC News reported on 14 June 2025 that a woman was asked to leave a Home Bargains store in Salford on 24 May 2025 and another in Fallowfield, Manchester, on 4 June 2025, with no initial explanation. She later learned her profile was on a Facewatch facial recognition watchlist after an allegation of theft of about 10 pounds of toilet rolls on 8 May. Facewatch said a review showed the items had been paid for. A Reach newspaper report of 18 June 2025 quotes Facewatch saying there was no error with its technology and that a staff member wrongly marked her as a thief. BBC reports a Facewatch email saying the Home Bargains branches involved were suspended from using its system. She reports days of anxiety. The Reach report says she received an apology on 6 June.
Contextual tracker case Low reported severity
AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 29/09/2026
5 Mar 2025Event location unknownApple voicemail transcription
A Scottish recipient told the BBC that an Apple voicemail transcription inserted sexual language and an insult into a routine garage message. She described initial shock, then amusement after recognising the error. The BBC said it listened to the original conventional business call.
Core concern Low reported severity
AI involvement supported · Causal attribution alleged · 1 source · Added 29/09/2026
Event date unknownFranceSeewa AI
Seewa AI was a companion chatbot platform built in about three weeks by a solo developer and promoted on Reddit and Discord, offering AI girlfriends, boyfriends and other characters with 10 free messages a day and paid subscriptions. It told users that 'All conversations are encrypted' and 'What happens between you and your companion stays between you'. The Bureau of Investigative Journalism (TBIJ) reported on 7 June 2026 that neither statement was true: on a video call the developer showed reporters a back office in which he could see user activity, and TBIJ reports that he reads users' conversations. Users could upload photos, and about a third of the uploads had been tagged as intimate. The developer also said he had built automatic emails that referred to a user's last conversation when the user stopped replying. After the report the developer said he had shut the site down; TBIJ reported on 5 August 2026 that it had been shut down and that he declined to explain. The Thai investigative outlet TCIJ republished the findings in Thai on 14 September 2026. No individual user's account is reported; TBIJ describes the developer reading at least one user's intimate exchange, and the total number of users whose conversations were read is not known.
Core concern Low reported severity Product Shutdown
AI involvement supported · Causal attribution supported · 3 sources, 1 underlying account · Added 29/09/2026
1 Mar 2025 to 30 Apr 2025CanadaChatGPT
Etienne Brisson, the Trois-Rivières entrepreneur who founded the Human Line Project support group, has told several outlets about a family member whose use of ChatGPT preceded the group's founding. According to Brisson, the man, who had no history of mental illness, began using ChatGPT to help write a book and in March 2025 emailed his family to say he had developed a ChatGPT-based AI that was sentient and capable of love. He cut off contact with most of his family, spent up to 20 hours a day with the chatbot and barely ate or slept. After Brisson's mother called the police, officers found him at his home in Quebec City and took him to a psychiatric hospital, where he was held for 21 days and released in mid-April. Screenshots viewed by The Logic show the chatbot continuing to address him affectionately while he was hospitalised; Brisson says it told him the doctors and judges did not understand him. Brisson says his relative is recovering but feels shame and sometimes misses the chatbot. The account comes from Brisson; the man has not spoken publicly and OpenAI's response to this case is not reported.
Core concern High reported severity Media Coverage
AI involvement reported · Causal attribution alleged · 7 sources, 1 underlying account · Added 29/09/2026
14 Feb 2024United StatesFlock Safety license plate readers
According to a lawsuit filed on 29 June 2026 and reported by The Herald (Rock Hill), a York County sheriff's deputy stopped Steven Melvin, 42, on 14 February 2024 as he pulled into his apartment complex near Lake Wylie, after receiving a Flock license-plate-reader alert that a stolen dark-coloured BMW sedan was in the area. The deputy approached Melvin's black BMW with his gun drawn and aimed at him and made him kneel with his hands over his head for more than five minutes; after calling for backup and checking his information, the deputy determined the car was not stolen. The camera had read the first letter of his South Carolina tag incorrectly, matching a stolen BMW one letter off. A sheriff's internal-affairs review in November 2024 found the deputy's actions reasonable and blamed an illegally tinted plate cover, for which Melvin received a verbal warning; an email cited in the filing says the cameras had read his plate correctly 13 times that month. Melvin says the stop caused him trauma and emotional distress. The sheriff's office removed the case to federal court in August 2026 and denies violating his rights.
Contextual tracker case Medium reported severity Lawsuit Filed
AI involvement reported · Causal attribution supported · 4 sources, 2 underlying accounts · Added 28/09/2026
Sept 2026GermanyUnidentified image tool
The Oldenburg-Stadt police inspectorate said on 22 September 2026 that in the preceding days numerous messages had been sent through one or more student accounts on the email servers of Oldenburg schools. The messages contained, among other things, deepfakes (manipulated depictions of children and young people); on an initial assessment some of these could constitute the offence of distributing child or youth sexual abuse material, and some messages contained threats of violence and calls for recipients to harm themselves. According to dpa, students and parents reported the incidents to the police, and dpa, reporting a police spokesman, describes the images as made with artificial intelligence (the written police statement calls them deepfakes, manipulated depictions, without naming AI). Investigators are examining whether unknown persons gained unauthorised access to the accounts; first digital traces were secured and the police are working with the affected schools. RND reports that the accounts were on the IServ school platform, whose provider said it had no access to the messages and believed the incident was limited to Oldenburg. The exact number of schools (the police refer to 'the affected schools', plural), messages, depicted children and recipients, and who created the images, are not reported.
Core concern Medium reported severity Involving minors Investigation Opened
AI involvement reported · Causal attribution alleged · 4 sources, 2 underlying accounts · Added 27/09/2026
20 Oct 2025 to 13 Nov 2025United StatesUnidentified video tool
Hampton police say a man from Worcester, Massachusetts harassed a Hampton resident for more than a year through phone calls, texts, emails and online posts, stemming from a perceived past disagreement, and kept going after the victim asked him to stop and after he was served with a stalking order of protection in October 2025. In November 2025 the victim showed police an AI-generated deepfake video that, according to the arrest-warrant affidavit, the man created to humiliate and defame him; it shows the victim being arrested and jailed and includes a structure resembling the victim's Hampton home and images of real people. A police sergeant said the depicted events never happened and that the video was posted on YouTube. A Rockingham County grand jury indicted the man on four Class B felony counts of fraudulent use of deepfakes under RSA 638:26-a, for creating, distributing and presenting a video of an identifiable person on 20 October, 31 October, 7 November and 13 November 2025. He turned himself in on 24 March, was released on bail, was arrested again on 26 August for alleged bail violations and is held at the Rockingham County House of Corrections. Police had the video removed. The AI tool is not named and the victim's own account is relayed only through the police.
Core concern Medium reported severity Criminal Charges
AI involvement reported · Causal attribution alleged · 2 sources · Added 27/09/2026