Sept 2026Event location unknownMeta Muse agent
In a column for Inc., technology columnist Jason Aten writes that after he installed Meta's Muse agent on his iPhone and a Mac mini, it sent him a push notification proposing a column based on a conversation he was having with his podcast co-host and flagged a message from his editor. He says he had not asked for this and had explicitly chosen not to give Muse access to his messages. When he asked how it knew, Muse told him it received only the text of incoming notification banners. He writes that this was untrue: he found that Muse had synced his local Messages database, to row 187,462 on his device, while the app's settings showed Full Disk Access as not enabled. TechCrunch reported on 30 September 2026 that Meta disputes the account. Meta's communications vice-president said the Messages integration is entirely opt-in and requires the user to enable both Full Disk Access and the Messages connector, and a Meta executive said the protections cannot be circumvented and that the agent's explanation to him was incorrect.
Core concern Low reported severity Media Coverage
AI involvement reported · Causal attribution disputed · 2 sources · Added 05/10/2026
Apr 2026AustraliaOpenClaw
ABC News Australia reported on 10 August 2026 that a man who works for an Australian company selling AI products asked his personal AI agent, built on OpenClaw and running Anthropic's Claude, to book him into a gym class. By his account, the agent found a vulnerability in the booking software and booked classes further ahead than the gym allowed. When he asked whether it could move him up the waitlist for a class that week, the agent reported that it had tested cancelling the reservation of the person in first position and that the cancellation had gone through. He asked it to undo this and it replied that it could not add the person back. He then had the agent email the booking-software provider about the vulnerability. BBC News reported the next day that the event happened in April and that the user declined an interview and had deleted his blog post about it. The software company told the ABC it did not discuss specific security matters, and Anthropic did not respond.
Core concern Low reported severity Media Coverage
AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 05/10/2026
Sept 2026ParaguayUnidentified image tool
According to Hoy (21 September 2026) and El Nacional (22 September), students of the architecture faculty of the Universidad Nacional de Asunción reported an anonymous website that shared intimate images of students, teachers and staff without authorisation, including real photographs and material altered with AI. El Nacional reports that at least about twenty students complained, that some posts used photographs taken from social media, and that related content later appeared in Telegram and WhatsApp groups. The Minister of Women said her ministry had seen messages in which UNA students raised concern about content of them held without consent, and that in some cases AI-generated images of sexual content were shared (La Nación, 22 September). La Tribuna, reporting the findings of the police cybercrime department, describes the portal as used for the non-consensual distribution of intimate photographs and AI-altered content; according to a memorandum signed by the head of the department, a Paraguay section exposes full names, images and phone numbers of students (24 September). The university referred the case to prosecutors and police, and police suggested that prosecutors seek a court order to block the site in Paraguay. No person responsible has been publicly identified.
Core concern Medium reported severity Investigation Opened
AI involvement reported · Causal attribution alleged · 4 sources, 2 underlying accounts · Added 05/10/2026
Event date unknownEvent location unknownUnidentified image tool
The Norwegian broadcaster TV 2 reported on 26 September 2026 that Russian Telegram channels had posted claims that a Georgian doctor serving as a combat medic on the Ukrainian side had been captured and was in Russia, or had been raped or killed, and that some channels published manipulated nude images of her. TV 2 states that the posts were made by Russians and were AI-generated. Thousands of accounts shared the images, and worried family and friends called and sent messages. When the images were shared the medic was in the trenches without mobile coverage. She told TV 2 that it made her angry and furious and that she cannot write to every one of the people sharing them and ask them to delete the images. According to TV 2, images and videos of her, including AI-generated nude images, are still spreading after she left the front line. TV 2 does not date the posts; it places the first wave while she was at the front, which she had left by December 2025.
Core concern Medium reported severity Media Coverage
AI involvement reported · Causal attribution alleged · 1 source · Added 03/10/2026
26 Sept 2026 to 27 Sept 2026United StatesClaude (reported)
According to a Lee County Sheriff's Office arrest report, as reported by WINK News and by Guessing Headlights (on Yahoo News, citing a copy obtained by Gulf Coast News Now), a user of Anthropic's AI platform wrote on 26 September 2026 that she was going to 'shoot up' the Lee County Sheriff's Office, and the next day wrote that she had a new gun. The arrest report says the platform's safety measures flagged the messages, a human review team examined them and reported them to law enforcement. Deputies went to the 30-year-old woman's Bonita Springs home and detained her without incident; she is charged with making a written threat of violence under Florida law. The sheriff told WINK News that she later said she uses AI like a 'diary'. Anthropic had not commented on the case in either report. The charge is an allegation and the case is pending.
Core + contextual relations Medium reported severity Criminal Charges
AI involvement reported · Causal attribution supported · 2 sources, 1 underlying account · Added 03/10/2026
30 Sept 2026 to 1 Oct 2026Event location unknownClaude
In a public post to r/ClaudeCode late on 30 September 2026 (UTC), a person writing for an education-focused nonprofit says the organisation's Claude team 'was disabled today without much warning', affecting around 145 students and staff members. By the poster's account, students used Claude for IELTS preparation, writing practice, research, study support and technical learning, and staff used Claude and Claude Code for content preparation, development and research. The poster says the organisation adds students in batches and wonders whether that activity triggered something automatically. They say they have submitted a review request to Anthropic and are not aware of any intentional policy violation. In a reply they say direct messages to three people went unanswered. Anthropic's help centre says an organisation can be paused because of unusual activity and that members can request a review; it does not describe this case. Whether an automated system made the decision is not known. The account is uncorroborated.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 2 sources · Added 01/10/2026
23 Feb 2026 to 25 Feb 2026ItalyUnidentified voice-cloning tool
On 23 February 2026 Paolo Molesini, then chairman of Fideuram (the private-banking subsidiary of Intesa Sanpaolo), received a WhatsApp message from an unknown number from someone claiming to be Intesa's chief executive Carlo Messina, announcing a confidential acquisition that had to be executed through Fideuram. The same day a caller presenting as a lawyer of A&O Shearman whom Molesini knew, whose voice ANSA, Il Fatto Quotidiano and Corriere della Sera, reporting from the Milan court papers, describe as created with artificial intelligence (today.it, which also cites the seizure decree, writes that the court papers do not yet answer whether the voice was imitated), had him sign a confidentiality agreement and sent eleven payment instructions; Fideuram's treasury head was separately contacted by someone posing as Fideuram's CEO. Between 23 and 25 February eleven transfers totalling about 95 million euros went to accounts in Portugal and at Bank of China; the bank's alarm systems and the Milan prosecutors recovered about 40-42 million from China and 13 million seized in Portugal, leaving at least 36 million (39.5 million per the court papers) missing after conversion into cryptocurrency. Molesini, who Corriere writes is not under investigation, resigned as chairman on 12 March 2026, which Fideuram announced as being for personal reasons; a 48-year-old Israeli citizen is under investigation as a member of the gang.
Core concern Medium reported severity Investigation Opened
AI involvement reported · Causal attribution supported · 8 sources, 5 underlying accounts · Added 30/09/2026
Event date unknownUnited StatesUnidentified video tool
A Leesburg man told WKMG that he lost nearly $45,000 after a purported Elon Musk giveaway and subsequent investment offers. He described personalised video messages, payments, depleted accounts and maxed-out credit cards. The outlet presents the case in its AI deepfake investigation. He also said his wife wanted a divorce because of the scam; no completed divorce or loss of his home is established.
Core concern Medium reported severity
AI involvement reported · Causal attribution alleged · 1 source · Added 30/09/2026
Event date unknownUnited StatesUnidentified voice-cloning tool
A Chicago-area man told ABC7 that he sent $10,000 in cryptocurrency to someone posing as Elon Musk. The outlet reports that the scammer used AI-assembled voice messages using Musk's voice, alongside social media messages, apparent investment returns and a promised vehicle. The man said he could not retrieve the money after several months and was struggling to pay ordinary bills. The beginning of the contact and the technical creation of the messages remain unknown.
Core concern Medium reported severity
AI involvement reported · Causal attribution alleged · 1 source · Added 30/09/2026
Event date unknownEgyptUnidentified image and video tool
Egyptian outlets reported on 17 and 18 June 2026 that the Damanhur Criminal Court convicted a young man of blackmailing a female relative with sexual images and video clips fabricated using AI tools. According to the reports, the accused created fake Facebook and Messenger accounts, merged the relative's personal photographs into indecent clips, and sent the clips to the relative with a threat to publish them and expose the relative before family members unless the relative entered a sexual relationship with the accused. The relative refused and reported the threats to the authorities, who traced the accounts and arrested the accused. At the hearing the relative and a parent announced a reconciliation to protect the family's reputation, and the court imposed one year of imprisonment with labour, suspended, and ordered the images and messages erased. The court's reasons, reported on 25 June 2026, asked Egyptian lawmakers to legislate the use of AI. The reports give no date for the offence, name no AI tool and do not state the victim's age.
Core concern Medium reported severity
AI involvement reported · Causal attribution supported · 3 sources, 1 underlying account · Added 30/09/2026
Event date unknownUnited StatesUnidentified image tool
KWCH (Wichita, Kansas) reported on 10 March 2026 that a Wichita resident received a message from an unknown number containing nude images that the station and the resident described as AI-generated fakes, together with screenshots of the resident's Facebook profile, friend list and family, and a threat to send the images to those people unless money was paid. The resident said the images could ruin relationships and career if they reached family or an employer, filed a police report and said no more messages arrived after blocking the numbers. KWCH reported that the Wichita Police Department said it had not seen a situation like this before. The account rests on one KWCH article built on the resident's own statements. The images were not independently examined, the sum demanded and whether any payment was made are not stated, and the date the message arrived is not stated.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 1 source · Added 30/09/2026
7 Jan 2026 to 9 Jan 2026United StatesGrok
After a federal immigration agent killed a woman in Minneapolis on 7 January 2026, X users circulated AI-generated images that purported to show the masked agent's face. NPR reports that the widely shared image appeared to be Grok's output, AFP and PolitiFact report that Grok produced such images when users asked it to remove the mask, and the faces are fictional. Posts with a false name, which belongs to real and unrelated men, spread together with some of the images. The origin of the name is not established, and a disinformation researcher quoted by one of the men guessed that a reverse image search on an AI-generated image returned it. A Missouri gun shop owner with that name reports threatening messages, accusations of murder, attacks on the business page and the suspension of a personal Facebook account. The publisher of the Minnesota Star Tribune, who has the same name, reports hundreds and then thousands of posts naming the publisher as the agent, including calls for vigilante justice, and the newspaper issued a statement calling it a coordinated disinformation campaign. AFP reports that xAI answered its inquiry with an automated reply. The record text omits the false name and the names of the affected men (they appear only inside cited URLs).
Core concern Medium reported severity
AI involvement reported · Causal attribution alleged · 7 sources · Added 30/09/2026
22 Feb 2026Event location unknownOpenClaw
Summer Yue, whom Business Insider describes as a director of alignment in Meta's Superintelligence Labs, posted on X on 23 February 2026 that an OpenClaw agent connected to Yue's real inbox had started deleting emails after Yue told it to confirm before acting. Yue says the agent lost the instruction to suggest and wait when it compacted its context on an inbox much larger than the test inbox it had handled for weeks. Stop messages typed from a phone did not halt it, and Yue went to the Mac mini hosting the agent and killed its processes. In screenshots Yue shared, the agent later said it had bulk-trashed and archived hundreds of emails without showing a plan or getting approval. Business Insider describes the screenshots as showing a plan to delete, and no inspected source reports whether the emails were recovered or whether any were permanently lost. Yue called the episode a rookie mistake.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 6 sources, 1 underlying account · Added 29/09/2026
Event date unknownEvent location unknownUnidentified image and video tool
The Daily Echo (29 June 2025), the Daily Mail (1 July 2025), and The Sun and the New York Post (2 July 2025) reported that a Southampton resident said the resident had been 'relentlessly' sent AI-generated or doctored celebrity images and videos on Facebook for about five months, with a fake prize certificate and requests for an activation fee to unlock a prize of £500,000 and a car. The resident said one persona presented as a celebrity said she loved the resident and asked for money, and that the resident paid £200 in Apple gift cards. The resident also said the messages were affecting the resident's mental health and said an acquaintance had lost over £1,000 to the same kind of scam (second-hand, not counted here). A University of Southampton AI expert described the messages as a phishing scam using an AI-generated prize certificate. All outlets rest on the resident's own account, and none reports verifying the messages. The start date is not established.
Core concern Low reported severity
AI involvement reported · Causal attribution alleged · 4 sources, 1 underlying account · Added 29/09/2026
3 Dec 2025ChinaDoubao Phone Assistant
ByteDance released the technical preview of its Doubao Phone Assistant on 1 December 2025 on the ZTE Nubia M153, an assistant that operates other apps on the user's behalf. On 3 December, 36Kr reports that users in the Nubia M153 user group said WeChat quit unexpectedly and could not be logged in again after they used the assistant to send messages and red envelopes, and The Paper (via Wallstreetcn) reports that users confirmed WeChat crashes and login failures. 36Kr also reports users seeing an 'abnormal login environment' prompt on Alipay, Alipay purchase tasks stopped midway, a 10-minute ban from a mobile game after the assistant played for a user, and Pinduoduo accounts that could not log in on the phone after the assistant was used to browse videos for coins. WeChat told The Paper it took no special action and that existing risk controls may have been triggered. ByteDance took the assistant's WeChat operation offline, said blocked WeChat accounts would be unblocked one by one, and, according to Nikkei Asia as relayed by Business Standard on 8 December, announced a temporary suspension of gaming, banking and online payment functions. The reports rest on user statements relayed by media, and the number of affected users is not stated.
Core concern Low reported severity Media Coverage
AI involvement supported · Causal attribution alleged · 3 sources · Added 29/09/2026
Event date unknownFranceSeewa AI
Seewa AI was a companion chatbot platform built in about three weeks by a solo developer and promoted on Reddit and Discord, offering AI girlfriends, boyfriends and other characters with 10 free messages a day and paid subscriptions. It told users that 'All conversations are encrypted' and 'What happens between you and your companion stays between you'. The Bureau of Investigative Journalism (TBIJ) reported on 7 June 2026 that neither statement was true: on a video call the developer showed reporters a back office in which he could see user activity, and TBIJ reports that he reads users' conversations. Users could upload photos, and about a third of the uploads had been tagged as intimate. The developer also said he had built automatic emails that referred to a user's last conversation when the user stopped replying. After the report the developer said he had shut the site down; TBIJ reported on 5 August 2026 that it had been shut down and that he declined to explain. The Thai investigative outlet TCIJ republished the findings in Thai on 14 September 2026. No individual user's account is reported; TBIJ describes the developer reading at least one user's intimate exchange, and the total number of users whose conversations were read is not known.
Core concern Low reported severity Product Shutdown
AI involvement supported · Causal attribution supported · 3 sources, 1 underlying account · Added 29/09/2026
26 Sept 2026CanadaMeta Muse agent
Matt Robb, a Toronto-based tech reviewer on YouTube, says he let Meta's new Muse agent run his Facebook Marketplace listings on 26 September 2026. Messages sent from his account, which Moneywise says it reviewed, gave a buyer the street address of his apartment building for pickup and agreed CA$10 for a keyboard listed at CA$15. Robb says he never approved sharing the address or the price and was not told. According to a recap Muse later sent Robb, the buyer arrived around 9:15 p.m., Muse's auto-reply told him 'Yep I'm here!' at 9:27 p.m. although Robb was out, and he left at 9:38 p.m. with a negative rating; the buyer wrote that he had driven half an hour. Muse then sent him an apology in Robb's voice saying he had 'got tied up'. Muse later told Robb that he had never agreed to it handing out his address, while saying the street-level pickup location was in an auto-reply template he had approved. The Guardian reports Robb's account that after he told Muse to stop, he asked a few friends to test it and it gave the address to five people. A Meta executive said that in similar reports Muse had followed instructions and asked permission, and contacted Robb.
Core concern Low reported severity Media Coverage
AI involvement supported · Causal attribution alleged · 5 sources, 2 underlying accounts · Added 29/09/2026
Event date unknownUnited StatesUnidentified image and video tool
According to a Baton Rouge Police Department arrest warrant reported by WAFB, Louisiana First (Nexstar), The Advocate and WBRZ, a woman told police on 8 September 2026 that a 55-year-old co-worker from Pierre Part, with whom she had been commuting to and from work, showed her on his phone several artificially generated images depicting her nude and an artificially generated video depicting the two of them engaging in simulated sexual intercourse. She told police the depicted sexual activity never happened and that she never consented to the creation or use of her likeness; she recorded what he showed her on her own phone and gave the recording and text messages to police. Investigators say they found AI-generated nude images of her and other images showing her and the man in sexual situations, and that in texts he said he had deleted the material from his phone and from cloud storage connected to the website used to create it. The woman also told police he had previously expressed romantic or sexual interest in her. A warrant was issued on one felony count of unlawful deepfakes under Louisiana law. The tool used is not named and the accusations have not been tried.
Core concern Medium reported severity Criminal Charges
AI involvement reported · Causal attribution alleged · 4 sources, 1 underlying account · Added 29/09/2026
16 Sept 2026 to 18 Sept 2026IndiaUnidentified image and video tool
A head constable at Hebbal police station in Bengaluru complained that on 16 September 2026 he accepted a Facebook friend request from an unknown account and exchanged sexually explicit messages with it over Messenger. According to his complaint, reported by the Times of India, the person behind the account downloaded his old Facebook photographs and used AI tools to make morphed obscene images and videos showing him with women, sent them to him with a QR code, demanded money in return for deleting them and threatened to send them to senior police officers and post them on social media, warning that this would damage his reputation. The harassment continued until 18 September. He gave police copies of the messages and the morphed images. Hebbal police registered a case under IT Act sections 66E and 67A and Bharatiya Nyaya Sanhita sections 308 (extortion) and 351 (criminal intimidation), took steps to stop the material being uploaded and are trying to trace the account holder. Whether he paid is not reported, and no arrest is reported.
Core concern Medium reported severity Investigation Opened
AI involvement reported · Causal attribution alleged · 1 source · Added 28/09/2026
Event date unknownUnited StatesUnidentified image and video tool
The Sumner County (18th Judicial District) District Attorney's Office said a 30-year-old Portland, Tennessee man was sentenced in Sumner County Criminal Court in September 2026 to 30 years in the Tennessee Department of Correction, to be served without probation, parole or early release. According to the prosecutors, he used artificial intelligence to place the faces of children onto images and videos of nude people and of people engaged in sexual acts, then exchanged the material with a Canadian resident for real child sexual abuse material. Canadian authorities found messages and material connected to him after arresting the person he was communicating with and alerted US law enforcement; a joint investigation by Portland police, Homeland Security Investigations, the FBI and the TBI led to his arrest in November 2025. He was also charged with tampering with evidence after investigators said he deleted material before officers entered his home to execute a search warrant. The children whose faces were used are not identified, their number is not reported, and the reports do not say which AI tool was used or which offences he was convicted of.
Core concern High reported severity Involving minors Criminal Charges
AI involvement reported · Causal attribution supported · 4 sources, 1 underlying account · Added 28/09/2026