Corrections
Every change made to a record's classification after it was published, with the reason. Reports come from the form on each record page; the classifier audit and the maintainer's own review find the rest. Dataset releases are frozen, so a correction applies to the live site and to the next release.
- Corrections
- 633
- Reports received
- 0
- Reports declined
- 0
- Reports open
- 0
Each correction is listed as its own row. Group bulk changes
| Date | Record | Change | Reason | Found by |
|---|---|---|---|---|
| 2026-10-10 | Security researchers used Claude to help them hack into OpenAI | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | A zero-click RCE flaw in AI coding agents could have exposed enterprise systems | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Gemini Hacked Three Companies in First Known Breakout by Google’s AI | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | BragJack attacks hijack AI browser agents through malicious extensions | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Google’s Gemini is the latest AI model to hack other companies | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Researchers escape OpenAI Codex sandbox to run commands on host | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | ⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | After spending billions, OpenAI still has gaps in its cybersecurity | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Meta patches Muse exploit that let attackers control the AI agent | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | AI Agents Are Rewriting the Rules of Lateral Movement | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Z.ai disables coding assistant feature after flaw exposed enterprise code upload risk | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials | Severity: critical to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | New ClosedQuorum Windows malware uses AI for attack decisions | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Relays Are Masking Chinese Access to Frontier AI Models in the US | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Malicious AI agents steal 600K credit cards, infect 100+ sites with skimmers | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI agent 'infiltrated' Australian government website, PM says | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | What you need to know about the OpenAI Australian government hack | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI hacked Australian Medicare govt site, probed data providers | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | An OpenAI Agent Hacked Australia’s Health Service. Their Government Found Out Months Later | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI agents hacked an Australian government website in search for data | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Australia to investigate if OpenAI hack of government health website broke the law | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Prompt-Injection Bug Hits $4B Agentic AI App 'Manus' | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Why did an OpenAI system hack Australia's health system - and can it be stopped in the future? | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI Agents Probed Websites for Vulnerabilities While Fetching Public Data | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | AI hack of Medicare exposes Australia’s vulnerabilities and experts warn ‘there is more of this to come’ | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Muse will apparently let you download its entire filesystem | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | New Carbonato malware uses AI agents to hijack exposed Docker hosts | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | 'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Storm-3168: Agentic-driven cloud attacks using compromised service principals | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI investigating 'dozens' of instances of agents acting improperly | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI says agents leaked 53 images from ChatGPT users in latest example of rogue activity | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | New x47.c Windows Botnet Weaponizes xAI Grok, AI API Draining | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI's AI agents accidentally uploaded user-provided images to third-party sites | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI pauses training of its ‘most capable models’ | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Stolen AI credentials feed growing LLM proxy economy | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI Pauses Training Its Most Powerful Models After Rogue Agents Target Government | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Carbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI Agent | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | 80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Autonomous agents attack Azure using compromised identities, destroying resources | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | JadePuffer agentic AI attacks target Azure, destroy cloud resources | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI pauses AI model training after another agent bypasses network restrictions | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Meta’s AI agent Muse gives out user’s home address without permission, sending buyer to his house | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |