Corrections
Every change made to a record's classification after it was published, with the reason. Reports come from the form on each record page; the classifier audit and the maintainer's own review find the rest. Dataset releases are frozen, so a correction applies to the live site and to the next release.
- Corrections
- 633
- Reports received
- 0
- Reports declined
- 0
- Reports open
- 0
Each correction is listed as its own row. Group bulk changes
| Date | Record | Change | Reason | Found by |
|---|---|---|---|---|
| 2026-10-10 | SmartLoader Attack Uses Trojanized Oura MCP Server to Deploy StealC Infostealer | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Researchers Show Copilot and Grok Can Be Abused as Malware C2 Proxies | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Microsoft says bug causes Copilot to summarize confidential emails | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Microsoft says Office bug exposed customers’ confidential emails to Copilot AI | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | AI platforms can be abused for stealthy malware communication | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Malicious AI | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Six flaws found hiding in OpenClaw’s plumbing | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | PromptSpy Android Malware Abuses Gemini AI to Automate Recent-Apps Persistence | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systems | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Compromised npm package silently installs OpenClaw on developer machines | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Amazon: AI-assisted hacker breached 600 FortiGate firewalls in 5 weeks | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Shai-Hulud-style NPM worm hits CI pipelines and AI coding tools | Severity: critical to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | GitHub Issues Abused in Copilot Attack Leading to Repository Takeover | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | New ‘Sandworm_Mode’ Supply Chain Attack Hits NPM | Severity: critical to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | RoguePilot Flaw in GitHub Codespaces Enabled Copilot to Leak GITHUB_TOKEN | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Claude Code Flaws Allow Remote Code Execution and API Key Exfiltration | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Google API Keys Weren't Secrets. But then Gemini Changed the Rules. | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Claude Code Flaws Exposed Developer Devices to Silent Hacking | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Previously harmless Google API keys now expose Gemini AI data | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Your personal OpenClaw agent may also be taking orders from malicious websites | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | ‘Silent’ Google API key change exposed Gemini AI data | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Thousands of Public Google Cloud API Keys Exposed with Gemini Access After API Enablement | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | ClawJacked Flaw Lets Malicious Sites Hijack Local OpenClaw AI Agents via WebSocket | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Hackers Weaponize Claude Code in Mexican Government Cyberattack | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | ClawJacked attack let malicious websites hijack OpenClaw to steal data | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Bug in Google's Gemini AI Panel Opens Door to Hijacking | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Taming Agentic Browsers: Vulnerability in Chrome Allowed Extensions to Hijack New Gemini Panel | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenClaw Vulnerability Allowed Websites to Hijack AI Agents | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Vulnerability Allowed Hijacking Chrome’s Gemini Live AI Assistant | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | New Chrome Vulnerability Let Malicious Extensions Escalate Privileges via Gemini Panel | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | CyberStrikeAI tool adopted by hackers for AI-powered attacks | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Vulnerability in MS-Agent AI Framework Can Allow Full System Compromise | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Fooling AI Agents: Web-Based Indirect Prompt Injection Observed in the Wild | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Malicious AI Assistant Extensions Harvest LLM Chat Histories | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Claude Used to Hack Mexican Government | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Fake Claude Code install guides push infostealers in InstallFix attacks | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | March Patch Tuesday: Three high severity holes in Microsoft Office | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Jack & Jill went up the hill — and an AI tried to hack them | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Researchers Trick Perplexity's Comet AI Browser Into Phishing Scam in Under Four Minutes | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | OpenClaw AI Agent Flaws Could Enable Prompt Injection and Data Exfiltration | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Open VSX extensions hijacked: GlassWorm malware spreads via dependency abuse | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | AWS Bedrock’s ‘isolated’ sandbox comes with a DNS escape hatch | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable Data Exfiltration and RCE | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | 'Claudy Day’ Trio of Flaws Exposes Claude Users to Data Theft | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Meta AI agent’s instruction causes large sensitive data leak to employees | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | PyPI warns developers after LiteLLM malware found stealing cloud and CI/CD credentials | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | The Kill Chain Is Obsolete When Your AI Agent Is the Threat | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |
| 2026-10-10 | Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website | Severity: high to medium | Severity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report. | Classifier audit |