Skip to content

Corrections

Every change made to a record's classification after it was published, with the reason. Reports come from the form on each record page; the classifier audit and the maintainer's own review find the rest. Dataset releases are frozen, so a correction applies to the live site and to the next release.

Corrections
633
Reports received
0
Reports declined
0
Reports open
0

Each correction is listed as its own row. Group bulk changes

DateRecordChangeReasonFound by
2026-10-10SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting PackingSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Prompt Injection Attacks Trick AI Agents Into Making Crypto PaymentsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10This AI agent autonomously hacked a network, adapted on the fly, and demanded a ransomSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10JadePuffer: The First Complete LLM-Driven Ransomware AttackSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10'GitLost' Flaw Leaks Private Data From GitHub's Agentic WorkflowsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10CISA orders feds to prioritize patching Langflow auth bypass flawSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt InjectionSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in CodeSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10GitHub AI agent leaks private repositories via prompt injection attackSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding AgentsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Attack on Amazon Bedrock-linked AI gateway highlights new cloud security riskSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10AI coding tool hole illustrates a big problem with human in the loopSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery MechanismSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10RabbitMQ flaws expose OAuth secrets, risk complete takeover of the brokerSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It ReadSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Unpatched Claude for Chrome Flaw Lets Extensions Read Gmail, CalendarSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail ReadsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10SpaceXAI’s Grok programming tool was uploading its users’ entire codebase to cloud storageSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10New bugs in Claude for Chrome allow extensions to abuse AI privilegesSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10How I tricked Claude into leaking your deepest, darkest secretsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Google Gemini CLI abused as a hacking agent, malware botnet operatorSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Claude Chrome extension flaw lets malicious extensions trigger AI actionsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes TokensSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Autonomous AI Intrusions Are Here: Lessons from the Hugging Face CompromiseSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10World's Largest AI Model Repository Hugging Face Breached by Autonomous AI AgentSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Hugging Face Hacked in Autonomous AI AttackSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Hugging Face discloses breach linked to autonomous AI agentSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Hugging Face confirms breach affected internal datasets and credentials, urges users to take actionSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader MalwareSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10ServiceNow’s sandbox escape RCE hole now exploited in the wildSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10JadePuffer agentic attacks now target AI model data with ransomwareSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapesSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE AttackSeverity: critical to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run CodeSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI Models Escaped Containment and Hacked Hugging FaceSeverity: critical to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat BenchmarkSeverity: critical to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI says its AI models hacked Hugging Face during testingSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face Severity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10CISA orders urgent action on actively exploited Langflow RCE flawSeverity: critical to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI model escape puts enterprise AI defenses on noticeSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10How OpenAI’s human mistake led to the AI-powered hack on Hugging FaceSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI’s accidental cyberattack against Hugging Face is science fiction that happenedSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac FilesSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI InsiderSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit
2026-10-10Fake Claude app promoted by Bing ads pushes SectopRAT malwareSeverity: high to mediumSeverity capped at medium. High and critical measure technical exploitability and are reserved for vulnerabilities and incidents; this record is a news report.Classifier audit