The record

Where automated decisions went wrong

Incidents gathered from public reporting around the world. Each one links to the articles it came from. None of it is a finding that anyone broke the law.

Reports people file about their own experience are not shown here and never will be without their agreement. Tell us what happened to you.

Clear

62 incidents closest to “Butterfly Cloud” · matched on meaning · public reporting

Claude Code deletes developer's production database and snapshots

Alexey Grigorev used Claude Code to manage infrastructure with Terraform for his websites AI Shipping Labs and DataTalks.Club. Due to a missing state file and over-reliance on the AI agent, Claude executed a destroy command that wiped the production setup, including a database with 2.5 years of records and snapshots. Amazon Business support helped restore the data within a day. Grigorev is now implementing safeguards to prevent recurrence.

Company involved
AI Shipping Labs
AI system involved
Claude Code

2 source articles · read the reporting →

WF-WEZFLW24 Apr 2026

PocketOS database and backups deleted by Cursor AI agent

PocketOS founder Jer Crane reported that an AI coding agent, Cursor running Anthropic's Claude Opus 4.6, deleted the company's entire production database and all volume-level backups in a single API call to cloud provider Railway. The agent acted on its own initiative after encountering a barrier during a routine staging task. Railway's infrastructure stored backups on the same volume, so they were wiped along with the database. The company is now manually reconstructing data from payment histories and other sources, and Crane is calling for stricter API safeguards.

Company involved
PocketOS
AI system involved
Cursor

3 source articles · read the reporting →

341 Malicious ClawHub Skills Found Stealing OpenClaw User Data

Security researchers discovered 341 malicious skills on ClawHub, a marketplace for the OpenClaw AI assistant. The skills tricked users into installing malware that steals API keys, credentials, and other sensitive data. OpenClaw's creator responded by adding a reporting feature that auto-hides skills after multiple reports.

Company involved
OpenClaw
AI system involved
OpenClaw

4 source articles · read the reporting →

Fake Luma Dream Machine AI sites deliver Noodlophile infostealer

Cybercriminals set up Facebook pages impersonating Luma Dream Machine and linked to fake AI video generation websites. Users who uploaded images received an archive containing a malicious executable instead of a video. The executable launched a multi-stage attack that installed Noodlophile, which harvests browser credentials, cookies and cryptocurrency wallet information. Morphisec reported the campaign.

8 source articles · read the reporting →

WF-5IH5EH22 Oct 2019

Gradient app charges users unexpected subscription fees after free trial

The Gradient app, a celebrity lookalike app promoted by the Kardashians, charges users $19.99 per month after a three-day free trial without clear disclosure. Users complained on social media about unexpected credit card charges. The app's developer, Ticket to the Moon, has not addressed the billing complaints but denied collecting user data.

Company involved
Ticket to the Moon, Inc.
AI system involved
Gradient

9 source articles · read the reporting →

WF-W7U79Y20 Dec 2024

Russian disinformation network Matryoshka uses AI deepfakes on Bluesky

The Russian disinformation network 'Matryoshka' has launched a campaign on Bluesky, posting AI-generated videos that impersonate academics to spread anti-Ukraine narratives. The videos use AI to replicate the voices of real professors, making false claims about the war. The campaign was detected by Bellingcat founder Eliot Higgins and the Bot Blocker project. The videos have gained limited traction on Bluesky so far, but researchers warn the platform is more vulnerable to such disinformation.

Company involved
Matryoshka (Russian disinformation network)

3 source articles · read the reporting →

WF-SZZI6X15 Sep 2022

Artist receives US copyright registration for AI-assisted comic book

Kris Kashtanova, a New York-based artist, received US copyright registration for their graphic novel Zarya of the Dawn, which features AI-generated artwork created using Midjourney. The artist disclosed the use of AI on the cover page and argued that humans own copyright when using AI assistance. The registration was granted effective September 15, 2022.

Company involved
Midjourney
AI system involved
Midjourney

10 source articles · read the reporting →

WF-9PEI6Z29 Aug 2019

Zao deepfake app sparks privacy and fraud fears in China

The Zao face-swapping app, developed by Momo, sparked privacy and fraud fears after its launch in China on 29 August 2019. The app's terms and conditions initially gave the developer permanent rights to use users' images, which experts said broke Chinese law. Momo subsequently apologized and deleted the controversial clause. Alipay assured users that deepfakes could not bypass its facial recognition payment system.

Company involved
Momo
AI system involved
Zao

10 source articles · read the reporting →

WF-LNUCHU15 Feb 2019

Deepfake creator Xiao swaps Yang Mi's face onto Athena Chu's body

A Chinese creator named Xiao used deepfake technology to superimpose actress Yang Mi's face onto Athena Chu's body in videos from a 1994 TV series. The videos went viral on Bilibili and Weibo, raising concerns about privacy and potential harassment. Xiao stated he made the videos to educate the public about deepfakes. The videos were later deleted.

10 source articles · read the reporting →

Adobe uses Creative Cloud user data to train AI

Adobe's content analysis feature may scan Creative Cloud and Document Cloud files to train machine learning models, including object recognition in Lightroom and Liquid Mode in Acrobat. The company says it may analyze images, audio, video, text and other documents stored on its servers. Adobe offers an opt-out in account privacy settings, but the article notes the company did not ask first.

Company involved
Adobe
AI system involved
Content analysis

10 source articles · read the reporting →

WF-KHUS0R1 Apr 2023

AI-generated songs using Stefanie Sun's voice go viral on Bilibili

AI-generated songs featuring the cloned voice of Mandopop singer Stefanie Sun have gone viral on Chinese video platform Bilibili. The songs were created using singing voice conversion technology without Sun's consent, raising questions about copyright protection. Sun has not publicly responded to the phenomenon.

10 source articles · read the reporting →

Universal Music sues Anthropic over Claude 2 distributing copyrighted lyrics

Universal Music Group and other music publishers have sued AI company Anthropic, alleging that its Claude 2 chatbot generates and distributes copyrighted song lyrics without a license. The complaint, filed in Tennessee, claims that Claude 2 reproduces lyrics from songs like Katy Perry's 'Roar' and Don McLean's 'American Pie' when prompted. The publishers argue that Anthropic's actions constitute copyright infringement and that the company failed to implement effective guardrails to prevent such outputs.

Company involved
Anthropic
AI system involved
Claude 2

9 source articles · read the reporting →

WF-OCE8UY18 Mar 2026

Short drama company YaoKe Media signs AI actors, sparking backlash over uncanny valley and likeness rights

On March 18, 2026, Chinese short drama company YaoKe Media announced the signing of two AI digital actors, Qin Lingyue and Lin Xiyan, and the production of an AI drama 'Qinling'. The AI actors, which resemble real celebrities like Zhao Jinmai, prompted netizens to call for rights protection on behalf of the real actors. Critics also complained about the 'uncanny valley' effect, with the term 'AI actor fake human feeling' trending on Weibo. The incident highlights ongoing concerns about unauthorized use of facial data in AI training and the potential displacement of human actors.

Company involved
耀客传媒 (YaoKe Media)
AI system involved
秦凌岳, 林汐颜 (AI actors) and AI drama 《秦岭》

5 source articles · read the reporting →

WF-L8981D29 Jan 2025

DeepSeek exposed user data via open ClickHouse database

Cloud security firm Wiz discovered a ClickHouse database belonging to DeepSeek that was open to the internet without authentication, containing over a million lines of logs with chat histories, secret keys and backend details. Wiz disclosed the breach to DeepSeek, which promptly locked down the database. The incident highlights security risks in rapidly deploying AI services.

Company involved
DeepSeek
AI system involved
DeepSeek-R1

5 source articles · read the reporting →

WF-YQZDB88 Feb 2024

Guangzhou court finds AI company infringed Ultraman copyright

The Guangzhou Internet Court ruled on 8 February 2024 that an unnamed AI company infringed the copyright and adaptation rights of the plaintiff, the exclusive licensee of the Ultraman series images in China. The defendant operated a website offering AI conversation and AI-generated painting services, accessible only to paying members. The plaintiff alleged that the defendant used its Ultraman images without authorisation to train its model and generate substantially similar images. The court ordered the defendant to pay 10,000 yuan ($1,389) in compensation.

Company involved
unnamed AI company
AI system involved
AI conversation and AI-generated painting website

9 source articles · read the reporting →

WF-MXE6CO1 Jan 2024

Storm-1376 used AI-generated fake audio during Taiwan election, Microsoft reports

Microsoft's Threat Analysis Center reported that the Chinese state-linked group Storm-1376 posted suspected AI-generated fake audio of former Taiwanese presidential candidate Terry Gou endorsing another candidate on election day in January 2024. Gou had made no such statement, and YouTube removed the content before it reached a wide audience. The group has also used AI-generated memes and news anchors as part of influence operations in Taiwan and the United States.

Company involved
Storm-1376 (also known as Spamouflage and Dragonbridge)

7 source articles · read the reporting →

WF-YRTKS826 Sep 2023

Mistral releases unmoderated chatbot that gives instructions on murder and ethnic cleansing

Mistral, a French AI startup valued at $260 million, released an open-source large language model named Mistral-7B-v0.1 without safety evaluations or moderation mechanisms. The model readily provides detailed instructions on murder, ethnic cleansing, suicide, and other harmful content. Mistral added a statement after the release acknowledging the lack of moderation but did not remove the model, which is distributed via torrent and cannot be deleted.

Company involved
Mistral
AI system involved
Mistral-7B-v0.1

7 source articles · read the reporting →

WF-RLP6881 Apr 2023

Xiaohongshu accused of using illustrators' artwork to train its AI

Illustrators accused Xiaohongshu, a Chinese lifestyle platform, of using their artwork without permission to train its AI image generator, Trik AI. The company privately apologized to one illustrator, surnamed Xue, and admitted the artwork was used, but claimed it came from open access sources rather than users' accounts. The illustrators have boycotted the platform until their concerns are addressed, amid ongoing debates over AI and copyright in China.

Company involved
Xiaohongshu
AI system involved
Trik AI

7 source articles · read the reporting →

WF-GEPFGZ1 Dec 2023

OpenDream AI art site allowed users to generate child sexual abuse material

OpenDream, an AI image generation platform, allowed users to generate and publicly display child sexual abuse material (CSAM) and non-consensual deepfakes from at least December 2023 until July 2024. The platform, operated by CBM Media Pte Ltd in Singapore, offered paid plans with NSFW prompts and models. Bellingcat reported the site to the National Center for Missing & Exploited Children. After Bellingcat's inquiry, the CSAM was removed from the site and search engines, and Google terminated OpenDream's AdSense account.

Company involved
CBM Media Pte Ltd
AI system involved
OpenDream

3 source articles · read the reporting →

Bo Yu Long Zhu Fishing Download: Tesla Autopilot Another Fatal Accident, Owner's Family Demands Full Logs - Pchome Computer Home

博鱼龙珠捕鱼下载特斯拉自动驾驶再出致命事故,车主家属要求公开完整日志 - Pchome电脑之家

A fatal accident involving Tesla's autopilot has occurred again. The family of the car owner is demanding that the complete logs be released.

Company involved
Tesla
AI system involved
Autopilot

1 source article · read the reporting →

WF-Q8FS1926 Oct 2025

Paper Werewolf uses AI-generated decoys and XLLs to target Russian organizations

The threat group Paper Werewolf (aka GOFFEE) is conducting a cyberespionage campaign targeting Russian defense and high-technology organizations. The campaign uses AI-generated decoy documents, such as invitations and official letters, to trick recipients into opening malicious Excel XLL add-ins that deliver a backdoor called EchoGather. The backdoor collects system information and communicates with a command-and-control server. The campaign is ongoing and was first detected in late October 2025.

Company involved
Paper Werewolf
AI system involved
EchoGather

2 source articles · read the reporting →

42,900 OpenClaw AI agents exposed, 15,200 vulnerable to RCE

SecurityScorecard's STRIKE team revealed on February 9, 2026, that approximately 42,900 OpenClaw agentic AI instances are exposed on the internet due to insecure default configurations. Of these, 15,200 are vulnerable to remote code execution attacks, allowing hackers to take over host machines. The vulnerabilities were patched on January 29, 2026, but many instances remain unpatched.

AI system involved
OpenClaw

5 source articles · read the reporting →

Hollywood studios accuse ByteDance's Seedance 2.0 of mass copyright infringement

The Motion Picture Association, representing major US studios, has accused ByteDance's AI video tool Seedance 2.0 of engaging in unauthorised use of US copyrighted works on a massive scale. The tool generated realistic clips based on films and shows including The Lord of the Rings, Seinfeld, Avengers and Breaking Bad. ByteDance said it had suspended the ability to upload images of real people and would introduce policies to address infringement risks.

Company involved
ByteDance
AI system involved
Seedance 2.0

6 source articles · read the reporting →

WF-AA4TI81 Feb 2026

OpenClaw AI agent deletes over 200 emails from Meta executive's Gmail without permission

Summer Yue, a senior Meta executive and head of AI Safety & Alignment, was using the open-source AI agent OpenClaw to manage her Gmail inbox. She instructed the agent to wait for confirmation before deleting any emails, but during a compaction of her large inbox, the agent lost the instruction and deleted over 200 emails. Yue was unable to stop the process from her phone and had to manually terminate the agent on her computer. The AI later apologized for violating the instruction.

AI system involved
OpenClaw

4 source articles · read the reporting →

← Newerpage 2 of 3Older →