Gamma AI Presentation Tool Exploited in Multi-Stage Phishing Campaign
Threat actors used Gamma, an AI-powered presentation builder, to host a page that redirected recipients to a fake Microsoft SharePoint login portal. Emails sent from compromised legitimate accounts passed authentication checks, while a Cloudflare Turnstile blocked automated security scanners. An adversary-in-the-middle framework validated credentials in real time and captured session cookies, enabling multi-factor authentication bypass on Microsoft accounts. Abnormal reported the campaign on 15 April 2025.
- AI system involved
- Gamma
7 source articles · read the reporting →
OpenAI and Google AI autocompletes AOC photo in bikini
Researchers demonstrated that image-generation algorithms from OpenAI and Google, when given a cropped photo of a woman, often autocomplete her wearing a bikini or low-cut top, while men are given suits. The study, using iGPT and SimCLR, found that unsupervised learning on internet data embeds sexist and racist stereotypes. The findings raise concerns about bias in computer vision applications such as hiring and policing.
- Company involved
- OpenAI, Google
- AI system involved
- iGPT, SimCLR
1 source article · read the reporting →
Claude AI abused in influence-as-a-service campaign
Malicious actors exploited Anthropic's Claude AI to manage over 100 social media bot accounts, engaging tens of thousands of users worldwide. The AI made tactical decisions on bot interactions to promote political narratives. Anthropic responded by banning implicated accounts and enhancing detection systems. The incident highlights the dual-use risks of advanced AI models.
- AI system involved
- Claude AI
5 source articles · read the reporting →
Alibaba among firms fooled by AI-hallucinated software package
Security researcher Bar Lanyado discovered that generative AI models repeatedly hallucinate non-existent software package names. He created a real package named 'huggingface-cli' based on one such hallucination and uploaded it to PyPI. The package was downloaded over 15,000 times, and Alibaba's GraphTranslator project included instructions to install it. The experiment demonstrated a potential supply chain attack vector where malicious actors could exploit AI hallucinations to distribute malware.
- Company involved
- Alibaba
- AI system involved
- GraphTranslator
4 source articles · read the reporting →
Figma pulls AI design tool after it copies Apple's weather app
Figma removed its Make Designs AI feature after it was found to generate app mockups nearly identical to Apple's iOS weather app. The company blamed a bespoke design system that lacked variation, not the underlying AI models from OpenAI and Amazon. Figma CEO Dylan Field acknowledged the issue and said the tool will be re-enabled after improvements. The incident raised concerns about AI-generated content inadvertently infringing on existing designs.
- Company involved
- Figma
- AI system involved
- Make Designs
2 source articles · read the reporting →
DOGE's Flawed AI Tool Threatens Veterans Affairs Services
The Department of Government Efficiency developed an AI tool to identify unnecessary VA contracts, but it used outdated models and lacked context, leading to misclassification. At least 24 contracts were canceled, affecting cancer research and nurse care tools. The VA acknowledged the tool's role but stated all contracts undergo human review. Experts criticized the use of AI for such complex decisions.
- Company involved
- Department of Veterans Affairs
- AI system involved
- Muncher
2 source articles · read the reporting →
Google Antigravity AI Deletes User's Entire Drive Partition
A user of Google's Antigravity AI coding platform lost all data on their D: drive after the AI agent executed a command with a path parsing error. The AI ran 'rmdir /s /q d:\' while in Turbo mode, which allows automatic terminal commands without user approval. The user, a photographer, was unable to recover most files using data recovery software. The incident highlights the risks of granting AI agents unrestricted access to local systems.
- Company involved
- Google
- AI system involved
- Antigravity
2 source articles · read the reporting →
Scammers used AI-generated faces to pose as a Boston law firm
Scammers used a website and AI-generated faces to create a fake law firm called Arthur Davidson and sent a DMCA copyright infringement notice to a blogger. The blogger investigated and discovered the lawyers' photos were created by a generative adversarial network and the firm's website contained many red flags. The website was shut down shortly after the blogger contacted a company on whose behalf the notice was allegedly sent.
- Company involved
- Arthur Davidson
- AI system involved
- This Person Does Not Exist
1 source article · read the reporting →
Grok and Google Lens AI overviews falsely claim fake images show Huntingdon train attack
Grok and Google Lens AI overviews have been claiming that AI-generated images of the Huntingdon train attack are real. Grok told users one image was a genuine photo, while Google Lens claimed it was a still from a BBC news report. The AI systems also linked unrelated videos to the attack. Full Fact contacted Google, which told users they can provide feedback on errors. xAI has not yet responded.
- Company involved
- xAI and Google
- AI system involved
- Grok and Google Lens AI overviews
4 source articles · read the reporting →
Ex-Google techie's conference photo altered by AI to add bra
Elizabeth Laraki, a former Google employee, discovered that her photo for a UX and AI design conference had been altered by an AI image expansion tool. The tool unbuttoned her blouse and added a bra-like undergarment, which she noticed on the conference poster. After she contacted the organisers, they apologised and removed all content using the AI-generated image. The incident sparked discussion about the unintended consequences of AI tools.
5 source articles · read the reporting →
AI or Not detector mislabels real war photo as AI-generated
The AI image detection tool AI or Not, made by Optic, incorrectly labeled a photograph of a burnt corpse from the Israel-Gaza war as AI-generated. The image was originally tweeted by Israeli officials and later shared by commentators. Experts, including UC Berkeley professor Hany Farid, confirmed the image is real based on structural consistency and shadows. The false detection contributed to disinformation about the war. Optic did not respond to requests for comment.
- Company involved
- Optic
- AI system involved
- AI or Not
10 source articles · read the reporting →
Deloitte to refund Australian government after AI-generated report errors
Deloitte used generative AI (Azure OpenAI GPT-4o) to help produce an independent assurance review for Australia's Department of Employment and Workplace Relations. The report, published in July 2025, contained multiple errors including non-existent academic references and a fabricated court case. After the errors were flagged, Deloitte acknowledged the AI use and agreed to refund the final instalment of the A$439,000 contract. The report was corrected, but its substance and recommendations remained unchanged.
- Company involved
- Deloitte
- AI system involved
- Azure OpenAI GPT-4o
5 source articles · read the reporting →
North Korean hackers use ChatGPT to scam LinkedIn users
North Korean state-affiliated hacking group Emerald Sleet (Kimsuky) used OpenAI's ChatGPT to research targets and draft phishing content for scams on LinkedIn. Microsoft and OpenAI terminated the group's accounts after identifying the activity. The hackers impersonated academic institutions and NGOs to lure victims into providing sensitive information, with South Korea's intelligence agency confirming North Korea's use of generative AI for hacking.
- Company involved
- OpenAI
- AI system involved
- ChatGPT
6 source articles · read the reporting →
Glasgow AI mural design sparks criticism from local artists
Balmoral Estates used AI to generate a design mock-up for a planned mural on Elmbank Street in Glasgow. The AI-generated image, which included a non-native bald eagle, was submitted for planning permission and approved. The commissioning artist, Rogue One, defended the use of AI as a placeholder and stated the final mural will be hand-painted by him. Critics argue human artists should have been involved from the start.
- Company involved
- Balmoral Estates
4 source articles · read the reporting →
Texas AG Settles with Pieces Technologies Over Deceptive Healthcare AI Claims
The Texas Attorney General investigated Pieces Technologies, a Dallas-based healthcare AI company, for making false and misleading statements about the accuracy of its generative AI product used in hospitals. The company claimed an error rate of less than 1 per 100,000, but the investigation found these metrics were likely inaccurate. As part of the settlement, Pieces agreed to accurately disclose its product's accuracy and ensure hospital staff understand the appropriate reliance on its AI. The case marks the first-of-its-kind healthcare generative AI investigation by the AG.
- Company involved
- Pieces Technologies
4 source articles · read the reporting →
Duke University's PULSE AI upscaler turns Barack Obama white due to racial bias
Duke University researchers developed PULSE, an AI tool that upscales blurry face photos using Nvidia's StyleGAN model. When tested, it generated a white face from a pixelated image of Barack Obama, revealing racial bias. The bias stemmed from StyleGAN's training data being predominantly white and the evaluation dataset CelebA being 90% white. The researchers acknowledged the issue and updated their paper, while Nvidia stated it is working to mitigate bias.
- Company involved
- Duke University
- AI system involved
- PULSE
2 source articles · read the reporting →
MIT-IBM Watson AI Lab's AI Portrait Ars produces whitewashed portraits of people of colour
AI Portrait Ars, developed by researchers at the MIT-IBM Watson AI Lab, is reported to have generated Renaissance-style portraits that lightened the skin and altered the facial features of people of colour. The tool, trained on tens of thousands of paintings from the Western artistic tradition, was criticised for reproducing that bias in its data set. The creators acknowledged the bias but did not respond to a request for comment.
- Company involved
- MIT-IBM Watson AI Lab
- AI system involved
- AI Portrait Ars
10 source articles · read the reporting →
UIUC researchers use OpenAI API to automate phone scams for under a dollar
Researchers at the University of Illinois Urbana-Champaign used OpenAI's Realtime API to create AI agents that can autonomously execute phone scams. The agents successfully performed bank account transfers and credential theft at an average cost of $0.75 per scam. OpenAI acknowledged the experiment and pointed to its safety policies.
- Company involved
- University of Illinois Urbana-Champaign
- AI system involved
- GPT-4o Realtime API
6 source articles · read the reporting →
California regulator accuses Maxpread Technologies of using AI-generated fake CEO to scam investors
Maxpread Technologies allegedly used an AI-generated avatar to pose as its CEO in a YouTube video to deceive investors. The California DFPI issued cease and desist letters to Maxpread and four other companies for offering unqualified securities and making false promises. The regulator claims the companies promised high daily returns using AI trading, but these claims were false. Maxpread did not respond to requests for comment.
- Company involved
- Maxpread Technologies
8 source articles · read the reporting →
Google Health's diabetic retinopathy AI faced real-world issues in Thailand clinics
Google Health deployed a deep-learning system to screen for diabetic retinopathy in 11 clinics across Thailand. The AI was highly accurate in lab tests but rejected over a fifth of eye scans in real-world conditions due to poor lighting and slow internet. Patients whose scans were rejected had to visit specialists at other clinics, causing inconvenience and frustration for nurses. Google Health is now working with local staff to improve the system's workflow.
- Company involved
- Google Health
10 source articles · read the reporting →
Stable Diffusion amplifies racial and gender stereotypes in generated images
An analysis by Bloomberg of over 5,000 images generated by Stability AI's Stable Diffusion found that the text-to-image model amplifies racial and gender stereotypes. The model overrepresented lighter-skinned men in high-paying jobs and darker-skinned people in low-paying jobs, and underrepresented women in positions of power. Stability AI acknowledged the inherent biases in its models and stated it is working on mitigation.
- Company involved
- Stability AI
- AI system involved
- Stable Diffusion
8 source articles · read the reporting →
Kaedim used human artists instead of AI for 3D model generation
Kaedim, an AI startup that claimed to use machine learning to convert 2D illustrations into 3D models, actually used human artists to produce the models, according to sources. The company's founder was featured in Forbes 30 Under 30 for the technology. At one point, workers produced the 3D designs entirely without AI assistance. The revelation highlights how AI companies can overstate their capabilities.
- Company involved
- Kaedim
- AI system involved
- Kaedim
10 source articles · read the reporting →
OpenAI cuts off engineer who created ChatGPT-powered robotic sentry rifle
An engineer known as STS 3D created a robotic sentry rifle that uses OpenAI's Realtime API to aim and fire a rifle in response to voice commands. OpenAI stated that it proactively identified the violation of its policies prohibiting the use of its services for weapons and notified the developer to cease the activity. The demonstration involved shooting blanks and no actual harm occurred.
- AI system involved
- ChatGPT-powered robotic sentry rifle
4 source articles · read the reporting →
OpenAI bot crashes Triplegangers website with scraping requests
Triplegangers, a seven-person company selling 3D images, claims its website was taken down by an OpenAI bot that scraped hundreds of thousands of photos and product pages. The bot, GPTBot, sent tens of thousands of requests from hundreds of IP addresses, overwhelming the site. The company had to configure a robots.txt file and block the bot, but it could not determine what data was scraped and found no way to contact OpenAI. OpenAI did not respond to requests for comment.
- Company involved
- Triplegangers
- AI system involved
- GPTBot
3 source articles · read the reporting →