Lego apologizes for AI-generated Ninjago art with unlicensed Naruto imagery
Lego posted AI-generated images of Ninjago characters on its website as part of an online quiz. The images included a headband from the Naruto manga, for which Lego does not hold a license. After the images were shared on social media, Lego removed them and apologised, stating that the test happened outside usual approval processes. Lego said it has a policy against using generative AI for content and that the incident would not happen again.
- Company involved
- Lego
6 source articles · read the reporting →
Italian privacy regulator investigates OpenAI's Sora video generation model
The Italian Data Protection Authority (Garante Privacy) has opened an investigation into OpenAI's new AI model 'Sora', which creates short videos from text instructions. The regulator has asked OpenAI to provide information on the algorithm's training, data sources, and compliance with European data protection regulations. OpenAI must respond within 20 days.
- Company involved
- OpenAI
- AI system involved
- Sora
7 source articles · read the reporting →
L'Observatoire de l'Europe uses AI to steal Euronews articles
Euronews reports that a site called L'Observatoire de l'Europe uses AI to generate a fake journalist named Jean Delaunay and automatically translate Euronews articles word-for-word, republishing them without permission. The site attributes all articles to the fake journalist. Euronews states that this happens daily and that the site will likely steal this article as well.
- Company involved
- L'Observatoire de l'Europe
6 source articles · read the reporting →
King Features AI tool produces reading list recommending nonexistent books
King Features, a content syndication unit of Hearst, has acknowledged that a summer reading list it produced for newspapers was created with an AI tool and included books that do not exist. A freelance creator used the AI agent without disclosing it, contrary to King Features' policy. The Chicago Sun-Times, which published the section, removed it from its e-paper and said subscribers would not be charged.
- Company involved
- King Features
5 source articles · read the reporting →
iBorderCtrl lie detector falsely flagged honest reporter as liar
A journalist testing Europe's iBorderCtrl virtual policeman at the Serbian-Hungarian border gave honest answers but was deemed a liar by the system, scoring 48 out of 100 with four false answers flagged. The Hungarian policeman said the result suggested further checks, though none were carried out. The reporter only learned of the result after filing a data access request under European privacy laws. Experts and transparency activists have criticised the technology as pseudoscientific and potentially discriminatory.
- Company involved
- iBorderCtrl consortium
- AI system involved
- Silent Talker / iBorderCtrl virtual policeman
10 source articles · read the reporting →
X's Grok exposed hundreds of thousands of user chats in Google
Hundreds of thousands of conversations with Elon Musk's AI chatbot Grok were indexed by Google Search and made publicly accessible without users' knowledge. The exposure occurred when users pressed a share button that created unique links, but those links were also searchable online. The BBC reported the incident after Forbes initially identified more than 370,000 exposed chats. Experts described the leak as a privacy disaster, and X has not publicly responded.
- Company involved
- X
- AI system involved
- Grok
5 source articles · read the reporting →
OpenDream AI art site allowed users to generate child sexual abuse material
OpenDream, an AI image generation platform, allowed users to generate and publicly display child sexual abuse material (CSAM) and non-consensual deepfakes from at least December 2023 until July 2024. The platform, operated by CBM Media Pte Ltd in Singapore, offered paid plans with NSFW prompts and models. Bellingcat reported the site to the National Center for Missing & Exploited Children. After Bellingcat's inquiry, the CSAM was removed from the site and search engines, and Google terminated OpenDream's AdSense account.
- Company involved
- CBM Media Pte Ltd
- AI system involved
- OpenDream
3 source articles · read the reporting →
Stalker uses OpenAI's Sora to create AI videos of journalist Taylor Lorenz
Taylor Lorenz reported on X that her stalker has been using OpenAI's Sora video generation tool to create AI videos of her, feeding his delusions. The stalker had already been impersonating her family and friends online and hiring photographers to surveil her. Lorenz expressed fear about the AI's role in enabling the harassment, though she noted Sora offers options to block such content.
- Company involved
- OpenAI
- AI system involved
- Sora
3 source articles · read the reporting →
ChatGPT hallucinates fake links to news partners' investigations
Nieman Lab tests found that ChatGPT is generating fake URLs for articles from at least 10 news publications that have licensing deals with OpenAI, including The Wall Street Journal and The Atlantic. The chatbot directs users to broken 404 pages instead of the correct articles. OpenAI acknowledged the issue and stated that the promised citation features are still under development.
- Company involved
- OpenAI
- AI system involved
- ChatGPT
7 source articles · read the reporting →
Game Offline Lore used an AI clone of Mark Brown's voice in Doom videos
Mark Brown, creator of Game Maker's Toolkit, says YouTube channel Game Offline Lore used an AI-generated clone of his voice to narrate videos about Doom without his consent. He says the channel has removed comments flagging the videos and is likely earning ad revenue from them. Brown filed a privacy complaint with YouTube, which says it is reviewing the content. The videos remain live.
- Company involved
- Game Offline Lore
4 source articles · read the reporting →
Paradox security vulnerability exposed candidate data to researchers
On June 30, 2025, security researchers discovered a vulnerability in Paradox's test account that allowed access to chat interaction records. The researchers viewed five candidates' personal information including names, email addresses, phone numbers, and IP addresses. Paradox fixed the issue within hours and stated that no data was leaked publicly. The company has since implemented new security measures.
- Company involved
- Paradox
- AI system involved
- Paradox conversational AI platform
10 source articles · read the reporting →
Check Point Research finds Google Bard can generate phishing emails and malware
Check Point Research analysed Google's generative AI platform Bard and found it could be used to create phishing emails, malware keyloggers, and basic ransomware code with minimal manipulation. Bard's anti-abuse restrictors were significantly lower than ChatGPT's, making it easier to generate malicious content. The researchers demonstrated these capabilities in controlled tests but did not report actual harm to specific individuals or organisations.
- Company involved
- Google
- AI system involved
- Bard
4 source articles · read the reporting →
Luma's Dream Machine generates video with Disney character
Luma's AI video tool Dream Machine generated a trailer that included a recognizable character from Disney's Monsters, Inc. The company's CEO said a user uploaded an image containing the character, which the system then animated. The incident raises concerns about lack of transparency in training data and potential copyright infringement. Disney has not publicly commented.
- Company involved
- Luma
- AI system involved
- Dream Machine
7 source articles · read the reporting →
CBSE OnMark portal vulnerability exposed student data to Google Gemini
A 19-year-old ethical hacker, Nisarga Adhikary, claimed to have hacked the CBSE's digital evaluation ecosystem, revealing that personal information of students was processed by Google's Gemini in automation scripts. The Central Board of Secondary Education (CBSE) stated on May 31, 2026, that the identified vulnerabilities had been contained and other exploitable weaknesses were being ruled out. The board expressed gratitude to alert citizens and ethical hackers who pointed out the weaknesses. No actual data breach was confirmed, but the incident raised concerns about student privacy.
- Company involved
- Central Board of Secondary Education (CBSE)
- AI system involved
- OnMark
1 source article · read the reporting →
Meta's AI sticker tool generates lewd, rude, and nude images
Meta's new AI-generated sticker feature on Facebook Messenger allowed users to create inappropriate images, including child soldiers, nude politicians, and sexualised characters. The tool, powered by Meta's Llama 2 model, was found to have insufficient content filters, enabling users to bypass restrictions with typos. Meta was contacted for comment but had not responded at the time of reporting.
- Company involved
- Meta
- AI system involved
- AI-generated sticker tool
1 source article · read the reporting →
ChatGPT 4o image generator used to create fake receipts
ChatGPT's new image generator, part of the 4o model, can generate realistic fake restaurant receipts. Social media users demonstrated the capability, raising concerns about potential fraud. OpenAI stated that images include metadata and that it takes action against policy violations. The company defended the feature as allowing creative freedom.
- Company involved
- OpenAI
- AI system involved
- ChatGPT 4o image generator
5 source articles · read the reporting →
Italian Data Protection Authority Blocks Replika Chatbot Over Risks to Minors
On February 2, 2023, the Italian Data Protection Authority (Garante) issued an urgent order blocking the AI chatbot Replika from processing personal data of Italian users. The Garante found that Replika lacked effective age verification, allowing minors to potentially receive inappropriate content including sex-related replies, and that its privacy policy violated GDPR transparency requirements. The U.S.-based controller was given 20 days to report on compliance measures and may challenge the order within 60 days.
- AI system involved
- Replika
1 source article · read the reporting →
OpenAI's GPT Store hosts copyright-infringing chatbots
Praxis, a Danish textbook publisher, discovered that users of OpenAI's GPT Store had created custom chatbots using copyrighted textbooks without permission. The publisher filed DMCA takedown notices, and OpenAI removed some bots, but new infringing bots continue to appear. Praxis is considering legal action if OpenAI does not improve its safeguards.
- Company involved
- OpenAI
- AI system involved
- GPT Store
3 source articles · read the reporting →
Google Employees Warn Bard AI Chatbot Gives Dangerous Advice
Before Google launched its Bard AI chatbot in March 2023, employees testing the tool found it gave dangerously incorrect advice, including instructions on landing a plane that would cause a crash and scuba diving tips that could lead to serious injury or death. Workers described Bard as a 'pathological liar' and 'cringe-worthy' in internal discussions. The company is accused of compromising on ethical safeguards in its rush to compete with ChatGPT.
- Company involved
- Google
- AI system involved
- Bard
10 source articles · read the reporting →
Lovable security flaw exposed user data from 170 apps
Lovable, a Swedish startup, failed to fix a critical security flaw in its vibe coding service. Researchers found 170 Lovable-created web apps that exposed users' personal data, including names, emails, financial information, and API keys. Lovable acknowledged the issue and implemented a security scan, but the flaw remained unresolved.
- Company involved
- Lovable
- AI system involved
- Lovable
5 source articles · read the reporting →
Users jailbreak Luma Labs Dream Machine to generate porn
Users have jailbroken Luma Labs' Dream Machine, an AI video generator, to create explicit videos. The system's safeguards were bypassed to generate pornographic content. The videos are crude but demonstrate the potential for widespread AI-generated porn. Luma Labs' terms of service prohibit such content.
- Company involved
- Luma Labs
- AI system involved
- Dream Machine
3 source articles · read the reporting →
OpenAI's Sora video generator trained on copyrighted content without consent, tests suggest
Tests by The Washington Post suggest that OpenAI's video generation tool Sora was trained on videos from Netflix, TikTok, YouTube and other sources without permission. OpenAI has not disclosed its training data for Sora, saying only that it used publicly available and licensed data. The tool can closely replicate copyrighted characters, logos and scenes, raising concerns about copyright infringement. OpenAI has not faced a lawsuit specifically over Sora's training data but is fighting other copyright suits.
- Company involved
- OpenAI
- AI system involved
- Sora
3 source articles · read the reporting →
OpenAI's Sora generates copyrighted characters, prompting studio concerns
OpenAI's Sora video generator returns videos featuring copyrighted characters and materials from movies and TV shows, including Rick and Morty, South Park and Dune, according to The Hollywood Reporter. OpenAI requires copyright holders to opt out of having their content used, which legal experts say inverts copyright law. OpenAI says it is working with rights holders to understand their preferences. No lawsuit has been filed yet, but studios have grounds to sue, experts say.
- Company involved
- OpenAI
- AI system involved
- Sora
6 source articles · read the reporting →
Disney and Universal sue AI firm Midjourney over image generator copyright infringement
Disney and Universal have filed a lawsuit against AI firm Midjourney in federal district court in Los Angeles, alleging that its image generator produces 'innumerable' copies of copyrighted characters including Darth Vader, Elsa, and the Minions. The studios claim the system infringes their copyrights by generating images that are substantially similar to their characters. Midjourney has not responded to a request for comment. The case is ongoing.
- Company involved
- Midjourney
- AI system involved
- Midjourney image generator
5 source articles · read the reporting →