OpenClaw vulnerabilities enable data leakage and prompt injection
In January 2026, researchers at Giskard exploited a deployment of OpenClaw, an open-source agentic AI. They found that architectural weaknesses in the Control UI and session management allowed prompt injection and unauthorized tool use, leading to potential data leakage across user sessions. The article outlines hardening steps to prevent such vulnerabilities.
- AI system involved
- OpenClaw
6 source articles · read the reporting →
Pankaj says his AI kitchen monitor caught the cook taking fruit and she was fired
Pankaj posted on X that he had set up an AI-powered kitchen monitor, using Claude Haiku 4.5 as its vision model, to watch his cook while she worked. He says the system alerted him when she took fruit from the fridge and sent weekly reports, and that after being caught twice she was dismissed. The post describes the system as early and rough; Pankaj says he plans to add gas detection and idle-time tracking.
- Company involved
- Pankaj
- AI system involved
- AI roommate
5 source articles · read the reporting →
Woman Blindly Trusts Driver Assistance, Rear-Ends Lane-Changing Bus on Highway
女子轻信辅助驾驶放任不管 高速上直接追尾变道大巴车 - 驱动之家
On August 28, on the Shanghai-Kunming Expressway, a woman driving an SUV with driver assistance engaged rear-ended a bus that suddenly changed lanes. She assumed the system would brake automatically and took no action. The bus driver was found at fault for the lane change, but police warned against over-reliance on driver assistance.
1 source article · read the reporting →
AI-generated 'All eyes on Rafah' image goes viral on social media
An AI-generated image depicting refugee tents spelling out 'all eyes on Rafah' was shared millions of times on Instagram and other platforms in late May 2024. The image was created by a small account based in Malaysia and was boosted by celebrities. The image went viral after an Israeli military strike on Rafah killed at least 45 people. The article does not report any harm caused by the AI system itself.
10 source articles · read the reporting →
Spinvox accused of using human transcribers for voice messages
Spinvox, a UK voice-to-text firm, is accused of using call centre staff in South Africa and the Philippines to transcribe the majority of user messages, contrary to claims of automated speech recognition. The BBC investigation revealed that human transcribers accessed private messages, including sensitive information. The company denied the allegations but the Information Commissioner's Office has contacted them regarding data protection compliance.
- Company involved
- Spinvox
- AI system involved
- D2 (the Brain)
4 source articles · read the reporting →
DFFH breaches privacy by using ChatGPT in child protection report
A child protection worker at the Department of Families, Fairness and Housing (DFFH) used ChatGPT to draft a Protection Application Report for the Children’s Court, entering sensitive personal information about a child. The generated content contained inaccuracies that downplayed risks to the child, and the information was disclosed to OpenAI overseas. An investigation by the Office of the Victorian Information Commissioner found DFFH failed to ensure accuracy and protect personal information, contravening IPPs 3.1 and 4.1. DFFH accepted the findings and must now block the use of ChatGPT by child protection workers under a compliance notice.
- Company involved
- Department of Families, Fairness and Housing
- AI system involved
- ChatGPT
9 source articles · read the reporting →
Pras Michel seeks new trial over lawyer's use of AI for closing arguments
Prakazrel 'Pras' Michel, a former member of the Fugees, was convicted of criminal conspiracy charges for attempting to influence US presidential administrations. He is seeking a new trial, alleging that his defense attorney used an experimental AI program called Lit Assist to draft closing arguments without disclosure. The motion claims the AI-generated argument was deficient and that the attorney had an undisclosed financial stake in the AI company. The court has scheduled an evidentiary hearing.
- AI system involved
- Lit Assist
10 source articles · read the reporting →
Zhihu denies using behaviour perception system to monitor employees
Zhihu, a Chinese Q&A platform, was accused of using a behaviour perception system to monitor employees' visits to job-seeking websites and resume submissions. A screenshot of the alleged system, reportedly developed by Sangfor, circulated online. Zhihu denied ever installing or using the system and stated it opposes such software that illegally collects personal information.
- Company involved
- Zhihu
- AI system involved
- Behaviour perception system
4 source articles · read the reporting →
AI transcription tools produce errors in social work records
AI transcription tools used by social workers in English and Scottish councils have been found to produce inaccurate transcripts and summaries, including false indications of suicidal ideation and 'gibberish' notes. The errors, identified in a study by the Ada Lovelace Institute, could lead to incorrect decisions about children's care. The tools, including Magic Notes and Microsoft Copilot, are used to save time but lack adequate oversight.
- Company involved
- Multiple local authorities in England and Scotland
- AI system involved
- Magic Notes,Microsoft Copilot
8 source articles · read the reporting →
Lensa AI app generated nudes from user's childhood photos
Lensa, a photo-editing AI app, generated sexualized and nude images from users' uploaded photos, including childhood photos of writer Olivia Snow. Snow alleges the app violated its own terms by producing full nudity and child sexual exploitation material, and that it whitened and sexualised women of colour's images. The app's lack of content moderation and oversight allowed these harmful outputs, with no response from the company.
- Company involved
- Lensa
- AI system involved
- Lensa
9 source articles · read the reporting →
Prisma Labs wins arbitration in Lensa biometric privacy lawsuit
Artificial intelligence company Prisma Labs is accused of violating Illinois' biometric privacy law by collecting facial geometry data from users of its Lensa app. A proposed class action was filed, but a California federal judge granted Prisma's motion to compel arbitration because users agreed to it during sign-up. The plaintiff alleges the app collected his facial data without consent.
- Company involved
- Prisma Labs Inc.
- AI system involved
- Lensa AI
8 source articles · read the reporting →
U.S. Federal Court Allows CIPA Class Action Against AI Customer Service Provider to Proceed - Wilson Sonsini
The AI system intercepted and recorded a customer's phone call and collected her personal and financial information without consent.
- Company involved
- ConverseNow Technologies, Inc.
1 source article · read the reporting →
Call Vendors Skirt Wiretap Suit Over AI Transcription Tool - Law360
The system recorded and analyzed patient phone calls without their consent.
- Company involved
- Heartland Dental LLC
1 source article · read the reporting →
Driver Assistance Blamed Again: Station Wagon Hits Crash Cushion on Highway 1, Two Hurt
輔助駕駛又釀禍!國1銅鑼段旅行車追撞緩撞車 駕駛乘客2人受傷 - 自由時報
A Volvo station wagon using driver assistance rear-ended a crash cushion vehicle on National Highway 1 in Tongluo, Miaoli County. The driver and a passenger sustained minor injuries. The driver was not paying attention to the road ahead.
1 source article · read the reporting →
Talkdesk Hit With Class Suit Over Customer Service Software - news.bloomberglaw.com
The system secretly recorded and analyzed customer service conversations of callers to Patagonia and Zumiez without consent.
- Company involved
- Talkdesk Inc.
- AI system involved
- CX Cloud
1 source article · read the reporting →