‘I Did Nothing, Yet My Payment and AI Tokens Were Completely Drained’ — Unauthorized Use of Anthropic Claude Accounts Sparks…
"가만히 있었는데 결제·AI 토큰 100% 소진"…앤트로픽 클로드 계정 무단 도용 파문 - AI포스트
Anthropic Claude accounts were reportedly accessed without authorization, leading to the full consumption of payment methods and AI tokens. The incident has caused a controversy.
- Company involved
- Anthropic
- AI system involved
- Claude
1 source article · read the reporting →
Class action suit filed against Flock alleging company has 'repeatedly minimized' misuse of the system - WCNC
Class action suit filed against Flock alleging company has 'repeatedly minimized' misuse of the system WCNC
- Company involved
- Flock
1 source article · read the reporting →
BOPU: Cheyenne wastewater system polluter was a data center; city temporarily pausing data center discharges
Cheyenne's Board of Public Utilities traced a contamination of the city's wastewater reuse system with the bacterium Cupriavidus gilardii to Goat Systems, a company building an 800,000-square-foot data centre campus reported to be Meta's, and permanently revoked its discharge privileges. The reuse system's start for the year was delayed while the bacteria were flushed out; the city paused discharges from data centres. Meta has appealed the violation notice.
- Company involved
- Goat Systems (Meta data centre contractor)
- AI system involved
- Cheyenne data centre campus
1 source article · read the reporting →
Meta to pay up to $18bn to settle claims its platforms harm children - BBC
Facebook and Instagram's algorithmic feeds and engagement features allegedly harmed children by fostering addiction and negative mental health impacts.
- Company involved
- Meta
- AI system involved
- Facebook and Instagram
1 source article · read the reporting →
Phia | Gates' Daughter's AI Shopping Assistant Used Cookie Stuffing, Admits Taking Others' Affiliate Commissions
Phia︱蓋茨女兒「AI購物助理」偷塞Cookie 認收他人推廣佣金 - singtao.ca
Phoebe Gates' startup Phia placed extra cookies during checkout through its browser extension to claim affiliate commissions from retailers even when shoppers did not use it. Internal data showed this was a company-controlled feature rather than a code error, and it was disabled only after media inquiries. Phia admitted receiving commissions it was not owed and offered transaction reversals to brands.
- Company involved
- Phia
- AI system involved
- Phia
1 source article · read the reporting →
Grok AI prompt-injected to drain $150,000 from crypto wallet
In May 2026, an attacker used a Morse code-encoded message to prompt-inject xAI's Grok AI, causing its linked Bankr trading bot to transfer 3 billion DRB tokens worth approximately $150,000 to the attacker's wallet. The attacker first sent an NFT that granted executive permissions, then posted a reply asking Grok to translate a Morse code message that contained a financial instruction. The agent executed the transaction without human oversight, and the funds were immediately liquidated, causing short-term price volatility. About 80% of the funds were later returned after the DRB community identified the attacker.
- Company involved
- xAI
- AI system involved
- Grok and Bankr
2 source articles · read the reporting →
NoCams Muskego files lawsuit against 11 municipalities that use Flock - Greater Milwaukee Today
The system recorded and tracked vehicle movements of residents and drivers, and allowed police to search location history without a warrant.
- Company involved
- City of Muskego
- AI system involved
- Flock Safety automated license plate readers
1 source article · read the reporting →
SafeRent Settles Class Action Over Tenant Screening for Voucher Holders
Mary Louis and Monica Douglas filed a class action lawsuit in 2022 alleging that SafeRent Solutions' SafeRent Score product discriminated against rental applicants in Massachusetts who held public housing vouchers, violating fair housing and consumer protection laws. SafeRent denied wrongdoing. The court approved a settlement in November 2024, and payments were distributed to eligible class members in 2025 and 2026.
- Company involved
- SafeRent Solutions, LLC
- AI system involved
- SafeRent Score
5 source articles · read the reporting →
Waukesha County Flock cameras; WILL files lawsuit - FOX6 News Milwaukee
Flock cameras continuously capture license plate data and images, tracking vehicles' movements and storing data on residents in Waukesha County.
- Company involved
- Flock
- AI system involved
- Flock cameras
1 source article · read the reporting →
Meazure Learning Agrees $1.35m California Bar Exam Class-Action Settlement - Lawyer Monthly
The exam software experienced technical failures that prevented candidates from logging in or completing the California bar exam.
- Company involved
- Meazure Learning
- AI system involved
- ProctorU
1 source article · read the reporting →
Tether faces a $42 million lawsuit for freezing USDT without a warrant - Traders Union
Tether fait face à un procès de 42 millions de dollars pour le gel d'USDT sans mandat - Traders Union
Two Thai businessmen sued Tether, alleging the company froze 42.4 million USDT in their wallets in October 2025, more than three months before U.S. authorities obtained a seizure warrant in February 2026. The plaintiffs demand the blacklisted addresses be removed and want to prevent the tokens from being transferred to the government until a final judicial decision. The disputed funds are possibly linked to a U.S. Department of Justice investigation into pig-butchering scams.
- Company involved
- Tether
- AI system involved
- USDT
1 source article · read the reporting →
UberEats Sued for Fraud Over Stacked Orders and Halved Hours Allegedly Shorting Pay
疊單、工時砍半涉短付報酬!UberEats挨告詐欺 - TVBS新聞網
A new law effective July 21 sets minimum pay per delivery order. Unions accuse UberEats of underpaying workers by misinterpreting these rules, and they filed a fraud complaint with prosecutors. They say the platform's actions caused financial losses for delivery workers.
- Company involved
- Uber Eats
1 source article · read the reporting →
Scammers use AI-generated identities to steal $5.6 million in FTX debt claims fraud
In June 2024, a scam group posing as FTX debt claimants allegedly used AI-generated identities and manipulated facial appearances to defraud two companies of more than $5.6 million. The perpetrators accessed FTX customer data through public bankruptcy filings or a 2023 data breach at Kroll. Blockchain analysis traced the stolen funds through Binance, CoinEx, and Gate.io. The incident remains unresolved.
6 source articles · read the reporting →
PayPal's AI chatbot falsely reports a declined transaction
A PayPal user engaged the company's generative AI chatbot, which proactively claimed a recent transaction of $23.64 was declined. The user could not find any such transaction and called customer service, who confirmed the transaction never existed. The chatbot had fabricated the alert. Attempts to report the error via email failed as the address was inactive, and the user was directed back to the same chatbot.
- Company involved
- PayPal
- AI system involved
- PayPal Assistant
1 source article · read the reporting →
MeetingTV sues Palo Alto Networks' Koi Security over AI-hallucinated threat report
MeetingTV, a video conferencing startup, alleges that Koi Security used an AI system to generate a threat report that falsely linked it to a Chinese espionage operation. The report, published in December 2025, caused security providers to block MeetingTV's domains, severely impacting its business. MeetingTV contacted Palo Alto Networks, which had acquired Koi, but the blocks remained. The company has now filed a lawsuit alleging defamation and seeking to have the report retracted and the blocks removed.
- Company involved
- Koi Security
- AI system involved
- Wings
2 source articles · read the reporting →
Court orders suspension of facial recognition in São Paulo metro
A court in São Paulo ordered the suspension of a facial recognition system in the city's metro stations following a lawsuit by civil society groups. The system, SecurOS by ISS and operated by ViaQuatro, was capturing biometric data of millions of daily users without adequate transparency or risk assessment. The court also barred the metro operator, METRO, from installing new biometric equipment and imposed daily fines for non-compliance. METRO stated it would appeal the ruling and prove compliance with data protection regulations.
- Company involved
- Companhia do Metropolitano de São Paulo (METRO)
- AI system involved
- SecurOS
3 source articles · read the reporting →
McKinsey's Lilli AI Platform Hacked, Exposing 46 Million Chat Messages
Security researchers at CodeWall used an autonomous offensive agent to discover a SQL injection vulnerability in McKinsey's internal AI platform, Lilli. The vulnerability allowed unauthenticated access to the production database, exposing 46.5 million chat messages, 728,000 files, and 57,000 user accounts. The researchers responsibly disclosed the issue to McKinsey, who patched the endpoints within days. No data was exfiltrated or misused, and no disruption occurred.
- Company involved
- McKinsey & Company
- AI system involved
- Lilli
1 source article · read the reporting →
FACIL'iti sues accessibility consultant Julie Moynat over critical tweet
In November 2020, Julie Moynat, a web accessibility consultant, tweeted criticism of FACIL'iti, an accessibility product. FACIL'iti sent a formal notice to her employer and later subpoenaed her for denigration in May 2021. Moynat is raising funds for her legal defense. The case is ongoing at the Judiciary Tribunal of Paris.
- Company involved
- FACIL'iti
- AI system involved
- FACIL'iti
10 source articles · read the reporting →
Royal Free London publishes audit into Streams app data processing
The Royal Free London NHS Foundation Trust published an audit into its use of the Streams app, following an investigation by the Information Commissioner's Office (ICO) in July 2017. The Streams app alerts clinicians to patients at risk of acute kidney injury. The audit, conducted by Linklaters, concluded that the trust's use of Streams was lawful and complied with data protection laws, although areas for improvement were identified. The ICO later recognised that the trust had completed all required actions.
- Company involved
- Royal Free London NHS Foundation Trust
- AI system involved
- Streams
10 source articles · read the reporting →
MoviePass to use eye-tracking to ensure users watch adverts
MoviePass, the movie subscription service, has announced that its new app will use facial recognition and eye-tracking technology to ensure users are watching adverts. The system, which uses the phone's camera, will pause content if the user looks away. The company says the technology is designed to give advertisers the impact they are looking for. No harm has been reported yet, but the tracking raises privacy concerns.
- Company involved
- MoviePass
- AI system involved
- MoviePass app
10 source articles · read the reporting →
McDonald’s AI Hiring Platform Exposes 64 Million Applicants’ Data Due to Default Password
In late June 2025, security researchers discovered that McDonald’s AI-powered hiring platform, McHire, had a critical security flaw. A default admin password of '123456' allowed access to a live dashboard containing sensitive data of nearly 64 million job applicants. The researchers also found an insecure direct object reference vulnerability that could expose full applicant profiles and chat logs. McDonald’s and the platform’s vendor, Paradox.ai, quickly fixed the issues and stated that only five records were viewed by the researchers, with no public data leak.
- Company involved
- McDonald's
- AI system involved
- McHire
2 source articles · read the reporting →
Florida man nearly loses $1,900 in AI puppy scam
Dennis Morida of St. Petersburg, Florida, was scammed after his missing German Shepherd puppy Hazel was falsely reported as injured. A caller claiming to be a police sergeant sent an AI-generated image of Hazel on an operating table and demanded $1,900 for surgery. Morida paid via Zelle, but the dog returned home unharmed and his bank flagged the transaction as fraud, so he recovered the money.
2 source articles · read the reporting →
Newham Council fined £145,000 over leaked gang matrix data
Newham Council was fined £145,000 by the Information Commissioner's Office after a leaked unredacted gangs matrix, containing details of 203 suspected gang members, ended up in the hands of rival gang members via Snapchat. The leak occurred in January 2017 when a council employee emailed both redacted and unredacted versions to 44 recipients. The ICO found the breach was unnecessary and that the council failed to report it promptly. The council apologised and accepted the breach was not deliberate.
- Company involved
- Newham Council
- AI system involved
- Gangs matrix
8 source articles · read the reporting →
Shipt's new V2 algorithm reduces pay for 41% of workers, study finds
A study by MIT Media Lab and Coworker.org found that Shipt's new V2 payment algorithm reduced pay for 41% of workers by an average of 11% per shop. The algorithm, rolled out in September 2020, replaced a transparent payment system with a black-box model. Workers pooled data to analyze the impact, revealing uneven distribution of earnings.
- Company involved
- Shipt
- AI system involved
- V2
10 source articles · read the reporting →