AI Incident Database

33 documented incidents. Search, filter, and explore.

China's AI-Powered Social Credit System Expands to Comprehensive Online Behavior Monitoring

Critical

China's 2025 expansion of its AI-powered social credit system to comprehensively monitor online behavior affects 1.4 billion people. The system scores citizens based on digital activities, creating unprecedented mass surveillance and chilling effects on digital expression.

Feb 15, 2025|Privacy Leak|Government|Other/Unknown

Italian Data Protection Authority Blocks DeepSeek Over GDPR Privacy Violations

High

Italy's data protection authority blocked Chinese AI company DeepSeek from processing Italian user data over GDPR violations, citing lack of transparency and proper legal basis for data processing.

Jan 27, 2025|Privacy Leak|Technology|Other/Unknown

DeepSeek AI Exposes 1 Million User Records Including Chat Histories and API Keys in Public Database

High

Security researcher discovered DeepSeek AI's publicly accessible ClickHouse database containing over 1 million records of user chat histories, API keys, and system logs, highlighting critical security gaps in AI startup infrastructure.

Jan 17, 2025|Privacy Leak|Technology|Other/Unknown

London Underground AI Surveillance Expansion Triggers Privacy Legal Challenges

High

Transport for London's 2025 expansion of AI surveillance including emotion detection triggered legal challenges from privacy groups and ICO investigation over GDPR compliance.

Jan 15, 2025|Privacy Leak|Government|Other/Unknown

Microsoft 365 Copilot Cross-Tenant Data Exposure via Permission Inheritance Vulnerability

High

Microsoft 365 Copilot inherited SharePoint permission flaws that could expose confidential corporate documents across organizational boundaries, prompting Microsoft to release patches and updated guidance on AI data governance.

Sep 12, 2024|Privacy Leak|Technology|Other/Unknown

Microsoft Recall Feature Stored Unencrypted Screenshots with AI Analysis

High

Microsoft's Recall feature for Copilot+ PCs stored unencrypted screenshots of user activity in accessible databases, creating massive privacy risks. Security researchers' findings led to public backlash and Microsoft delaying the feature.

Jun 3, 2024|Privacy Leak|Technology|OpenAI

Microsoft AI Recall Feature Exposed User Passwords and Private Data Through Unencrypted Screenshots

High

Microsoft's AI Recall feature stored unencrypted screenshots of all user activity including passwords and sensitive data, forcing the company to delay launch after major security backlash.

Jun 3, 2024|Privacy Leak|Technology|Other/Unknown

Venice AI Surveillance System for Tourist Tracking and Day-Tripper Fee Enforcement

Medium

Venice deployed AI surveillance cameras to track tourist movements and enforce a €5 day-tripper fee, raising significant privacy concerns under GDPR and setting precedent for AI-powered urban crowd control.

Apr 25, 2024|Privacy Leak|Government|Other/Unknown

Microsoft Copilot for 365 Exposed Confidential Data Due to SharePoint Overpermissioning

High

Microsoft Copilot for 365 exposed confidential documents by leveraging overpermissioned SharePoint and OneDrive access, allowing users to discover sensitive information through AI-powered search that they shouldn't have been able to access.

Feb 12, 2024|Privacy Leak|Technology|Other/Unknown

Zoom Updated Terms of Service to Allow AI Training on User Content Without Explicit Consent

High

Zoom faced major backlash after updating terms of service in March 2023 to allow AI training on user content including video calls without explicit consent, affecting hundreds of millions of users before partially reversing the policy in August 2023.

Aug 7, 2023|Privacy Leak|Technology|Other/Unknown

Worldcoin Iris Scanning Triggers Global Privacy Violations and Regulatory Bans

High

Worldcoin's global iris-scanning project collected biometric data from 4.5 million people, triggering investigations and bans across multiple countries due to inadequate privacy protections and targeting of vulnerable populations in developing nations.

Aug 2, 2023|Privacy Leak|Technology|Other/Unknown

OpenAI Faces Class Action Lawsuit for Training Models on Private Medical Records Without Consent

High

A 2023 class action lawsuit alleged OpenAI trained its language models on private medical records and therapy notes scraped from the internet without patient consent. The case highlights significant privacy risks in AI training data practices within healthcare contexts.

Jun 28, 2023|Privacy Leak|Healthcare|OpenAI

AI Companion Apps Exposed Intimate User Data Through Inadequate Security Practices

High

Mozilla Foundation security audit revealed that popular AI companion apps including Replika and Character.AI exposed intimate user conversations through inadequate encryption and unauthorized third-party data sharing, affecting over 11 million users.

May 23, 2023|Privacy Leak|Technology|Other/Unknown

Samsung Semiconductor Employees Leaked Confidential Data Through ChatGPT Prompts

High

Samsung semiconductor division employees leaked confidential source code, meeting recordings, and test data through ChatGPT prompts in March 2023. Samsung banned ChatGPT usage and implemented new AI policies after discovering at least three separate incidents within 20 days.

May 2, 2023|Privacy Leak|Technology|OpenAI

Samsung Engineers Leaked Proprietary Code via ChatGPT

High

Samsung semiconductor division engineers submitted proprietary source code, internal meeting notes, and hardware test data to ChatGPT on at least three separate occasions within 20 days. Samsung subsequently restricted employee use of generative AI tools and began developing an internal alternative.

Apr 2, 2023|Privacy Leak|Technology|OpenAI

Italy Temporarily Bans ChatGPT Over GDPR Privacy Violations

High

Italy's data protection authority temporarily banned ChatGPT in March 2023 for GDPR violations including unlawful data collection, lack of age verification, and generating inaccurate personal information.

Mar 31, 2023|Privacy Leak|Technology|OpenAI|$50,000,000

ChatGPT Bug Exposed User Chat Histories and Payment Information

High

In March 2023, a Redis cache bug in ChatGPT exposed chat histories and payment information to unauthorized users. The incident affected approximately 100,000 users and led to temporary service suspension and regulatory scrutiny.

Mar 24, 2023|Privacy Leak|Technology|OpenAI|$5,000,000

FTC Fines BetterHelp $7.8M for Sharing Mental Health Data with Advertisers

High

The FTC fined BetterHelp $7.8 million for sharing sensitive mental health data from over 7 million users with Facebook, Snapchat, and other advertisers for targeted marketing between 2017-2020, violating privacy promises.

Mar 2, 2023|Privacy Leak|Healthcare|Other/Unknown|$7,800,000

AI Mental Health Apps Shared Sensitive User Data with Advertisers and Third Parties

High

Mozilla research revealed that major AI-powered mental health apps including BetterHelp shared sensitive user therapy data with advertising platforms. The FTC fined BetterHelp $7.8M for violating user privacy.

Mar 2, 2023|Privacy Leak|Healthcare|Other/Unknown|$7,800,000

AI Surveillance Cameras in Serbian Schools Monitored Student Behavior Without Proper Consent

High

AI surveillance cameras in Serbian schools monitored student emotions and behavior without proper consent from students or parents. Digital rights groups successfully challenged the practice, leading to removal of the surveillance system.

Dec 15, 2022|Privacy Leak|Education|Other/Unknown
Page 1 of 2Next →