REAL-WORLD AI INCIDENTS

Felony Bench.

A running tally of independent AI hacks.

21counted incidents
Successful incidents · cumulative countRead the evidence
01 / METHODOLOGY

What counts.

01

Independent action

An agent reaches and compromises a real target it was not explicitly instructed to attack.

02

A boundary crossed

Successful unauthorized access or exploitation. Failed probes, public browsing, and escape alone are excluded.

03

A distinct episode

Separate evaluation runs and fresh compromises after remediation can count again. Requests and scans are not individual points.

How to read this tally

This edition preserves the published Felony Bench tally shown above. It counts incidents rather than unique victim organizations. Some reported cases involve unauthorized use of exposed credentials; these do not necessarily amount to a compromise of the service provider’s platform.

The source reports use different units, including runs, organizations, and accounts. The numbers are an editorial tally, not a standardized evaluation or an estimate of every incident that has occurred. Zero indicates no incident included in this edition.

Unsuccessful attempts and deliberately attacker-directed campaigns are outside this chart. Source reports and their updates provide the context for each lab.

02 / THE RECORD

Behind the numbers.

The reports behind the discussion. Read the original accounts.

Mistral

0

No incident included in this edition.

Moonshot

0

No incident included in this edition.