Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
6 changes: 0 additions & 6 deletions data/entries/ASI01.json
Original file line number Diff line number Diff line change
Expand Up @@ -893,12 +893,6 @@
"year": 2026,
"incident_id": "INC-01297"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html",
Expand Down
18 changes: 0 additions & 18 deletions data/entries/ASI02.json
Original file line number Diff line number Diff line change
Expand Up @@ -797,12 +797,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "AnythingLLM Multiple CVEs",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html",
Expand Down Expand Up @@ -893,12 +887,6 @@
"year": 2026,
"incident_id": "INC-01297"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "MCP fURI -- Microsoft MarkItDown MCP SSRF",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01378.html",
Expand Down Expand Up @@ -1001,12 +989,6 @@
"year": 2025,
"incident_id": "INC-02435"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Claude Pirate Data Exfiltration",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html",
Expand Down
18 changes: 0 additions & 18 deletions data/entries/ASI03.json
Original file line number Diff line number Diff line change
Expand Up @@ -838,12 +838,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "AnythingLLM Multiple CVEs",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html",
Expand Down Expand Up @@ -910,12 +904,6 @@
"year": 2023,
"incident_id": "INC-01291"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html",
Expand Down Expand Up @@ -994,12 +982,6 @@
"year": 2025,
"incident_id": "INC-02426"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Cursor Config Overwrite via Case Mismatch",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html",
Expand Down
24 changes: 0 additions & 24 deletions data/entries/ASI04.json
Original file line number Diff line number Diff line change
Expand Up @@ -741,12 +741,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "AnythingLLM Multiple CVEs",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html",
Expand Down Expand Up @@ -801,12 +795,6 @@
"year": 2023,
"incident_id": "INC-01291"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html",
Expand Down Expand Up @@ -909,12 +897,6 @@
"year": 2025,
"incident_id": "INC-02435"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Claude Skills Data Exfiltration",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html",
Expand Down Expand Up @@ -963,12 +945,6 @@
"year": 2025,
"incident_id": "INC-02546"
},
{
"name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html",
"year": 2025,
"incident_id": "INC-02590"
},
{
"name": "Framelink Figma MCP RCE",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html",
Expand Down
18 changes: 0 additions & 18 deletions data/entries/ASI05.json
Original file line number Diff line number Diff line change
Expand Up @@ -734,12 +734,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "AnythingLLM Multiple CVEs",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html",
Expand Down Expand Up @@ -812,12 +806,6 @@
"year": 2026,
"incident_id": "INC-01297"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html",
Expand Down Expand Up @@ -908,12 +896,6 @@
"year": 2025,
"incident_id": "INC-02321"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Claude Desktop PromptJacking RCE",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html",
Expand Down
6 changes: 0 additions & 6 deletions data/entries/ASI07.json
Original file line number Diff line number Diff line change
Expand Up @@ -754,12 +754,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "A2A Protocol -- Agent Card Poisoning Vulnerability",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html",
Expand Down
6 changes: 0 additions & 6 deletions data/entries/ASI09.json
Original file line number Diff line number Diff line change
Expand Up @@ -772,12 +772,6 @@
"year": 2026,
"incident_id": "INC-01064"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html",
Expand Down
12 changes: 0 additions & 12 deletions data/entries/ASI10.json
Original file line number Diff line number Diff line change
Expand Up @@ -819,12 +819,6 @@
"year": 2026,
"incident_id": "INC-00834"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html",
Expand Down Expand Up @@ -855,12 +849,6 @@
"year": 2025,
"incident_id": "INC-02426"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html",
Expand Down
6 changes: 0 additions & 6 deletions data/entries/LLM01.json
Original file line number Diff line number Diff line change
Expand Up @@ -860,12 +860,6 @@
"year": 2026,
"incident_id": "INC-01297"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html",
Expand Down
18 changes: 0 additions & 18 deletions data/entries/LLM02.json
Original file line number Diff line number Diff line change
Expand Up @@ -747,12 +747,6 @@
}
],
"incidents": [
{
"name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html",
"year": 2023,
"incident_id": "INC-00010"
},
{
"name": "A2A Protocol -- Agent Card Poisoning Vulnerability",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html",
Expand Down Expand Up @@ -837,12 +831,6 @@
"year": 2023,
"incident_id": "INC-01291"
},
{
"name": "Langflow Unauthenticated RCE (CVE-2026-33017)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html",
"year": 2026,
"incident_id": "INC-01298"
},
{
"name": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01435.html",
Expand Down Expand Up @@ -897,12 +885,6 @@
"year": 2025,
"incident_id": "INC-02435"
},
{
"name": "Vulnerable juju hook tool abstract UNIX domain socket",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html",
"year": 2024,
"incident_id": "INC-02443"
},
{
"name": "Claude Pirate Data Exfiltration",
"url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html",
Expand Down
Loading
Loading