I compiled every major AI agent security incident from 2024-2026 in one place - 90 incidents, all sourced, updated weekly

Reddit r/artificial / 4/9/2026

💬 OpinionDeveloper Stack & InfrastructureSignals & Early TrendsTools & Practical Usage

Key Points

  • A compiled, continuously updated reference (hosted on GitHub) aggregates 90 major AI agent security incidents from 2024–2026 with dates, affected companies, impact, root causes, and CVEs where applicable.
  • The dataset spans multiple threat areas including supply-chain attacks, vulnerabilities in agent/AI frameworks, enterprise incidents, AI coding tool CVEs, and large crypto/DeFi exploits.
  • Each entry is sourced with direct source links, and the repository also includes industry statistics and an attack-pattern taxonomy to categorize incident types.
  • The creator invites community contributions via PRs to fill gaps and keep the weekly updates current.

After tracking AI agent security incidents for the past year, I put together a single reference covering every major breach, vulnerability and attack from 2024 through 2026. 90 incidents total, organized by year, with dates, named companies, impact, root cause, CVEs where applicable, and source links for every entry.

Covers supply chain attacks (LiteLLM, Trivy, Axios), framework vulnerabilities (LangChain, Langflow, OpenClaw), enterprise incidents (Meta Sev 1, Mercor/Meta suspension), AI coding tool CVEs (Claude Code, Copilot, Cursor), crypto exploits (Drift Protocol $285M, Bybit $1.46B), and more.

Also includes 20 sourced industry stats and an attack pattern taxonomy grouping incidents by type.

No product pitches. No opinions. Just facts with sources.

https://github.com/webpro255/awesome-ai-agent-attacks

PRs welcome if I missed anything.

submitted by /u/webpro255
[link] [comments]