Open-Source AI Models Exploited for Criminal Activities Due to Security Flaws

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Researchers from SentinelOne and Censys found that thousands of open-source large language models, including Meta's Llama and Google DeepMind's Gemma, are being exploited by hackers for criminal activities such as scams, phishing, disinformation, and child sexual abuse material, due to removed safety features and lack of platform security.[AI generated]

Why's our monitor labelling this an incident or hazard?

The event involves AI systems (open-source LLMs) whose use and deployment have led to or enable criminal misuse such as phishing, scams, disinformation, and other harms. The researchers' findings indicate that these AI systems are being exploited in ways that cause or could cause harm to people and communities, including violations of rights and security breaches. Although the article does not describe a single discrete incident, it documents ongoing misuse and harm caused by AI systems, which fits the definition of an AI Incident due to realized harms (e.g., scams, disinformation campaigns) directly linked to AI misuse. Therefore, this qualifies as an AI Incident rather than a hazard or complementary information.[AI generated]
AI principles
Robustness & digital securitySafety

Industries
Digital securityMedia, social platforms, and marketing

Affected stakeholders
ConsumersChildren

Harm types
Economic/PropertyPublic interestHuman or fundamental rights

Severity
AI incident

AI system task:
Content generation


Articles about this incident or hazard

Thumbnail Image

Open-source AI models vulnerable to criminal misuse, researchers warn

2026-01-29
Reuters
Why's our monitor labelling this an incident or hazard?
The event involves AI systems (open-source LLMs) whose use and deployment have led to or enable criminal misuse such as phishing, scams, disinformation, and other harms. The researchers' findings indicate that these AI systems are being exploited in ways that cause or could cause harm to people and communities, including violations of rights and security breaches. Although the article does not describe a single discrete incident, it documents ongoing misuse and harm caused by AI systems, which fits the definition of an AI Incident due to realized harms (e.g., scams, disinformation campaigns) directly linked to AI misuse. Therefore, this qualifies as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Open-Source AI Models Vulnerable to Criminal Misuse, Researchers Warn

2026-01-29
U.S. News & World Report
Why's our monitor labelling this an incident or hazard?
The event involves AI systems explicitly (open-source LLMs) and details their misuse leading to various harms including criminal activities and dissemination of harmful content. The harms are occurring or have occurred, not just potential. The researchers' findings confirm that these AI systems have been used in ways that cause harm, fulfilling the criteria for an AI Incident. The article does not merely warn about potential misuse but documents ongoing misuse and vulnerabilities exploited by criminals, thus constituting an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Open-source AI models vulnerable to criminal misuse, researchers warn

2026-01-29
Economic Times
Why's our monitor labelling this an incident or hazard?
The article explicitly involves AI systems (open-source LLMs) and details how their deployment without proper safeguards has led to criminal misuse causing harms such as scams, fraud, disinformation, and child sexual abuse material dissemination. These harms fall under violations of rights and harm to communities. The researchers' findings indicate that these harms are occurring, not just potential, and that the AI systems' lack of security and removal of guardrails are contributing factors. Therefore, this qualifies as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Open-Source AI Models, Including Meta's Llama, May be Vulnerable to Criminal Misuse, Warn Researchers

2026-01-29
Republic World
Why's our monitor labelling this an incident or hazard?
The article explicitly involves AI systems (open-source LLMs) and discusses the potential for their misuse by criminals to cause harm such as phishing and disinformation campaigns. Since the harm is not reported as having occurred yet but is a credible risk due to bypassed guardrails, this constitutes a plausible future harm scenario. Therefore, this event fits the definition of an AI Hazard rather than an AI Incident or Complementary Information.
Thumbnail Image

Unveiling the Dark Side of Open-Source Language Models

2026-01-29
Devdiscourse
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions that open-source large language models (AI systems) have security vulnerabilities that hackers exploit for harmful activities including fraud and disinformation. These activities constitute harm to communities and potentially individuals, fulfilling the criteria for an AI Incident. The harm is realized, not just potential, as the misuse is ongoing. The article also discusses the need for risk mitigation, but the primary focus is on the existing misuse and harm caused by these AI systems.
Thumbnail Image

Open-source AI models vulnerable to criminal misuse, researchers warn

2026-01-31
The Hindu
Why's our monitor labelling this an incident or hazard?
The event explicitly involves AI systems (open-source LLMs) whose deployment and use have directly led to harms such as scams, phishing, disinformation, hate speech, and child sexual abuse material dissemination. The article describes realized harms caused by the AI systems' misuse, not just potential risks. The involvement of AI is clear and central, and the harms fall under categories of harm to communities and violations of rights. Hence, this qualifies as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Open-source AI models vulnerable to criminal misuse, researchers warn

2026-01-30
Rappler
Why's our monitor labelling this an incident or hazard?
The event involves AI systems explicitly (open-source LLMs) whose misuse has directly led to harms including scams, fraud, hate speech, harassment, and child sexual abuse material dissemination. The researchers observed actual deployments facilitating these harms, not just potential risks. The harms fall under violations of rights and harm to communities, meeting the criteria for an AI Incident. The article does not merely warn about potential misuse but documents ongoing criminal activities enabled by AI, confirming realized harm rather than just plausible future harm or complementary information.