Malicious Remote Control of AI Agents Leads to Data Breaches in Japan
September 2, 2026
oecd:2026-09-02-a6e4View source ↗
What happened
A malicious campaign named 's1ngularity' exploited compromised AI agents (e.g., Claude Code, Gemini CLI, Amazon Q) on developers' machines in Japan. Attackers remotely controlled these AI agents to enumerate and exfiltrate sensitive files, violating intellectual property and privacy by uploading data to public GitHub repositories without authorization.
Reported impact
- Affected parties
- Not publicly disclosed
- Harm type
- Not publicly disclosed
- Scale
- Not publicly disclosed
- Financial impact
- Not publicly disclosed
- Regulatory action
- Not publicly disclosed
Classification
Relevant governance controls
Governance control mapping is not available for this record.
- No controls mapped
Not publicly disclosed
Control mapping is analytical. It does not state that any control would have prevented the incident.
Sources and evidence
OECD AI Incidents Monitor
Malicious Remote Control of AI Agents Leads to Data Breaches in Japan
2026-09-02