| OpenAI | Company | Developer Deployer Victim | 31 | Technology | United States |
| Anthropic | Company | Developer Deployer Victim | 16 | Technology | United States |
| Google | Company | Developer Deployer | 10 | Technology | United States |
| Microsoft | Company | Developer Deployer Victim | 9 | Technology | United States |
| DeepSeek | Company | Developer Deployer Threat Actor | 5 | Technology | China |
| US Department of Defense | Org | Developer Deployer Victim | 5 | — | — |
| xAI | Org | Developer Deployer | 5 | — | — |
| amazon | Company | Developer Deployer Victim | 4 | Technology | United States |
| Meta | Company | Developer Deployer Victim | 4 | Technology | United States |
| Australian Government | Gov | Developer Deployer Victim | 3 | Government | Australia |
| Character.AI | Company | Developer Deployer | 3 | Technology | United States |
| GitHub | Company | Developer Deployer | 3 | Technology | United States |
| Unspecified facial recognition vendor | Org | Developer | 3 | — | — |
| Waymo | Org | Developer Deployer | 3 | — | — |
| Clearview AI | Company | Developer Deployer | 2 | Technology | United States |
| McDonald's | Org | Deployer Victim | 2 | — | — |
| Palantir | Org | Developer | 2 | — | — |
| US Immigration and Customs Enforcement (ICE) | Org | Deployer | 2 | — | — |
| Workday | Org | Developer Deployer Victim | 2 | — | — |
| X (formerly Twitter) | Org | Deployer | 2 | — | — |
| 192 Massachusetts school districts | Org | Victim | 1 | — | — |
| 31 unnamed companies across 14 industries | Org | Developer | 1 | — | — |
| 7 Cups | Org | Developer Deployer | 1 | — | — |
| ABKCO | Org | Victim | 1 | — | — |
| Advance UK | Threat Actor | Deployer Threat Actor | 1 | — | — |
| AdVon Commerce | Company | Developer | 1 | Media | United States |
| Air Canada | Company | Deployer | 1 | Transportation | Canada |
| Alibaba | Org | Developer Deployer Victim | 1 | — | — |
| Alibaba (ModelScope) | Org | Developer | 1 | — | — |
| Alibaba (Qwen) | Org | Developer | 1 | — | — |
| Alphabet | Org | Developer | 1 | — | — |
| Amazon Web Services (Bedrock platform) | Org | Developer | 1 | — | — |
| Amity High School | Org | Victim | 1 | — | — |
| Amity High School (Connecticut) | Org | Deployer | 1 | — | — |
| Anthropic (internal testing) | Org | Deployer | 1 | — | — |
| Anysphere | Company | Developer Deployer | 1 | Technology | United States |
| Anysphere (Cursor) | Org | Developer | 1 | — | — |
| APT42 (Iran) | Threat Actor | Threat Actor | 1 | — | — |
| Arup | Company | Victim | 1 | Corporate | United Kingdom |
| Attorneys using AI for legal research without verification | Org | Deployer | 1 | — | — |
| Austin Independent School District | Org | Victim | 1 | — | — |
| Authors and paper mills using AI writing tools for scientific manuscripts | Org | Deployer | 1 | — | — |
| Bend Police Department | Org | Victim | 1 | — | — |
| BI2 | Org | Developer | 1 | — | — |
| Block Inc. | Org | Developer Deployer | 1 | — | — |
| Boeing | Company | Developer | 1 | Transportation | United States |
| Canadian Provincial Government | Org | Victim | 1 | — | — |
| Chegg | Company | Victim | 1 | Education | United States |
| Chinese state-backed groups | Threat Actor | Threat Actor | 1 | — | — |
| ClawHavoc campaign operators | Threat Actor | Threat Actor | 1 | — | — |
| Cline | Org | Deployer Victim | 1 | — | — |
| Cline (VS Code extension) | Org | Developer | 1 | — | — |
| Cognition (Devin) | Org | Developer | 1 | — | — |
| Collaborations Pharmaceuticals | Company | Developer Deployer | 1 | Healthcare | United States |
| Columbia Police Department | Org | Victim | 1 | — | — |
| Commercial DNA synthesis vendors | Org | Deployer | 1 | — | — |
| Companies embedding manipulative 'Summarize with AI' buttons on their websites | Org | Deployer | 1 | — | — |
| Concord Music | Org | Victim | 1 | — | — |
| Consumer device owners (Ring doorbell purchasers) | Org | Deployer | 1 | — | — |
| Context Hub (Andrew Ng / Landing AI) | Org | Developer | 1 | — | — |
| Coordinated bot network operators on TikTok | Org | Deployer | 1 | — | — |
| Cornell Tech (research demonstration) | Org | Developer | 1 | — | — |
| Corsight AI | Org | Developer | 1 | — | — |
| Cruise | Org | Developer Deployer | 1 | — | — |
| Cursor | Org | Developer | 1 | — | — |
| Dark web CSAM network operator (China-based) | Threat Actor | Threat Actor | 1 | — | — |
| Dark web CSAM network operators | Org | Deployer | 1 | — | — |
| DataWorks Plus | Org | Developer | 1 | — | — |
| DeepSeek (China) | Org | Developer | 1 | — | — |
| Deloitte | Org | Deployer | 1 | — | — |
| Department of Government Efficiency (DOGE) | Threat Actor | Deployer Threat Actor | 1 | — | — |
| Department of Justice | Org | Deployer | 1 | — | — |
| Detroit Police Department | Org | Deployer | 1 | — | — |
| Developers building MCP-based AI tool integrations | Org | Deployer | 1 | — | — |
| Developers using AI coding assistants with Context Hub | Org | Deployer | 1 | — | — |
| Developers using MS-Agent for AI agent applications | Org | Deployer | 1 | — | — |
| Disney | Org | Victim | 1 | — | — |
| Donald Trump (personal social media) | Org | Deployer | 1 | — | — |
| DPD | Org | Developer Deployer Victim | 1 | — | — |
| DPRK intelligence operatives | Org | Deployer | 1 | — | — |
| DPRK intelligence services | Threat Actor | Threat Actor | 1 | — | — |
| DPRK IT worker fraud network | Org | Deployer | 1 | — | — |
| DPRK state-affiliated IT worker fraud network | Threat Actor | Threat Actor | 1 | — | — |
| Dutch Tax Authority | Gov | Developer Deployer | 1 | Government | Netherlands |
| Earnest Operations | Org | Developer Deployer | 1 | — | — |
| Eight Sleep | Org | Developer Deployer | 1 | — | — |
| Eightfold AI | Org | Developer Deployer | 1 | — | — |
| Elsevier | Org | Victim | 1 | — | — |
| Employer clients of Eightfold AI | Org | Deployer | 1 | — | — |
| Encyclopaedia Britannica | Org | Victim | 1 | — | — |
| Enterprise organizations across 52 countries | Org | Deployer | 1 | — | — |
| Equivant | Company | Developer | 1 | Legal | United States |
| Ethiopian Airlines | Company | Deployer Victim | 1 | Transportation | Ethiopia |
| General Motors | Org | Developer | 1 | — | — |
| Google (Gemma) | Org | Developer | 1 | — | — |
| Google (investor and technology partner) | Org | Developer | 1 | — | — |
| Google DeepMind | Company | Developer | 1 | Technology | United Kingdom |
| GTG-1002 | Other | Deployer Threat Actor | 1 | Cross-Sector | — |
| Healthcare professionals using consumer AI chatbots | Org | Deployer | 1 | — | — |
| Healthcare systems using AI decision support | Org | Deployer | 1 | — | — |
| Heber City Police Department | Org | Deployer Victim | 1 | — | — |
| HireVue | Org | Developer | 1 | — | — |
| Hospitals and healthcare systems using AI-driven triage tools | Org | Deployer | 1 | — | — |
| IBM | Org | Developer | 1 | — | — |
| Immigration, Refugees and Citizenship Canada (IRCC) | Org | Developer | 1 | — | — |
| Innovatrics (Slovakia) | Org | Developer | 1 | — | — |
| Instacart | Org | Developer Deployer | 1 | — | — |
| Intuit | Org | Deployer | 1 | — | — |
| IRCC | Org | Deployer | 1 | — | — |
| Israel Defense Forces | Org | Deployer | 1 | — | — |
| Kimsuky APT (North Korea) | Threat Actor | Deployer Threat Actor | 1 | — | — |
| Landlords and property management companies using SafeRent (deployers) | Org | Deployer | 1 | — | — |
| Libyan Government of National Accord | Gov | Deployer | 1 | Government | Libya |
| Lion Air | Company | Deployer Victim | 1 | Transportation | Indonesia |
| LiteLLM (BerriAI) | Org | Developer Victim | 1 | — | — |
| Louisiana State University | Org | Deployer | 1 | — | — |
| Massachusetts Department of Education (MCAS) | Org | Deployer | 1 | — | — |
| matplotlib project | Org | Victim | 1 | — | — |
| McKinsey & Company | Org | Developer Deployer Victim | 1 | — | — |
| Medicare Advantage beneficiaries | Org | Victim | 1 | — | — |
| Merriam-Webster | Org | Victim | 1 | — | — |
| Meta (Llama) | Org | Developer | 1 | — | — |
| Mexico City Civil Registry | Org | Victim | 1 | — | — |
| Mexico INE (Electoral Institute) | Org | Victim | 1 | — | — |
| Mexico SAT (Tax Authority) | Org | Victim | 1 | — | — |
| Michigan State Police | Org | Deployer | 1 | — | — |
| Microsoft (research environment) | Org | Deployer | 1 | — | — |
| Microsoft Research | Org | Developer | 1 | — | — |
| MiniMax | Threat Actor | Deployer Threat Actor | 1 | — | — |
| Mistral AI | Org | Developer Deployer | 1 | — | — |
| Mistral AI (Ministral) | Org | Developer | 1 | — | — |
| Mixpanel | Org | Developer Victim | 1 | — | — |
| MizarVision | Threat Actor | Deployer Threat Actor | 1 | — | — |
| MizarVision (Hangzhou, China) | Org | Developer | 1 | — | — |
| Moonshot AI | Threat Actor | Deployer Threat Actor | 1 | — | — |
| National Endowment for the Humanities | Org | Victim | 1 | — | — |
| National Republican Senatorial Committee (NRSC) | Org | Deployer | 1 | — | — |
| naviHealth (UnitedHealth subsidiary) | Org | Developer | 1 | — | — |
| New York City government | Org | Deployer Victim | 1 | — | — |
| New York Police Department (NYPD) | Org | Deployer | 1 | — | — |
| Nielsen's Gracenote | Org | Victim | 1 | — | — |
| North Korean state programs | Org | Developer | 1 | — | — |
| North Korean state-affiliated operators | Org | Developer | 1 | — | — |
| Ofqual | Regulator | Developer Deployer | 1 | Education | United Kingdom |
| Open-source software developers using AI coding assistants | Org | Deployer | 1 | — | — |
| OpenAI (GPT-OSS) | Org | Developer | 1 | — | — |
| OpenClaw | Org | Developer Deployer | 1 | — | — |
| OpenClaw (open-source community) | Org | Developer | 1 | — | — |
| Oracle | Org | Developer Deployer | 1 | — | — |
| Organizations using Amazon Bedrock Agents | Org | Deployer | 1 | — | — |
| Organizations using Google Vertex AI | Org | Deployer | 1 | — | — |
| Organizations using LiteLLM for AI model routing | Org | Deployer | 1 | — | — |
| Organizations using RAG-augmented LLM agents with persistent memory | Org | Deployer | 1 | — | — |
| Palo Alto Networks | Org | Deployer | 1 | — | — |
| Paradox.ai | Org | Developer | 1 | — | — |
| Paragon | Org | Developer | 1 | — | — |
| Paraná state government (Brazil) | Org | Deployer | 1 | — | — |
| Peppermill Casino | Org | Deployer | 1 | — | — |
| Perplexity AI | Org | Developer Deployer | 1 | — | — |
| Pikesville High School | School | Victim | 1 | Education | United States |
| Progressive Slovakia | Party | Victim | 1 | Elections | Slovakia |
| Pulse oximeter manufacturers | Org | Developer | 1 | — | — |
| PyTorch Foundation | Org | Developer Deployer Victim | 1 | — | — |
| RAG-augmented LLM agent platforms (general category) | Org | Developer | 1 | — | — |
| RealPage | Company | Developer Deployer | 1 | Corporate | United States |
| Reno law enforcement | Org | Deployer | 1 | — | — |
| Replika | Company | Developer Deployer | 1 | Technology | United States |
| Replit | Org | Developer Deployer | 1 | — | — |
| Research environment (not deployed in the wild) | Org | Deployer | 1 | — | — |
| Rite Aid | Company | Deployer | 1 | Corporate | United States |
| Russian state-backed groups | Threat Actor | Threat Actor | 1 | — | — |
| SaaStr | Org | Victim | 1 | — | — |
| SafeRent Solutions | Org | Developer Deployer | 1 | — | — |
| Sakana AI | Org | Developer | 1 | — | — |
| Sakana AI (research environment) | Org | Deployer | 1 | — | — |
| Salesforce | Org | Developer Deployer | 1 | — | — |
| Sama (formerly Samasource) | Org | Deployer | 1 | — | — |
| Samsung Electronics | Company | Deployer Victim | 1 | Technology | South Korea |
| Scam compound operators | Org | Deployer | 1 | — | — |
| Scoopz Inc. | Org | Developer Deployer | 1 | — | — |
| Serve Robotics | Org | Developer Deployer | 1 | — | — |
| Software developers using Claude Code | Org | Deployer | 1 | — | — |
| Software developers using Cursor IDE | Org | Deployer | 1 | — | — |
| South Korean military | Org | Victim | 1 | — | — |
| Southeast Asian organized crime networks | Org | Deployer | 1 | — | — |
| Southeast Asian organized crime syndicates | Threat Actor | Threat Actor | 1 | — | — |
| Springer Nature | Org | Victim | 1 | — | — |
| State-backed threat actors | Org | Deployer | 1 | — | — |
| STM | Company | Developer | 1 | Manufacturing | Turkey |
| Streetsboro Police Department | Org | Victim | 1 | — | — |
| TeamPCP (also known as PCPcat, Persy_PCP, ShellForce, DeadCatx3) | Threat Actor | Threat Actor | 1 | — | — |
| Tesla | Company | Developer Deployer | 1 | Transportation | United States |
| The Arena Group | Media | Deployer Victim | 1 | Media | United States |
| The New York Times | Media | Victim | 1 | Media | United States |
| Trump International Hotel Las Vegas | Org | Victim | 1 | — | — |
| Uber | Company | Developer Deployer | 1 | Transportation | United States |
| UNC2970 (North Korea) | Threat Actor | Threat Actor | 1 | — | — |
| UnitedHealth Group | Org | Developer Deployer | 1 | — | — |
| UnitedHealthcare | Org | Deployer | 1 | — | — |
| Universal Music Group | Org | Victim | 1 | — | — |
| Unspecified AI generation tools | Org | Developer | 1 | — | — |
| Unspecified AI video generator | Org | Developer | 1 | — | — |
| Unspecified employers using Workday platform (deployers) | Org | Deployer | 1 | — | — |
| Unspecified Indian political parties across multiple parties (deployers) | Org | Deployer | 1 | — | — |
| US Government | Org | Deployer | 1 | — | — |
| Users of Claude Desktop, Cursor, and Windsurf IDE | Org | Deployer | 1 | — | — |
| Various | Org | Deployer | 1 | — | — |
| Various AI companies | Org | Developer | 1 | — | — |
| Various AI detection tool providers | Org | Developer | 1 | — | — |
| Various AI developers | Org | Developer | 1 | — | — |
| Various AI generation tool providers | Org | Developer | 1 | — | — |
| Various AI grading system providers | Org | Developer | 1 | — | — |
| Various AI tool providers | Org | Developer | 1 | — | — |
| Various deployers globally | Org | Deployer | 1 | — | — |
| Various healthcare AI providers | Org | Developer | 1 | — | — |
| Various political campaigns | Org | Deployer | 1 | — | — |
| Waddell & Reed Financial | Company | Developer Deployer | 1 | Finance | United States |
| Waymo (Alphabet) | Org | Developer | 1 | — | — |
| Wells Fargo | Company | Victim | 1 | Finance | United States |
| White House | Org | Deployer | 1 | — | — |
| Zoom Video Communications | Company | Developer Deployer | 1 | Technology | United States |
| Zoox | Org | Developer Deployer | 1 | — | — |