Skip to content

Add Orca AI Incident Archive to CVE Databases & Trackers - #5

Open
xizhuomengcontin wants to merge 1 commit into
7WaySecurity:mainfrom
xizhuomengcontin:add-orca-ai-incident-archive
Open

xizhuomengcontin wants to merge 1 commit into
7WaySecurity:mainfrom
xizhuomengcontin:add-orca-ai-incident-archive

Conversation

@xizhuomengcontin

Copy link
Copy Markdown

Adds one row to the CVE Databases & Trackers table in resources/RESOURCES.md, after the existing rows and in the same three-column format. Happy for it to move to another table if you'd rather keep that block as the v1.2.0 snapshot.

Orca AI Incident Archive is an open database of real-world AI agent security events from January 2025 on. It sits next to Vulnerable MCP Database as a tracker. Many of the exposures this repo hunts for have dated records there, including ClawHavoc, OpenClaw ClawJacked (CVE-2026-25253) and the MCPwn nginx-ui exploitation. Each record is source-linked, graded for source quality, and marked with whether there was a confirmed victim. It contains no exploit code, credentials or PII. JSON/CSV exports, CC BY 4.0.

Caveats: the repository is new (created 2026-09-16) and has few stars. Classification is the editors' judgement, not official findings. Disclosure: I'm on the team that maintains it.

🤖 Generated with Claude Code

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant