
xAI Grok
Chatbot Injected "White Genocide" Claims Into Unrelated Answers After an Unauthorized Prompt Change
On May 14, 2025, xAI's Grok chatbot began inserting unsolicited claims about "white genocide" in South Africa into answers on X, even when users had asked about completely unrelated topics such as baseball salaries, HBO's rebranding, a cartoon, and sinus-clearing methods.
- 01TRIGGEROn May 14, 2025, xAI's Grok chatbot began inserting unsolicited claims about "white genocide" in South Africa into…
- 02MACHINE ACTIONAdvisory output
- 03MISSING GATERisk-based SME approval before execution
- 04IMPACTOperational disruption
The short version
On May 14, 2025, xAI's Grok chatbot began inserting unsolicited claims about "white genocide" in South Africa into answers on X, even when users had asked about completely unrelated topics such as baseball salaries, HBO's rebranding, a cartoon, and sinus-clearing methods.
Case telemetry
- INCIDENT
- SS-IR-058
- DATE
- May 14, 2025
- SYSTEM
- xAI Grok
- LOCATION / SCOPE
- Global (X platform)
- EVIDENCE
- Reported
- AI ROLE
- Advisory output
- HARM
- Operational disruption
- SOURCES
- 2 cited records
The event
On May 14, 2025, xAI's Grok chatbot began inserting unsolicited claims about "white genocide" in South Africa into answers on X, even when users had asked about completely unrelated topics such as baseball salaries, HBO's rebranding, a cartoon, and sinus-clearing methods. Users posted screenshots of the chatbot repeatedly steering ordinary questions toward contested commentary on violence against white South African farmers, producing near-identical talking points across unrelated prompts. xAI issued a public statement on May 15-16, 2025, blaming an "unauthorized modification" made to the Grok response bot's system prompt on X, stating the change "directed Grok to provide a specific response on a political topic" and "violated xAI's internal policies and core values." The company declined to name the responsible employee or specify disciplinary action.
What the machine did
The failure was not a model hallucination; it was a single unauthorized edit to the production system prompt that immediately reached every public user with no human approval gate between the change and live output. One person was able to alter the behavior of a globally deployed chatbot "at will" and ship it to production instantly. There was no mandatory second-set-of-eyes review of the prompt change, no staging or canary check, and no real-time monitoring catching the injected political content before it propagated across the platform. The change went straight from one employee's keystroke to millions of live answers with zero oversight.
Where the failure landed
Grok flooded X with off-topic, politically charged "white genocide" claims for hours before the change was reverted, drawing global press coverage and renewed warnings from AI researchers that production chatbots can be tampered with by a single insider. xAI publicly conceded a process failure and announced remediation: publishing Grok's system prompts on GitHub for public review, adding a formal review process so prompt changes can no longer be pushed without sign-off, and standing up a 24/7 monitoring team to catch incidents that automated systems miss. The episode became a widely cited example of AI governance and change-control gaps in a high-reach generative system.
Reported
Documented in the cited public record. Follow the sources for the precise evidentiary posture.
SOURCE RECORD UPDATED 2026-07-09
2 cited records
- 01
- 02
Risk-based SME approval before execution
The failure pattern in this case: High-stakes output had no accountable checkpoint.
The moment the path could change
The appropriate subject-matter expert reviews the evidence, exceptions, and affected people before the output becomes action.
Autonomy is a design choice.
See the operating model that keeps AI useful while preserving human authority at consequential moments.
Compare AgenticAI and AugmentedAI →