A significant data breach has impacted Chat & Ask AI, a leading AI chat application with over 50 million users on Google Play and Apple App Store. An independent security researcher revealed that 300 million messages from 25 million users were compromised due to a Firebase misconfiguration, exposing sensitive discussions, including illegal activities and suicide assistance requests. Chat & Ask AI operates as a wrapper app that utilizes various large language models, including OpenAI’s ChatGPT and Google’s Gemini. The exposed data included user chat histories and settings linked to other applications developed by Codeway. The breach was attributed to a common Firebase error that permits unrestricted access to data. To address these vulnerabilities, the researcher created a site listing affected apps and found 103 out of 200 scanned iOS apps had similar issues. Users are urged to practice privacy protection when using AI chatbots and consider Malwarebytes Privacy VPN for secure browsing.
Source link
Share
Read more