{"id":10532,"date":"2026-02-10T10:03:41","date_gmt":"2026-02-10T10:03:41","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2026\/02\/10\/ai-chat-app-exposes-300-million-messages-from-25-million-users\/"},"modified":"2026-02-10T10:03:41","modified_gmt":"2026-02-10T10:03:41","slug":"ai-chat-app-exposes-300-million-messages-from-25-million-users","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2026\/02\/10\/ai-chat-app-exposes-300-million-messages-from-25-million-users\/","title":{"rendered":"AI Chat App Exposes 300 Million Messages from 25 Million Users"},"content":{"rendered":"<p>    AI Chat App Exposes 300 Million Messages from 25 Million Users<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>The popular mobile application \u201cChat &amp; Ask AI\u201d has inadvertently exposed hundreds of millions of private user conversations.<\/p>\n<p>The app, which boasts over 50 million users across the <a href=\"https:\/\/cybersecuritynews.com\/tiktok-stopped-working-for-us-users\/\" target=\"_blank\" rel=\"noreferrer noopener\">Google Play and Apple App stores<\/a>, failed to secure its backend database, allowing unauthorized access to sensitive user data.<\/p>\n<p><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">The leak stemmed from a misconfiguration <span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">on\u00a0<a href=\"https:\/\/cybersecuritynews.com\/numerous-applications-using-googles-firebase-platform\/\" target=\"_blank\" rel=\"noopener\">the Google Firebase platform, which<\/a><\/span><a href=\"https:\/\/cybersecuritynews.com\/numerous-applications-using-googles-firebase-platform\/\" target=\"_blank\" rel=\"noopener\"> developers<\/a>\u00a0use to build<\/span> mobile apps. While Firebase is a standard tool, it requires careful setup to ensure security.<\/p>\n<p>In this case, the settings were left in a default state that allowed anyone to designate themselves as an \u201cauthenticated\u201d user. This simple loophole granted access to the app\u2019s backend storage.<\/p>\n<p>The scale of the leak is massive. The researcher reported access to approximately 300 million messages belonging to more than 25 million users.<\/p>\n<p><a href=\"https:\/\/www.404media.co\/massive-ai-chat-app-leaked-millions-of-users-private-conversations\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">According to 404media reports<\/a>, the exposed database contained comprehensive logs of user activity, including: Full histories of conversations with the AI. Timestamps of when chats occurred.<\/p>\n<p>Custom names users gave to their AI companions. Specific configurations and the type of AI model used (such as ChatGPT, Claude, or Gemini). The content of these messages highlights the severe privacy implications of the breach.<\/p>\n<p>An analysis of a sample data set comprising 60,000 users and one million messages revealed deeply personal and potentially dangerous inquiries.<\/p>\n<p>Users had asked the AI for instructions on how to manufacture illegal drugs like methamphetamine, how to hack other applications, and, most disturbingly, advice on suicide and writing suicide notes.<\/p>\n<p>\u201cChat &amp; Ask AI\u201d functions as a \u201cwrapper\u201d app. This means it doesn\u2019t run its own AI brain; instead, it connects users to powerful models from major companies like OpenAI, Google, and Anthropic.<\/p>\n<p>While the underlying AI models (such as ChatGPT) were not compromised, the wrapper app served as a weak link, storing conversations insecurely.<\/p>\n<p>Users are advised to be cautious about the personal information they share with third-party AI tools and to review app permissions and reputations carefully.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/ai-chat-app-exposes-messages\/\">AI Chat App Exposes 300 Million Messages from 25 Million Users<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Abinaya<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/ai-chat-app-exposes-messages\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>AI Chat App Exposes 300 Million Messages from 25 Million Users The popular mobile application \u201cChat &amp; Ask AI\u201d has inadvertently exposed hundreds of millions of private user conversations. The app, which boasts over 50 million users across the Google Play and Apple App stores, failed to secure its backend database, allowing unauthorized access to [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[167,129,63,156],"tags":[130],"class_list":["post-10532","post","type-post","status-publish","format-standard","hentry","category-ai","category-cyber-security","category-cyber-security-news","category-data-breach","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/10532"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=10532"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/10532\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=10532"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=10532"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=10532"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}