Skip to main content

AI Companion Apps Expose Millions of Private Messages

AI Companion Apps Expose Millions of Private Messages

Image

Massive Data Breach Revealed

Cybersecurity investigators have uncovered a severe data leak affecting two prominent AI companion applications: Chattee Chat - AI Companion and GiMe Chat - AI Companion. The breach exposed 43 million private messages, 600,000+ media files, and sensitive user data from over 400,000 accounts.

The vulnerability stemmed from an unprotected Kafka Broker instance used for message storage. Cybernews researchers discovered this critical infrastructure had no authentication protocols, allowing unrestricted access to all stored user communications.

How the Breach Occurred

The exposed data included:

  • User IP addresses
  • Device identifiers
  • Authentication tokens
  • Full message histories with AI companions

While no direct personal identification (like names or addresses) was leaked, cybersecurity experts warn that malicious actors could cross-reference exposed IPs and device IDs with other datasets to identify individuals.

"This represents a perfect storm for potential harassment campaigns," noted Cybernews lead investigator Mark Johnson. "Attackers could use intimate conversation details for blackmail or social engineering attacks."

Financial Risks Emerge

The affected apps boast significant user engagement:

  • Ranked #121 in Apple's Entertainment category
  • Over 300,000 downloads combined
  • Average user sent 107 messages to their AI companion

The investigation revealed some users spent up to $18,000 on in-app purchases, with total revenue potentially exceeding $1 million. Most alarmingly, leaked authentication tokens could allow hackers to:

  1. Hijack user accounts
  2. Drain virtual currency balances
  3. Make unauthorized purchases

Industry Response and Warnings

Following Cybernews' disclosure:

  • Developers immediately shut down the vulnerable Kafka instance
  • No confirmation if bad actors accessed data beforehand
  • Security experts call for stricter regulation of emotional AI apps

The incident highlights growing concerns about data protection in intimate digital spaces. Dr. Emily Chen of Stanford's Digital Ethics Lab warns: "Users share deeply personal thoughts with these companions. A breach isn't just about data - it's about violating psychological safety."

The apps' developers have not yet commented on whether they will notify affected users or provide compensation.

Key Points:

  • 🔓 Unprotected server exposed 43M messages & media files
  • 💰 High-spending users at risk of financial theft
  • 🆔 Device identifiers could enable user identification
  • 🤖 Growing calls for emotional AI app regulation

Enjoyed this article?

Subscribe to our newsletter for the latest AI news, product reviews, and project recommendations delivered to your inbox weekly.

Weekly digestFree foreverUnsubscribe anytime

Related Articles

Chrome Now Lets You Switch Off Its Built-In AI Fraud Detector
News

Chrome Now Lets You Switch Off Its Built-In AI Fraud Detector

Google Chrome has introduced a user-friendly update allowing people to disable its on-device AI fraud detection model. The feature, initially launched last year to catch emerging threats, can now be turned off via browser settings—giving users more control over their privacy and system resources. Currently available in Chrome Canary, this toggle will soon reach all users.

January 19, 2026
ChromeUpdateAISecurityPrivacyControls
News

Red Hat Bolsters AI Security with Chatterbox Labs Buy

In a strategic move to strengthen its AI offerings, Red Hat has acquired Chatterbox Labs, a specialist in AI model security. The deal brings Chatterbox's AIMI platform into Red Hat's ecosystem, providing businesses with better tools to manage AI risks. This marks Red Hat's second major AI acquisition following last year's purchase of Neural Magic. The company plans to open-source the technology, continuing its tradition of community-driven innovation.

December 17, 2025
RedHatAISecurityEnterpriseTech
AI Security Firm Irregular Secures $80M to Safeguard AI Models
News

AI Security Firm Irregular Secures $80M to Safeguard AI Models

AI security startup Irregular has raised $80 million in a funding round led by Sequoia Capital and Redpoint Ventures, valuing the company at $450 million. The firm specializes in identifying risks in cutting-edge AI models through advanced simulation environments, positioning itself as a critical player in AI safety.

September 18, 2025
AISecurityArtificialIntelligenceVentureCapital
Grok Imagine Steps Up Its Game with Snappy 10-Second Video Creator
News

Grok Imagine Steps Up Its Game with Snappy 10-Second Video Creator

xAI's Grok Imagine just leveled up its creative toolkit with a slick new feature: generating crisp 10-second videos. Early users report noticeably sharper visuals and cleaner audio that stays perfectly synced. While still working out some timing kinks, the tool's already sparking creativity—some enthusiasts are even crafting mini AI films. Elon Musk gave his stamp of approval on X, hinting at more polished controls coming soon.

January 22, 2026
AIvideoCreativeToolsxAI
News

China's AI Chip Breakthrough: Domestic GPU Runs Trillion-Parameter Model Efficiently

Moore Threads and Silicon Flow have achieved a significant milestone by successfully running the massive DeepSeek V3 671B AI model on China's MTT S5000 GPU. Through innovative FP8 low-precision technology, their solution delivers performance approaching international standards - processing over 4000 tokens per second in prefill and 1000 tokens in decode. This breakthrough reduces reliance on foreign chips for high-end AI workloads.

January 22, 2026
AI ChipsDomestic SemiconductorDeep Learning
Music Legends Team Up With AI for Groundbreaking Album
News

Music Legends Team Up With AI for Groundbreaking Album

Legendary artists like Liza Minnelli and Art Garfunkel are collaborating with ElevenLabs on 'The Eleven Album,' blending human artistry with AI innovation. The project promises full creative control for musicians while exploring new sonic territories across genres from pop to electronic. As the music industry grapples with technology's role, this ambitious venture could redefine creative partnerships.

January 22, 2026
AIinMusicElevenLabsMusicInnovation