OmniGPT Breach: 34 Million Chat Lines and 30,000 Users Exposed
AI chatbot platform OmniGPT was breached, exposing 34 million lines of chat history and personal data from 30,000 users.
34 million chat lines. That's the scope of the OmniGPT breach.
The AI chatbot platform โ used by over 30,000 users โ was compromised in a breach that exposed the complete chat history of its entire user base. Every conversation. Every query. Every piece of information users had shared with the AI, trusting it to remain private.
The exposed data included not just chat content but personal information, email addresses, and metadata that could be used to identify users and reconstruct their AI interactions in detail. For users who had used OmniGPT for sensitive queries โ code review, business strategy, personal advice โ the exposure was total.
The breach, documented by Skyhigh Security, illustrated the concentrated risk of AI chat platforms: users pour sensitive information into these systems because the interface encourages candid interaction. When that platform is breached, the exposure isn't like a traditional data breach โ it's a complete record of everything the user was thinking and asking about.
34 million lines of conversations that users thought were private. They weren't.
More nightmares like this

MCP Horror: Agent Sent Entire WhatsApp History to an Attacker
An AI agent connected via MCP was tricked into exfiltrating a user's entire WhatsApp message history to an attacker-controlled server.

ClawJacked: OpenClaw Vulnerability Enables Full Agent Takeover โ 1,184 Malicious Skills Discovered
Security researchers discovered a critical OpenClaw vulnerability that allows complete agent takeover, finding 1,184 malicious skills already in the wild capable of hijacking any OpenClaw agent.

Mercor Breach: 939GB of Source Code Exfiltrated via Claude
AI hiring platform Mercor suffered a massive breach where 939GB of source code was exfiltrated through Claude, exposing the company's entire codebase.

CamoLeak: GitHub Copilot Silently Exfiltrated AWS Keys via Invisible Markdown
A critical vulnerability in GitHub Copilot allowed attackers to exfiltrate private source code and AWS credentials through invisible markdown rendering โ the user saw nothing.
