AI Security Incident
Evidence indicates that the affected technology is affected by a security issue.
What Happened
Evidence indicates that the affected technology is affected by a security issue.
Why This Matters
Current evidence identifies a security issue involving the affected technology, but does not yet support a more specific impact claim.
Recommended Action
No confirmed vendor remediation is available in the current evidence. Confirm whether the affected technology is present in your environment and review the affected configuration.
Exposure
Jul 09, 2025 05:30
Jul 09, 2025 05:30
Exploitation status: UNKNOWN
Primary entities:
Timeline
-
Incident first seen
Jul 09, 2025 05:30BugSkan first recorded this incident.
-
McDonaldâs AI Hiring Bot Exposed Millions of Applicantsâ Data to Hackers Who Tried the Password â123456â - WIRED
Jul 09, 2025 05:30wired.com · Data Leak
Sources
wired.com · Jul 09, 2025 05:30
The McHire AI hiring bot, developed by Paradox.ai, suffered from basic security misconfigurations, specifically allowing unauthorized access via easily guessable weak passwords like '123456'. This critical flaw resulted in the data exposure of personal information, résumés, and contact details for tens of millions of McDonald's job applicants.
Open publisher sourceWatchlist Match
Create an account to see which incidents overlap with the technologies you monitor.