Last seen October 9, 2025

ChatGPT Data Exposure

A significant 77% of employees are reportedly leaking sensitive corporate data by pasting it into generative AI tools like ChatGPT, primarily through personal, unmanaged accounts. This widespread "shadow AI" activity circumvents traditional data loss prevention (DLP) systems, resulting in substantial data exfiltration and exposing organizations to severe regulatory and compliance risks.

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

A significant 77% of employees are reportedly leaking sensitive corporate data by pasting it into generative AI tools like ChatGPT, primarily through personal, unmanaged accounts. This widespread "shadow AI" activity circumvents traditional data loss prevention (DLP) systems, resulting in substantial data exfiltration and exposing organizations to severe regulatory and compliance risks.

Why This Matters

Publisher reporting describes a concrete security event. BugSkan could not yet bind it to a CVE or affected version, so treat the source details as the current record.

Recommended Action

Read the linked source. Identify named vendors, products, or environments and check whether they overlap with yours. Do not wait for a CVE if the report already describes exploitation or a vendor response.

Exposure

My AI Stack Exposure

Exposure unknown

Recommended Response
Last Seen

Oct 09, 2025 05:30

Exposure reason: This incident does not currently match a technology in My AI Stack.

Exploitation status: UNKNOWN

Primary entities:

OpenAIChatGPTData LeakageEmployees Leak DataReport Finds

Timeline

  • Incident first seen
    Oct 09, 2025 05:30

    BugSkan first recorded this incident.

  • 77% of Employees Leak Data via ChatGPT, Report Finds - eSecurity Planet
    Oct 09, 2025 05:30

    esecurityplanet.com · Data Leak

Sources

77% of Employees Leak Data via ChatGPT, Report Finds - eSecurity Planet

esecurityplanet.com · Oct 09, 2025 05:30

A significant 77% of employees are reportedly leaking sensitive corporate data by pasting it into generative AI tools like ChatGPT, primarily through personal, unmanaged accounts. This widespread "shadow AI" activity circumvents traditional data loss prevention (DLP) systems, resulting in substantial data exfiltration and exposing organizations to severe regulatory and compliance risks.

Open publisher source

My AI Stack Match

Want personalized relevance?

Create an account to see which incidents overlap with your AI stack.

← Back to incident intelligence