5 Sources
[1]
App Store apps are exposing data from millions of users - 9to5Mac
An effort led by security research lab CovertLabs is actively uncovering troves of (mostly) AI-related App Store apps that leak and expose user data, including names, emails, and chat history. Here are the details. It's the slopocalypse. OSINT nerd @Harrris0n has created "Firehound". He (or
[2]
These iPhone AI apps expose your data, and they're all over the App Store
Users should check Firehound before downloading AI apps to verify security, while developers can use the tool for responsible disclosure and vulnerability fixes. AI apps are everywhere, and they sure seem like they can be incredibly useful, don't they? However, users need to be mindful of AI slop,
[3]
Firehound ranks apps that leak your data. These are the 10 worst.
You should perhaps double-check the apps you use -- especially if you're into AI. A new project called Firehound from security firm CovertLabs tracks the apps that leak the most data, and the Top 10 was rife with AI apps. Here's a screenshot of the data from Firehound's website. As you can see,
[4]
Welcome to the 'AI slop' security crisis - these 198 iOS apps were found leaking private chats and user locations
* Security researchers have discovered scores of mobile apps leaking data * Private messages of over 20 million people are exposed * The affected apps have been grouped under the Firehound name Apple often uses the security of its App Store as a reason why regulators shouldn't force it to open
[5]
These highly-rated apps are leaking your data -- find out if you're affected
When not writing, Dave enjoys spending time with his family, running, playing the guitar, camping, and serving in his community. His favorite place is the Blue Ridge Mountains, and one day he hopes to retire there (hopefully his fear of heights will have retired by then, too!). * Nearly 200 App
Share
Copy Link
Security firm CovertLabs has uncovered a widespread security crisis affecting nearly 200 apps on Apple's App Store, with AI apps dominating the list of offenders. The Firehound project reveals that Chat & Ask AI by Codeway alone has exposed over 406 million records from 18 million users, including chat histories, email addresses, and phone numbers—all accessible to anyone who knows where to look.
Security firm CovertLabs security firm has launched the Firehound project, a public registry that tracks iPhone AI applications leaking private user data across Apple's App Store. As of the initial disclosure, the registry has identified 198 iOS apps exposing sensitive information, with 196 of them actively leaking user data through improperly secured databases and cloud storage systems
1
. The discovery raises serious questions about App Store security and Apple's vetting process, which the company frequently cites as justification for maintaining control over its app ecosystem4
.Source: MakeUseOf
The Chat & Ask AI app by Codeway leads Firehound's rankings for both most files exposed and most records exposed, with more than 406 million records from over 18 million users now accessible
1
. This includes entire chat histories totaling 380 million messages, along with user phone numbers and email addresses4
. Security researchers describe the situation as "as bad as it gets," particularly given the sensitive nature of information users typically share with AI chatbot security risks5
.
Source: Macworld
The top offenders in the Firehound registry reveal a troubling pattern: AI apps overwhelmingly dominate the list of applications with sensitive user data exposure. Following Chat & Ask AI, GenZArt has exposed 18 million records, YPT - Study Group has leaked information from over 13 million records, Adult Coloring Book - Pigment accounts for 7 million records, and Kmstry has exposed another 7 million records
5
. These five apps alone represent more than 20 million unique users whose personal information sits exposed to potential bad actors.The prevalence of AI apps among the worst offenders likely stems from developers rushing to capitalize on the AI boom, potentially cutting corners on security implementations to get products to market quickly
4
. This is particularly concerning because users tend to provide AI apps with highly personal information about mental health, relationships, and finances—data that becomes significantly more dangerous when tied to identifiable information like email addresses and phone numbers5
.Most apps listed on Firehound expose data through improperly secured databases or cloud storage configurations, with many listings disclosing the underlying data schemas and record counts
1
. The exposed records include chat histories, user names, email addresses, phone numbers, AI tokens, user IDs, and in some cases, user locations3
4
.
Source: Mashable
While there's no indication the leaks are intentional or that apps are actively sending data to third parties, the information sits accessible to anyone with knowledge of where to look
5
. The Firehound project intentionally limits public access to the most sensitive scan results, requiring users to register and request restricted datasets. Priority access goes to journalists, law enforcement, and security professionals who undergo manual review1
.Related Stories
CovertLabs has implemented a responsible disclosure framework through Firehound, allowing developers to contact the firm, learn how to fix security vulnerabilities, and have their apps removed from the registry once issues are resolved
2
. Security researchers behind the project, including OSINT specialist @Harrris0n, have already seen some progress. According to a January 20 post, the Chat & Ask AI app's "problem has been addressed, and the vulnerability no longer exists"2
.However, questions remain about the timeline of fixes reaching users. The App Store showed Chat & Ask AI at version 3.3.8, released on January 7, while Firehound's registry entry for the app is dated January 15, suggesting the fixed version may not have been released at the time of the registry update
2
.Users should immediately stop using any apps listed in the Firehound registry and delete their data from these applications if possible
5
. Those who have used affected apps should change passwords for any accounts sharing the same email address and monitor their accounts for suspicious activity4
.Before downloading new AI apps, users can check Firehound to verify an app's security status
2
. The incident serves as a critical reminder that users must remain mindful of the platforms they use and the information they share, particularly with AI chatbots where the barrier to entry for developers has become increasingly low1
. The data privacy risks extend beyond just AI apps—affected categories also include image generators, photo animators, and study applications2
.This widespread exposure of user data highlights the tension between rapid AI development and developer security practices, raising urgent questions about how such vulnerable apps bypass Apple's review process and what measures will prevent similar incidents as AI continues to expand across mobile platforms.
Summarized by
Navi
[4]
20 Feb 2026•Technology

05 Feb 2025•Technology

16 Jul 2025•Technology

1
Technology

2
Science and Research

3
Technology
