Subj : AI wingman app leaks 160,
To   : All
From : Mike Powell
Date : Wed Jul 16 2025 10:18 am

AI wingman app leaks 160,000 screenshots of private chats - here's what we
know

Date:
Tue, 15 Jul 2025 14:39:00 +0000

Description:
Flirty chats have been exposed after leak at AI dating advice chatbot.

FULL STORY

Its hard to imagine a more mortifyingly embarrassing scenario than your own
private flirty chats being exposed online, except, perhaps, being caught
sending these messages off for analysis by an AI app.

Researchers at Cybernews have discovered a breach at "FlirtAI - Get Rizz &
Dates" (yes, that is really what its called) which has leaked over 160,000
chat screenshots from users through an unprotected cloud storage bucket.

Users of this app feed screenshots of their private conversations into the
application to get tailored responses designed to help the user flirt or
escalate the conversation.

More than just embarrassing

Unsurprisingly, but worryingly nonetheless, this app seems to have been
primarily used by teenagers.

Because of the configuration of the app, those primarily at risk are not
those who have sent the chats in, but the person theyre talking to -
presumably other teenagers who are completely unaware that their conversation
has been leaked, and probably unaware that this app even exists.

Whilst weve seen more dangerous personal data leaked by other AI chatbots
like SSNs and financial information, the nature of this chatbot and its user
base represents a different kind of harm.

As an adult, Im not sure how well Id cope with my private chats being exposed
online, so for an already vulnerable teenager this could be devastating.

The fact that teenagers used this app may increase the severity of a
potential data breach as data from minors is considered more sensitive, and
could be subject to more restrictions regarding potential data uses and
collection and processing practices," Cybernews researchers confirmed.

The app does state that users are only allowed to upload a screenshot when
you have obtained the necessary approvals from all users/humans and their
information mentioned in the screenshot.

But, since this would negate the point of the chatbot, it seems pretty
unlikely that this is followed.

Those exposed in this breach could be at a heightened risk of social
engineering attacks like phishing or, given that the app encourages users to
share their target's dating profile, there could be a risk of impersonation
attacks.

======================================================================
Link to news story:
https://www.techradar.com/pro/security/ai-dating-advice-chatbot-leaks-160k-scr
eenshots-of-private-chats

$$
--- SBBSecho 3.28-Linux
* Origin: capitolcityonline.net * Telnet/SSH:2022/HTTP (1:2320/105)