AI News selected for Professionals and Decision Makers
AI Security And Privacy Updates

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

15:49 · June 30, 2026 · Hacker News AI Section

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

Researchers tested 444 AI chatbot apps for iPhone and found that 282 of them, nearly two-thirds, exposed paid AI access through their network traffic. In many cases, the path in was visible just by watching what the app sent: a plaintext API key, a reusable token, or a backend server that accepted requests with no key at all. Whoever grabs it can send model requests on the developer's account,

Summary

Researchers at Wake Forest University examined 444 AI chatbot apps on the US iOS App Store and found that 282 of them exposed credentials or unsecured endpoints in network traffic. The exposures took three main forms: plaintext API keys sent with requests, long-lived reusable tokens, and backend servers that accepted model calls without authentication. In 28 of the 54 plaintext-key cases the same traffic also revealed the app’s hidden system prompt.

The leaked material allows any observer to issue requests against the developer’s account with the corresponding provider, most often OpenAI but also at least nine other services. The practice, sometimes called LLMjacking, shifts inference costs directly to the account holder; one industry estimate placed the daily exposure of a single high-value key above $46,000. The affected apps spanned thirteen categories, with productivity titles the largest group and health-and-fitness titles showing the highest leak rate. Finance and medical apps recorded none. Most were small, yet one carried more than two million user ratings.

Three months after the researchers notified the developers, only 28 percent had demonstrably removed the exposure. Another 23 percent remained fully open; the remainder had gone offline or returned errors. Several token-based apps used expiration dates measured in decades or retained working tokens long after their nominal expiry. The study relied on passive traffic inspection with a purpose-built tool, LLMKeyLens, and required neither device jailbreaking nor binary analysis.

The authors note that the observed two-thirds rate is a lower bound, because many apps blocked interception and the sample covered only one storefront at one point in time. They recommend that developers route all model calls through an authenticated server rather than embed keys on the client, and they urge providers and Apple to flag client-side keys during documentation and review. Earlier Android-focused audits have documented the same pattern, indicating that the problem is not confined to one platform.

Why it matters

Directly addresses AI security risks from leaked credentials, actionable for Dutch teams auditing or building AI apps. Relevant to EU GDPR and upcoming AI Act compliance needs for privacy and access control.

More in this beat
ai-privacy-complianceconsumer-impactiosLLMjackingmodel-security-controlsopenaithreat-and-vulnerability-updates
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data

16:36 · August 20, 2026

New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data

This article highlights a critical data exfiltration vulnerability in LLMs via context injection, which is highly relevant for security professionals defending AI systems. Understanding this attack vector is essential for Dutch enterprises to ensure GDPR compliance and protect user privacy when deploying AI chatbots.

Relevance 85 · Audience 95

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

15:18 · July 21, 2026

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

This research provides crucial empirical data on the security risks of AI-assisted development, directly supporting the Dutch AI market's focus on secure, ethical, and transparent AI deployment. It offers actionable insights for Dutch researchers and CISOs to benchmark LLMs and implement necessary guardrails in enterprise software development.

Relevance 85 · Audience 90

Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs

17:30 · June 29, 2026

Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs

This article is highly relevant for security professionals as it demonstrates the practical application of AI models in discovering critical software vulnerabilities. It underscores the evolving landscape of AI-driven threat research and the immediate need for enterprises to patch affected Apple devices.

Relevance 85 · Audience 95

ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More

19:23 · August 20, 2026

ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More

The article provides crucial updates on privacy-enhancing technologies for AI that are vital for GDPR compliance in the Netherlands. It also alerts security professionals to emerging AI-driven threats, such as uncensored LLMs and AI models capable of autonomous vulnerability exploitation, which require immediate defensive consideration.

Relevance 85 · Audience 95

OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior

20:06 · August 19, 2026

OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior

This article is highly relevant for security and privacy professionals as it highlights critical security vulnerabilities and the necessary defensive measures in frontier AI model training. Dutch enterprises relying on OpenAI models must understand these internal risks and governance challenges to ensure secure and compliant AI deployments under EU regulations.

Relevance 85 · Audience 95

AI Exposes Enterprise Data via Prompt Injection

17:19 · August 13, 2026

AI Exposes Enterprise Data via Prompt Injection

Directly addresses AI-specific security risks and privacy threats with actionable recommendations on data governance and access controls, highly relevant for Dutch/EU security professionals managing AI deployments under GDPR.

Relevance 85 · Audience 90

AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory

13:30 · August 6, 2026

AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory

Directly addresses AI security risks from prompt injection and memory poisoning with actionable guidance for professionals. Applicable to Dutch/EU teams using commercial AI tools, aligning with GDPR and AI Act compliance needs. Provides concrete detection patterns and policy recommendations.

Relevance 85 · Audience 90

OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes

20:33 · August 5, 2026

OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes

This article provides concrete evidence of how threat actors weaponize generative AI to scale social engineering and fraud operations. Dutch security professionals must understand these AI-augmented TTPs to enhance threat intelligence and develop robust defenses against sophisticated, AI-generated attacks.

Relevance 75 · Audience 85