15.1 C
Delhi
Tuesday, February 24, 2026

Twin AI data leaks expose over a billion personal KYC records and private media files

Cybersecurity researchers have uncovered two massive data leaks linked to two AI-related apps that have exposed the sensitive personal data and media files of millions of users globally. The leak was revealed in two separate reports by Cybernews (first reported by Forbes), in which the security researchers warned that over a billion records could be compromised.

IDMerit data leak

The first leak has been attributed to an AI-powered Know Your Customer (KYC) tool used by digital identity verification provider IDMerit. The company is an AI-powered digital identity verification solutions provider that serves the fintech and financial services sectors by providing real-time verification tools.

“Our researchers noticed the exposed instance on 11 November 2025, and immediately contacted the company, which promptly secured the database. While there is no current evidence of malicious misuse, automated crawlers set up by threat actors constantly prowl the web for exposed instances, downloading them almost instantly once they appear,” the cybersecurity researchers wrote.

Countries affected by data leak

Countries affected by data leak

The leak exposed 1 billion sensitive personal records spanning individuals from 26 countries. The United States was the most affected, with over 203 million exposed records, followed by Mexico (124 million) and the Philippines (72 million).

The exposed data included “core personal identifiers used for your financial and digital life,” including full names, addresses, postcodes, dates of birth, national IDs, phone numbers, genders, email addresses and telco metadata.

Researchers say that the downstream risks of this data leak could include account takeovers, targeted phishing, credit fraud, SIM swaps, and long-tail privacy harms.

Video AI Art Generator & Maker leak

The second leak is linked to an Android app named “Video AI Art Generator & Maker,” which has been downloaded over 500,000 times on Google Play and rated 4.3 stars with over 11,000 reviews.

The app was found leaking user data due to a misconfigured Google Cloud Storage bucket that allowed anyone access to stored files without authentication. Researchers say the app leaked over 1.5 million user images and 385,000 videos, along with millions of media files generated by users using AI.

The exposed bucket contained approximately 8.27 million media files and over 12TB of users’ media. Researchers say that it has stored and leaked every file uploaded since its launch on 13 June 2023, while the oldest file in the bucket dates back to three days before the launch.

The app was developed by Turkey-registered Codeway Dijital Hizmetler Anonim Sirketi, a company that previously saw another of its apps, Chat & Ask AI, leak roughly 300 million messages tied to more than 25 million users.

Latest

US AI giants accuse Chinese rivals of mass data theft

US AI giants accuse Chinese rivals of mass data theft

Sam Altman says AI will ‘automate the whole economy’, shares message for students at IIT Delhi

OpenAI CEO Sam Altman warned that AI will automate scientific progress and the economy. He advised students to stay up to date with AI tools and focus on unders

Samsung Galaxy Unpacked 2026: Launch date, live-stream details, and what to expect from the new Galaxy S26 lineup

Samsung Galaxy Unpacked 2026 on February 25 will showcase the S26 series with the Snapdragon 8 Elite Gen 5 processor. The event will also likely introduce Galax

Low-cost MacBook, iPhone 17e? Apple could launch ‘at least’ five products during 4 March event

Apple will hold its first event of 2024 on March 4 which could see the company revealing ‘at least’ five new products. The event will feature hands-on exper

Galaxy S26 Ultra leaks in full hands-on video: Live images, benchmark scores, and new Privacy Display revealed

Samsung's Galaxy S26 Ultra is set to launch soon. However, ahead of the launch, a user shared that he has purchased the phone in Dubai. The leak revealed the be

Topics

Don’t play games: Trump warns countries against walking away from trade deals

Trump cautioned nations against reconsidering trade deals made with the US, saying that countries that 'play games' could face higher tariffs or licence fees. T

‘Any country that wants to play games…’: Trump issues ‘higher tariff’ threat

Amid continued scrutiny and with global allies like the EU and the United Kingdom reconsidering their trade deals with the US, Trump renewed tariff threats.

Stay on our side: Zelenskyy’s plea to Trump as Ukraine war enters 5th year

Zelenskyy publicly urged Trump to continue backing Kyiv and pressure Putin, warning that conceding to Russian demands would mean losing everything.

How much snow did Rhode Island and New York get on Monday amid severe blizzards?

New York saw up to 29.5 inches of snow on Feb 23, while Rhode Island set records with over 36 inches in Warwick and ongoing travel bans.

Trump administration steps up efforts to scrutinize foreign funding of universities

By Simon Lewis and Humeyra PamukWASHINGTON, - The Trump...

Supersub strikes again as Sesko gives Man United win at Everton

Supersub strikes again as Sesko gives Man United win at Everton

Pisces Horoscope Today for February 24, 2026: Avoid emotional confusion by staying clear in words

Pisces Daily Horoscope Today: You may review expenses and think about saving more.

Aquarius Horoscope Today for February 24, 2026: Your ideas can be helpful to others, so speak up politely

Aquarius Daily Horoscope Today: Teamwork brings positive results when you stay open-minded.
spot_img

Related Articles

Popular Categories

spot_imgspot_img