As cited
Copy frozen at (site build).
ai security
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
A study of 444 AI chatbot applications on iOS found that 282 apps exposed API keys and backend authentication tokens in plaintext network traffic, allowing attackers to intercept credentials and make requests on the developer's account without authorization.
Why it matters: Developers shipping applications with exposed API keys face immediate risk of unauthorized API usage, cost overruns, and potential service disruption from quota exhaustion.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
ai security
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
ai security
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
A study of 444 iOS artificial intelligence chatbot applications found that 282 exposed paid AI access by transmitting plaintext application programming interface keys, reusable tokens, or using backend servers that accepted requests without authentication. Attackers could exploit these to send model requests at the developer's expense.
Why it matters: Developers and users of these 282 iOS AI apps face unauthorized API usage and potential cost exposure; practitioners should audit network traffic for exposed credentials.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
ai security
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
A study of 444 iOS artificial intelligence chatbot applications found that 282 exposed paid AI access by transmitting plaintext application programming interface keys, reusable tokens, or using backend servers that accepted requests without authentication. Attackers could exploit these to send model requests at the developer's expense.
Why it matters: Developers and users of these 282 iOS AI apps face unauthorized API usage and potential cost exposure; practitioners should audit network traffic for exposed credentials.
- Source published
- First seen by Cybersecurity Tracker