CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 62

As cited

Copy frozen at (site build).

ai security

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

A study of 444 AI chatbot applications on iOS found that 282 apps exposed API keys and backend authentication tokens in plaintext network traffic, allowing attackers to intercept credentials and make requests on the developer's account without authorization.

Why it matters: Developers shipping applications with exposed API keys face immediate risk of unauthorized API usage, cost overruns, and potential service disruption from quota exhaustion.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

A study of 444 iOS artificial intelligence chatbot applications found that 282 exposed paid AI access by transmitting plaintext application programming interface keys, reusable tokens, or using backend servers that accepted requests without authentication. Attackers could exploit these to send model requests at the developer's expense.

Why it matters: Developers and users of these 282 iOS AI apps face unauthorized API usage and potential cost exposure; practitioners should audit network traffic for exposed credentials.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

A study of 444 iOS artificial intelligence chatbot applications found that 282 exposed paid AI access by transmitting plaintext application programming interface keys, reusable tokens, or using backend servers that accepted requests without authentication. Attackers could exploit these to send model requests at the developer's expense.

Why it matters: Developers and users of these 282 iOS AI apps face unauthorized API usage and potential cost exposure; practitioners should audit network traffic for exposed credentials.

VendorsApple
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary