Sev0AI security incidents, tracked

All incidents / Leaky AI product

Chat & Ask AI app exposed 300 million chatbot messages

Codeway, disclosed 5 Feb 2026. Leaky AI product Data exposed High

A misconfigured Firebase backend behind Chat & Ask AI, a popular app fronting ChatGPT, Claude and Gemini, exposed around 300 million messages from more than 25 million users, including full conversation histories. The developer fixed it within hours of the researcher's report.

Disclosed
5 Feb 2026
Organization
Codeway
Vendor
Multiple models
Product
Chat & Ask AI
Kind of AI
Chatbot
AI's role
AI was the target
How it happened
Leaky AI product: Exposed datastore
Harm
Data exposed
Data involved
Chat logs, Personal data
Reach
One organization
Records
25,000,000
Severity
High
Model at fault
No
Status
Confirmed

Sources

  1. https://www.malwarebytes.com/blog/news/2026/02/ai-chat-app-leak-exposes-300-million-messages-tied-to-25-million-users
  2. https://www.foxnews.com/tech/millions-ai-chat-messages-exposed-app-data-leak

Related incidents

Data for this record: incidents.json. Cite as: Sev0, "Chat & Ask AI app exposed 300 million chatbot messages", https://sev0.fyi/incidents/2026-02-05-chat-ask-ai-firebase-leak/