Two separate developments highlighted growing security and privacy concerns around consumer AI chatbots as the industry shifts toward ad-driven monetization. Moxie Marlinspike (Signal founder) launched Confer, positioned as an “end-to-end encryption for AI chats” tool intended to keep user conversations private—claiming the service cannot read chats, store them, or use them for model training because only the user can access the plaintext. The reporting frames Confer as a response to increasing workplace and consumer leakage of sensitive data into AI assistants and broader concerns that AI platforms will monetize user data.
In parallel, commentary warned that major AI providers are increasingly adopting the social-media model of behavioral data collection and advertising, raising the risk of user manipulation and erosion of trust. The piece cites OpenAI’s expansion into search and browsing features and notes OpenAI’s announcement that it will begin testing ads in the free version of ChatGPT, alongside similar ad experiments by other AI products (e.g., Perplexity, Microsoft Copilot, Google’s AI search experiences, and Amazon’s chatbot). The core security implication is that ad incentives can drive more tracking and persuasive optimization in AI responses, increasing privacy exposure and the potential for covert influence over user decisions.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
Confer recently added a feature allowing users to import conversation histories from ChatGPT or Claude, reflecting ongoing development of the privacy-focused chatbot platform.
Signal founder Moxie Marlinspike launched Confer, a privacy-focused AI chatbot designed to keep conversations end-to-end encrypted and inaccessible to Confer or third parties for storage or model training. The service uses passkey-derived encryption, confidential computing in a Trusted Execution Environment, and remote attestation.
OpenAI launched the ChatGPT Atlas browser in October 2025, further expanding its AI product ecosystem in a way the article describes as aligned with ad- and data-driven platform models.
OpenAI introduced ChatGPT Search in late 2024, marking a move toward search-style AI experiences that the article cites as part of a broader shift toward attention- and advertising-driven AI products.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcezdnet.com
Open sourceschneier.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.