The Chat & Ask AI mobile app reportedly exposed a large volume of private user conversations due to an insecure Google Firebase backend configuration that allowed unauthorized access by effectively letting anyone present as an “authenticated” user. Reporting indicates the exposed dataset included roughly 300 million messages tied to 25+ million users, with logs containing full chat histories, timestamps, user-defined AI companion names, and model/configuration details (e.g., use of ChatGPT/Claude/Gemini via the wrapper app). Sampled content included highly sensitive and potentially harmful queries (e.g., self-harm, illegal drug manufacturing, and hacking), creating significant privacy and safety risk even though the underlying third-party AI model providers were not reported as compromised.
Separately, researchers described two emerging mobile malware threats: ZeroDayRAT, a commercially advertised spyware platform sold via Telegram that claims broad Android/iOS support and provides operators with extensive device telemetry and hands-on capabilities (e.g., notification/SMS capture, OTP interception for 2FA bypass, keylogging, camera/microphone activation, GPS tracking, and crypto theft modules); and GhostChat, an Android malware family distributed as trojanized APKs mimicking popular chat apps (including WhatsApp) that injects into app processes to intercept messages, steal credentials, and exfiltrate contacts/media. An unrelated item reported that AI.com’s Super Bowl-driven traffic surge caused a service outage attributed to Google rate limiting, but it did not describe a security incident or compromise.

See attribution, scope, and your downstream exposure.
3 events from the most recent confirmed update back to the earliest known activity.
A security researcher discovered that the Chat & Ask AI mobile app had a misconfigured Google Firebase backend that exposed roughly 300 million messages tied to more than 25 million users. The exposed data included chat histories, timestamps, AI companion names, and model configuration details, with some records containing highly sensitive conversations.
Researchers at iVerify reported that a commercial spyware platform called ZeroDayRAT was being promoted on Telegram as a tool for full remote control of Android and iOS devices. The malware was described as supporting surveillance, credential theft, GPS tracking, camera and microphone access, screen recording, OTP interception, and financial-theft modules.
Zimperium disclosed a new Android malware family named GhostChat that impersonates chat apps such as WhatsApp through malicious APKs. Once installed, it injects into the trusted app process to intercept messages, steal credentials, and exfiltrate contacts and media.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
3 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcebleepingcomputer.com
Open sourcezimperium.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.