Meta suspended its internal Model Capability Initiative after an internal error reportedly made sensitive employee monitoring data broadly accessible inside the company, intensifying criticism of a program that collected workplace activity from tools including Gmail, Google Chat, Meta AI, screenshots, and usage patterns. Meta said it found no evidence of malicious activity or an external breach, but the incident renewed concerns about consent, unencrypted storage, and how far companies are going to feed AI systems with employee data. Similar privacy concerns surfaced in the Netherlands, where a watchdog said the AIVD and MIVD intelligence services mishandled bulk datasets containing personal information through weak controls, excessive retention, and inadequate oversight, raising alarms that AI-assisted analysis could be applied to unlawfully sourced or improperly retained citizen data.
At the same time, new reporting and vendor changes underscored how quickly enterprise AI is expanding the attack surface and governance burden. Orca Security said 81.2% of organizations running AI packages had at least one known vulnerability and that 99.9% of fixable AI vulnerability alerts remained unpatched, with risks spanning agent frameworks, vector databases, exposed API keys, excessive permissions, weak authentication, and internet-facing services such as Amazon SageMaker, Azure OpenAI, and Google Vertex AI. Microsoft is adding an in-meeting Teams control to disable Copilot, Facilitator, and recap features during sensitive discussions, while broader industry debate has focused on employees oversharing data with AI assistants, the need to govern agent identities and registries, and warnings that AI prompts, memory, and orchestration layers can leak or concentrate proprietary organizational knowledge if enterprises do not retain tight control over access, telemetry, and data handling.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
7 events from the most recent confirmed update back to the earliest known activity.
In 2022, the Dutch oversight body CTIVD issued a binding ruling ordering deletion of five major citizen datasets that had been retained too long by AIVD and MIVD. The ruling is cited as an earlier milestone in the broader controversy over intelligence data handling.
Microsoft said rollout of a new Microsoft Teams in-meeting toggle to enable or disable Copilot, Facilitator, and recap begins in early July 2026 for Targeted Release. The control is intended to give organizers and presenters real-time control over AI use during sensitive meetings.
Meta CTO Andrew Bosworth later said the exposure was caused by an internal error in which a researcher stored data in the wrong internal location, making it accessible more broadly than intended. This clarified the company’s attribution of the incident as an internal mistake rather than an outside compromise.
Meta suspended its internal Model Capability Initiative after discovering that sensitive employee information had been made broadly accessible inside the company. Meta opened an internal investigation and filed an internal security incident, saying it found no evidence of malicious activity or an external breach.
More than 1,600 Meta employees signed a petition calling for the Model Capability Initiative to end after criticizing it over privacy, consent, and reports that some collected data was stored unencrypted. The backlash preceded Meta’s later suspension of the program.
Meta launched the internal Model Capability Initiative in April to collect workplace activity data for improving its AI systems. The program monitored tools including Gmail, Google Chat, and Meta’s AI assistant, and captured screenshots and usage patterns.
A CTIVD supervisory report dated July 1 found that the Netherlands’ intelligence services mishandled bulk datasets through weak technical controls, excessive retention, incomplete access restrictions, and insufficient oversight. The watchdog issued thirteen recommendations for stronger logging, clearer legal definitions, and better dataset lifecycle management.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
9 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcethenewstack.io
Open sourcethecybersecguru.com
Open sourcetechtarget.com
Open sourcevirtual-routes.org
Open sourcehelpnetsecurity.com
Open sourceghacks.net
Open sourcecysecurity.news
Open sourcesemperis.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.