An investigation found that 264,078 shared conversations across six AI chatbot platforms — ChatGPT, Claude, Gemini, Grok, Copilot, and DeepSeek — were publicly accessible and indexed by Archive.org after users generated web pages through built-in “Share” features. The report said 96,477 of the exposed conversations were from 2026 alone and that the issue was not caused by a platform breach, but by publicly reachable links created for sharing. Reportedly exposed material included names, phone numbers, home addresses, national ID numbers, immigration and residency records, administrative documents, retirement letters, and intimate personal exchanges.
The disclosures renewed scrutiny of privacy controls on major AI services, particularly after shared Claude conversations were reportedly discoverable through Google indexing, leading Anthropic to disable that indexing path. Guidance published afterward urged users of ChatGPT, Gemini, Copilot, and Claude to reduce exposure by revoking public share links, using temporary or incognito chats, deleting chat histories, disabling model-training use where available, and turning off memory or personalization settings that can retain additional context or connected-service data.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Henk van Ess published an investigative article on Digital Digging reporting that 264,078 shared conversations across ChatGPT, Claude, Gemini, Grok, Copilot, and DeepSeek were publicly exposed and discoverable via Archive.org indexing. The report said the exposure stemmed from public share-page design rather than a hack, and included 96,477 exposed conversations from 2026.
After shared Claude conversations were reportedly discoverable through a Google dork search query, Anthropic quickly fixed the issue by disabling that indexing path. The article says users had previously shared Claude conversations through active links before they became discoverable.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
schneier.com
Open sourcezdnet.com
Open sourcecyberveille.ch
Open sourcesupport.claude.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.