
Der ChatGPT-Hersteller OpenAI bestätigt einen schwerwiegenden Datenverstoß und legt Benutzernamen, E-Mail-Adressen und mehr offen – „Transparenz ist uns wichtig.“
https://www.windowscentral.com/artificial-intelligence/openai-chatgpt/openai-confirms-major-data-breach-exposing-users-names-email-addresses-and-more-transparency-is-important-to-us

29 Kommentare
Da fuch man! With all the money they have raised this crap with them as well. I’m glad I am hearing about this from reddit and not OpenAI.
Large tech companies showing once again its far more profitable to let data leak and apologize about it later than actually have safeguards in place.
Pretty sure we didn’t need chat gpt to see this coming.
The S in AI stands for Security.
That title is some major click bait bullshit…
Just as they’re implementing photographic and ID verification.
I’ve said it before but I feel it bares repeating.
Fuck AI.
They are being transparent. With our data. Everybody gets it.
Does anyone read articles anymore?
> People entrust us with sensitive conversations, files, credentials, memories, searches, payment information, and AI agents that act on their behalf. We treat this data as among the most sensitive information in your digital life—and we’re building our privacy and security protections to match that responsibility.
-OpenAI blog November 12, 2025. [Link here](https://openai.com/index/fighting-nyt-user-privacy-invasion/). rAgedLikeMilk
“Transparency is important to us” in a sense they are transparent with their user data, right ?
Requiring face photos and real ID to access content online would be even more detrimental. Rip UK
Aren’t these the same guys that are trying to blame that kid for committing suicide thanks to their own LLM?
Ahahahahahahaha….. ahhhh…
HAHAHAHAHHAHAHAHAHAAAHAHA
Thats why you use fake data whereever possible people.
Transparent for them means that they prefer to openly leak people’s data? /s
So to start this off, I also hate corporations. But at least read the article first before you start hating.
It was a third-party-provider “Mixpanel”; it affected API user (platform.openai.com).
No chat, API requests, API usage data, passwords, credentials, API keys, payment details, or government IDs were leaked – claimed by OpenAI so can be taken with a grain of salt.
What got leaked was:
– Names provided to accounts on platform.openai.com
– Email addresses linked to the API accounts via platform.openai.com
– „Coarse approximate location“ determined by IP address and web browser
– OS and browser type, as well as referring websites
– Organizataions and user IDs saved into the API accounts
I doubt a lot of the users here are using the API… or have the attention span to read a full article
Let’s not forget to give everybody our ID in the upcoming year
why the long dash?
I am currently waiting for the EU mandated information mail that my information has been leaked to a third party involuntarily.
thecurity, thecurity, thecurity
„Transparency in the database is important to us“
Shocked pikachu face.jpg
„data breach“
Bullshit. They were finally offered the right price.
*“Oopsies, now we’re rich!“*
What a crock of bollocks.
The funniest part is always the PR line: “Transparency is important to us” followed by the absolute minimum viable disclosure, timed and worded to calm investors more than users. Names and emails might sound “not too bad” compared to passwords or card numbers, but that’s still fuel for targeted phishing, account takeover elsewhere, and doxxing if you cross-reference with other leaks. Data is compounding interest, just in the wrong direction.
The deeper problem is structural. When you centralize this much data + identity + behavioral logs into a few AI platforms, you’re basically building systemic risk into the stack. Same pattern as finance: as long as the model keeps printing growth, security is a cost center, not a king. Then everyone acts surprised when the tail event shows up.
At this point “trust us, we care about privacy” is worthless without hard constraints: strict data minimization, independent audits, real disclosure of what was stored in clear vs encrypted, and regulatory consequences when they screw up. If you want to run AI infrastructure for half the planet, you should be treated more like a critical utility than a cute startup that occasionally “has incidents.”
Holy fuck, they needed money and brokered a data deal?
the love transparency so much that they exposed all their users data
I cancelled my pro plan last week because they flagged my account as being under 18. They sent and email saying they want my passport.
No thanks. I just increased my subscription on Claude instead.