Hundreds of iPhone apps found leaking OpenAI, Gemini credentials
An academic study has found that LLM-powered iOS applications routinely expose API credentials that can be abused to access AI services. Researchers discovered that nearly two-thirds of tested apps leaked credentials or exposed backend access mechanisms, with many vulnerabilities remaining unfixed months after disclosure. A team of researchers in the US developed a framework called … The post Hundreds of iPhone apps found leaking OpenAI, Gemini credentials appeared first on CyberInsider.
Hundreds of iPhone apps were found leaking OpenAI and Gemini credentials, exposing API keys and authentication tokens that can be abused to access AI services. The vulnerabilities remained unfixed for months after disclosure.
Read the full article
This is a curated summary. The complete article is available at Cyber Insider.
