McDonald’s AI Hiring Bot Exposed Millions of Applicants’ Data to Hackers Who Tried the Password ‘123456’
-
cross-posted from: https://lemmy.world/post/32736562
Paywall removed: https://archive.ph/sn2Ud
On Wednesday, security researchers Ian Carroll and Sam Curry revealed that they found simple methods to hack into the backend of the AI chatbot platform on McHire.com, McDonald's website that many of its franchisees use to handle job applications. Carroll and Curry, hackers with a long track record of independent security testing, discovered that simple web-based vulnerabilities—including guessing one laughably weak password—allowed them to access a Paradox.ai account and query the company's databases that held every McHire user's chats with Olivia. The data appears to include as many as 64 million records, including applicants' names, email addresses, and phone numbers.
The outlets headline tries make it sound like “scary hackers.”
-
cross-posted from: https://lemmy.world/post/32736562
Paywall removed: https://archive.ph/sn2Ud
That sounds like the code an idiot would use for their luggage.
-
cross-posted from: https://lemmy.world/post/32736562
Paywall removed: https://archive.ph/sn2Ud
Mcdonald's now owes all of those people a job position, imo.
-
That sounds like the code an idiot would use for their luggage.
even the AI would have suggested a better one. (don't use passwords AI generated tho, because someone may be able to narrow down or recreate tge output one day.)
-
That sounds like the code an idiot would use for their luggage.
That's amazing! I got the same combination on my luggage.
-
That's amazing! I got the same combination on my luggage.
Me too. Who would think you would use something, noone would use.
Deception is key! -
even the AI would have suggested a better one. (don't use passwords AI generated tho, because someone may be able to narrow down or recreate tge output one day.)
i mean it is literally a machine built to produce statistically likely text.
-
i mean it is literally a machine built to produce statistically likely text.
Theoretically that could mean it also knows what is statistically unlikely, but it will only tell you what is statistically the most likely statistically unlikely answer.
-
That sounds like the code an idiot would use for their luggage.
I came here to ensure this comment was posted
-
Mcdonald's now owes all of those people a job position, imo.
Ok, but you'll need two more jobs to pay your bills.