{"id":25308,"date":"2024-10-09T06:10:11","date_gmt":"2024-10-09T14:10:11","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2024\/10\/09\/news-19038\/"},"modified":"2024-10-09T06:10:11","modified_gmt":"2024-10-09T14:10:11","slug":"news-19038","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2024\/10\/09\/news-19038\/","title":{"rendered":"AI girlfriend site breached, user fantasies stolen"},"content":{"rendered":"\n<p>A hacker has stolen a massive database of users\u2019 interactions with their sexual partner chatbots, according to <a href=\"https:\/\/www.404media.co\/hacked-ai-girlfriend-data-shows-prompts-describing-child-sexual-abuse-2\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">404 Media<\/a>.<\/p>\n<p>The breached service, Muah.ai, describes itself as a platform that lets people engage in AI-powered companion NSFW chat, exchange photos, and even have voice chats.<\/p>\n<p>As you can imagine, data like this is very sensitive, so the site assures customers that communications are encrypted and says it doesn\u2019t sell any data to third parties.<\/p>\n<figure class=\"wp-block-image aligncenter size-full\"><img decoding=\"async\" loading=\"lazy\" width=\"320\" height=\"308\" src=\"https:\/\/www.malwarebytes.com\/wp-content\/uploads\/sites\/2\/2024\/10\/Privacy.jpg\" alt=\"Absolute privacy Encrypted communication. Delet account with ease. We do not sell any data to any 3rd party.\" class=\"wp-image-118675\" \/><figcaption class=\"wp-element-caption\">Absolute privacy promised<\/figcaption><\/figure>\n<p>The stolen data, however, tells a different story. It includes chatbot prompts that reveal users\u2019 sexual fantasies. These prompts are in turn linked to email addresses, many of which appear to be personal accounts with users\u2019 real names.<\/p>\n<p>Mauh.ai says it believes in freedom of speech and to uphold that right, it says:<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cAI technology should be for everyone, and its use case to be decided by each mature, individual adult. So that means we don&#8217;t actively censor or filter AI. So any topic can be discussed without running into a wall.\u201d<\/p>\n<\/blockquote>\n<p>Unfortunately, that means that filth is created to satisfy the needs of some sick users, and some of the data contains horrifying explicit references to children. <\/p>\n<p>Presumably those users in particular don&#8217;t want their fantasies to be discovered, which is exactly what might happen if they are connected to your email address.<\/p>\n<p>The hacker describes the platform as \u201ca handful of open-source projects duct-taped together.\u201d Apparently, it was no trouble at all to find a vulnerability that provided access to the platform\u2019s database.<\/p>\n<p>The administrator of Muah.ai says the hack was noticed a week ago and claims that it must be sponsored by the competitors in the \u201cuncensored AI industry.\u201d Which, who knew, seems to be the <a href=\"https:\/\/fortune.com\/longform\/meta-openai-uncensored-ai-companions-child-pornography\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">next big thing<\/a>.<\/p>\n<p>The administrator also said that Muah.ai employs a team of moderation staff that suspend and delete ALL child-related chatbots on its card gallery (where users share their creations), Discord, Reddit, etc, But in reality, when two people posted about a reportedly underage AI character on the site\u2019s Discord server, 404 Media claims a moderator told the users to not \u201cpost that shit\u201d here, but to go \u201cDM each other or something.\u201d<\/p>\n<p>Muah.ai is just one example of a new breed of uncensored AI apps that offer hundreds of role-play scenarios with chatbots, and others designed to behave like a long-term romantic companion.<\/p>\n<p>404 Media says it tried to contact dozens of people included in the data, including users who wrote prompts that discuss having underage sex. Not surprisingly, none of those people responded to a request for comment.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-innovation-before-security\">Innovation before security<\/h2>\n<p>Emerging platforms like these are often rushed into existence because there is money to be made. Unfortunately, that usually happens at the expense of security and privacy, so here are some things to bear in mind:<\/p>\n<ul>\n<li>Don&#8217;t trust AI platforms that promise privacy and encryption just because they say so<\/li>\n<li>Don&#8217;t login with your Google\/Facebook\/Microsoft credentials or by using your regular email address or phone number<\/li>\n<li>Remember that anything you put online, including a service that promises privacy, has a risk of being made public<\/li>\n<\/ul>\n<h2 class=\"wp-block-heading\" id=\"h-check-your-digital-footprint\">Check your digital footprint<\/h2>\n<p>If you want to find out what personal data of yours has been exposed online, you can use our\u00a0<a href=\"https:\/\/www.malwarebytes.com\/digital-footprint\">free Digital Footprint scan<\/a>. Fill in the email address you\u2019re curious about (it\u2019s best to submit the one you most frequently use) and we\u2019ll send you a free report.<\/p>\n<div class=\"wp-block-malware-bytes-button mb-button\" id=\"mb-button-7ba16f0b-04e8-4679-9512-2f21a0971dcf\">\n<div class=\"mb-button__row u-justify-content-center\">\n<div class=\"mb-button__item mb-button-item-0\">\n<p class=\"btn-main\"><a href=\"https:\/\/www.malwarebytes.com\/digital-footprint?utm_source=blog&amp;utm_medium=social&amp;utm_campaign=b2c_pro_acq_fy25dfplaunch_171269600960&amp;utm_content=V1\"><\/a><a href=\"https:\/\/www.malwarebytes.com\/digital-footprint\">SCAN NOW<\/a><\/p>\n<\/div>\n<\/div>\n<\/div>\n<hr class=\"wp-block-separator has-alpha-channel-opacity is-style-wide\" \/>\n<p><strong>We don&#8217;t just report on threats &#8211; we help safeguard your entire digital identity<\/strong><\/p>\n<p>Cybersecurity risks should never spread beyond a headline. Protect your\u2014and your family&#8217;s\u2014personal information by using <a href=\"https:\/\/www.malwarebytes.com\/identity-theft-protection\">identity protection<\/a>.<\/p>\n<p><a href=\"https:\/\/www.malwarebytes.com\/blog\/news\/2024\/10\/ai-girlfriend-site-breached-user-fantasies-stolen\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> Chatbot companion platform muah.ai was hacked and had its chatbot prompts stolen. <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[32013,5477,32014,32,5897],"class_list":["post-25308","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-chat-bot","tag-child-abuse","tag-muah-ai","tag-news","tag-privacy"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/25308","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=25308"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/25308\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=25308"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=25308"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=25308"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}