HackerFeeds

CyberSecurity News

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

The Hacker News
· June 30, 2026

AI summary

Researchers analyzed 444 AI chatbot apps for iPhone and discovered that 282 of them exposed paid AI access through their network traffic. This exposure occurred due to sensitive information such as plaintext API keys, reusable tokens, or unsecured backend servers being visible in the app's network communications. As a result, an attacker who obtains this information can use it to send model requests on the developer's account. The vulnerability allows unauthorized access to the developer's paid AI services. The study found that nearly two-thirds of the tested apps were affected by this issue.

Read the full article at The Hacker Newsthehackernews.com/2026/06/282-ios-apps-found-leaking-llm-api-keys.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.