Hackers breached an AI-powered call center platform in the Middle East, stealing over 10 million conversations between consumers, operators, and AI bots, along with sensitive personal data including national ID documents, which was then offered for sale on the dark web for $15,000.
A major AI-powered cloud call center service provider in Saudi Arabia suffered a significant data breach where attackers gained unauthorized access to the management dashboard. The breach exposed over 10.2 million conversations between consumers, operators, and AI agents, affecting approximately 1,000 enterprise customers and 1 million end users across various industries including banks and airlines. The stolen data included national ID documents and other personally identifiable information that customers had shared during AI-assisted chat sessions. Cybersecurity firm Resecurity discovered the breach when they spotted hackers attempting to sell the stolen database on the Breached forums on the dark web for $15,000 in cryptocurrency. The threat actors advertised access to the admin panel and VPN credentials as part of the package. The platform processes vast volumes of customer interactions and is widely used in fintech and e-commerce industries. Resecurity reported that the attackers were quickly removed from the systems after detection, making the admin access being sold likely invalid, but the damage from the stolen database remains. The incident highlights significant vulnerabilities in AI-powered platforms that handle sensitive customer data.
Domain classification, causal taxonomy, severity scores, and national security assessments were LLM-classified and may contain errors.
AI systems that memorize and leak sensitive personal data or infer private information about individuals without their consent. Unexpected or unauthorized sharing of data and information can compromise user expectation of privacy, assist identity theft, or cause loss of confidential intellectual property.
Human
Due to a decision or action made by humans
Intentional
Due to an expected outcome from pursuing a goal
Post-deployment
Occurring after the AI model has been trained and deployed