Skip to main content
See every side of every news story
Published loading...Updated

AI agent hacked McKinsey chatbot for read-write access

CodeWall's AI agent exploited a SQL injection flaw in McKinsey's chatbot Lilli, exposing 46.5 million messages and 728,000 confidential files before a patch was applied.

Summary by The Register
: David and Goliath…but with AI agents

5 Articles

Lean Right

The immediate damage to the consultants is likely to be manageable, the image damage is immense. The incident also makes a structural risk of AI clear for the entire economy.

·Düsseldorf, Germany
Read Full Article

With the chatbot Lilli, McKinsey wants to make it easier for his teams to obtain information and thus save time. According to researchers, however, the AI platform is not as safe as it should be. read more on t3n.de

In less than two hours, an autonomous AI agent would have hacked the internal AI of the McKinsey & Company consulting firm. This is at least what the CodeWall cybersecurity startup claims, whose agent could have had full access to the production database. Without stolen password. Without internal accomplice. Without human intervention.

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 67% of the sources are Center
67% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

The Register broke the news in on Monday, March 9, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal