AI agent hacked McKinsey chatbot for read-write access
CodeWall's AI agent exploited a SQL injection flaw in McKinsey's chatbot Lilli, exposing 46.5 million messages and 728,000 confidential files before a patch was applied.
5 Articles
5 Articles
The immediate damage to the consultants is likely to be manageable, the image damage is immense. The incident also makes a structural risk of AI clear for the entire economy.
With the chatbot Lilli, McKinsey wants to make it easier for his teams to obtain information and thus save time. According to researchers, however, the AI platform is not as safe as it should be. read more on t3n.de
In less than two hours, an autonomous AI agent would have hacked the internal AI of the McKinsey & Company consulting firm. This is at least what the CodeWall cybersecurity startup claims, whose agent could have had full access to the production database. Without stolen password. Without internal accomplice. Without human intervention.
Coverage Details
Bias Distribution
- 67% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium




