The CyberSignal
  • Latest
  • Trending
  • Cyber Attacks
  • Data Breaches
  • Threat Intelligence
  • Critical Infrastructure
  • Policy & Government
  • Cybersecurity 101
  • Vulnerabilities
  • About Us
  • Weekly Briefing
  • Topics
Data Breaches

MyLovely.ai Data Breach Exposes Thousands of Private User Conversations

Nicholas Robert

Nicholas Robert

09 Apr 2026 — 3 min read
Share
A white chat bubble is fractured by a jagged digital glitch, with vibrant pink pixels and fragments spilling out from the crack.

A major vulnerability in a prominent companion AI platform has led to the public exposure of sensitive prompts and account identifiers, highlighting the privacy risks of generative AI data retention.

SAN FRANCISCO — Security researchers have confirmed a significant data breach at MyLovely.ai, a popular "AI companion" platform. The incident has resulted in the exposure of over 70,000 private conversation logs, many of which contain highly personal and NSFW (Not Safe For Work) interactions. The leaked dataset reportedly links specific prompts to individual user accounts, creating a significant risk of de-anonymization and targeted extortion.

Initial analysis suggests the breach occurred due to an improperly secured database that allowed unauthorized access to the platform’s backend. Beyond conversation history, the exposed data includes user email addresses, account creation dates, and metadata that could be used to identify users’ geographic locations. MyLovely.ai has since secured the vulnerability, but the leaked information has already begun circulating on specialized data-leak forums.

Who is affected
Platform Users
Individuals who engaged in private chats now face potential public exposure and extortion.
AI Service Providers
Platforms managing sensitive user prompts face increased regulatory scrutiny over data retention.
Enterprise IT Teams
Organizations must monitor for corporate email addresses used on compromised "Shadow AI" sites.
Data Privacy Regulators
Authorities are assessing potential GDPR and CCPA violations related to the mishandling of personal logs.

The threat of de-anonymization and extortion

The primary concern for victims of the MyLovely.ai breach is the lack of anonymity in the leaked logs. While many users believe their interactions with AI are ephemeral or private, the storage of these logs in plaintext — associated with email addresses — makes them a goldmine for "doxing" campaigns. Threat actors often use such datasets to cross-reference leaked emails with social media profiles, leading to instances of "sextortion" where users are threatened with the release of their private prompts to family or employers.

Security firms monitoring the leak have noted that the data was accessible for an extended period before being remediated. This exposure window allowed multiple scrapers to index the database. Even as the platform moves toward better encryption, the permanence of the existing leak underscores the "data is a liability" principle, particularly when dealing with generative AI inputs that are uniquely identifiable to a user's personality or personal life.

Broader implications for AI data governance

The incident at MyLovely.ai serves as a warning for the wider AI industry. Unlike traditional data breaches that involve passwords or credit cards — which can be reset — conversation history is permanent and irreplaceable. The breach highlights a lack of standardized security frameworks for "companion" or "entertainment" AI, which often operate with less oversight than enterprise-grade AI assistants.

As more users integrate AI into their daily lives for companionship, therapy-adjacent talk, or creative writing, the volume of sensitive "unstructured data" being held by these companies is growing exponentially. Experts suggest that the next phase of AI security will require mandatory end-to-end encryption for prompt history and a "zero-retention" policy by default, ensuring that even if a server is compromised, the content of the user's thoughts remains private.


The CyberSignal analysis

Signal 01 — Prompt history as the new "PII"

This breach proves that AI prompts should be classified as highly sensitive Personal Identifiable Information (PII). Because prompts often contain unique cadence, personal anecdotes, and specific desires, they are functionally as identifiable as a biometric marker. Organizations must stop viewing LLM logs as "disposable" and start treating them as high-value targets for exfiltration.

Signal 02 — The rise of "Shadow AI" in the workplace

Practitioners should check their logs for corporate domains used on consumer-grade AI sites. The MyLovely.ai breach likely includes corporate email addresses from employees who used work credentials for personal accounts. This creates a bridge for threat actors to pivot from a personal leak to a corporate Account Takeover (ATO) or spear-phishing campaign using the leaked personal context as leverage.

Signal 03 — Retention is a security failure

The fact that 70,000 logs were available to be leaked suggests a failure in data lifecycle management. In the AI sector, "keeping everything" to train future models is a common but dangerous practice. Security-first platforms must move toward decentralized storage or local-only processing to eliminate the centralized database risk that led to this event.


What to do this week

  1. Scan for "Shadow AI" registrations. Use your email security gateway or CASB to search for outbound registrations to MyLovely.ai and similar companion platforms using company email addresses. Force password resets for any matches.
  2. Update your AI Acceptable Use Policy (AUP). Explicitly define which AI platforms are authorized for work use and prohibit the use of personal or sensitive corporate data in any consumer-grade AI prompt field.
  3. Monitor extortion-related phishing. Brief your executive protection teams on the possibility of spear-phishing attempts that leverage leaked "companion" AI logs. Attackers may use the sensitive nature of these logs to bypass traditional social engineering defenses.

Sources

Type Source
Reporting Malwarebytes Labs
Reporting Help Net Security
Reporting CyberNews
Reporting HookPhish

Read more

Isometric clay diorama of a cloud platform server split into a patched half and an exposed half, with a single flat red dot marking the unpatched instance.

ServiceNow Patches Four AI Platform Flaws, Three Rated CVSS 10.0 for Unauthenticated Attack

ServiceNow released fixes for four ServiceNow AI Platform flaws, three rated CVSS 10.0 and reachable by an unauthenticated attacker to run code or SQL. It patched hosted instances; self-hosted customers and partners must apply the update themselves.

28 Aug 2026
A white line-art router on a solid navy background with a single flat red dot marking a hidden factory implant.

ZBT Routers Ship With SPEAKINGSTONE and DARKLANTERN Factory Implants, VulnCheck Finds

VulnCheck found two undocumented factory implants, SPEAKINGSTONE and DARKLANTERN, in firmware for ZBT routers sold worldwide as white-label products. Both hand an unauthenticated remote attacker root command execution. Here is what network defenders should verify.

28 Aug 2026
AFP, FBI and Western Australia Police badges over a broken open-source software package, marking the TeamPCP and Shai-Hulud arrests.

AFP and FBI Charge Two Australians Over TeamPCP and the Shai-Hulud Supply-Chain Attacks

Australia's AFP, the FBI and WA Police have charged two Western Australia men with 14 offences over their alleged roles in TeamPCP, the cybercrime group tied to the Shai-Hulud worm that authorities say compromised more than 1,000 organizations, including Mercor and OpenAI.

28 Aug 2026
Flat white line-art of an office multifunction printer wired to a server behind a shield, on a deep navy background with a single flat red dot.

PaperCut Confirms Two Chained Zero-Days Exploited Across All NG and MF Versions

PaperCut says attackers are actively exploiting two chained zero-days across every version of its NG and MF print-management software. The vendor shipped emergency Release 2 patches for v24, v25, and v26 and is urging defenders to patch or pull servers offline immediately.

28 Aug 2026
The CyberSignal
  • Daily Briefing
  • Weekly Briefing
  • Corrections
  • Privacy Policy
Powered by Ghost