Close Menu
The Politic ReviewThe Politic Review
  • Home
  • News
  • United States
  • World
  • Politics
  • Elections
  • Congress
  • Business
  • Economy
  • Money
  • Tech
Trending

Trump to Be Hosted by King During Unprecedented Second UK Visit

July 14, 2025

Poll: Democrat Favorability Continues to Plummet

July 14, 2025

US could ‘immediately’ start deporting migrants to unsafe countries – WaPo

July 14, 2025
Facebook X (Twitter) Instagram
  • Donald Trump
  • Kamala Harris
  • Elections 2024
  • Elon Musk
  • Israel War
  • Ukraine War
  • Policy
  • Immigration
Facebook X (Twitter) Instagram
The Politic ReviewThe Politic Review
Newsletter
Monday, July 14
  • Home
  • News
  • United States
  • World
  • Politics
  • Elections
  • Congress
  • Business
  • Economy
  • Money
  • Tech
The Politic ReviewThe Politic Review
  • United States
  • World
  • Politics
  • Elections
  • Congress
  • Business
  • Economy
  • Money
  • Tech
Home»Tech»AI Chatbot for Hiring McDonald’s Workers Exposed Millions of Applicants’ Personal Data
Tech

AI Chatbot for Hiring McDonald’s Workers Exposed Millions of Applicants’ Personal Data

Press RoomBy Press RoomJuly 13, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram

Security researchers have uncovered glaring vulnerabilities in the “McHire” AI chatbot used by McDonald’s to hire workers, potentially exposing the personal information of approximately 64 million job applicants.

Tom’s Hardware reports that security researchers Ian Carroll and Sam Curry have discovered critical flaws in the McHire chatbot, developed by Paradox.ai for McDonald’s, which could have been exploited to access sensitive data of millions of job applicants. The chatbot, known as Olivia, is reportedly used by 90 percent of McDonald’s franchises in the United States to streamline their hiring processes.

The first vulnerability came to light when the researchers successfully guessed the password used by Paradox team members to access McHire: “123456.” This weak password allowed Carroll and Curry to gain administrator access to a test restaurant within the McHire system. While this initial access only revealed employees of Paradox.ai, it provided valuable insights into the workings of the application.

However, the real concern emerged with the discovery of a second vulnerability. An insecure direct object reference (IDOR) flaw in the McHire API enabled the researchers to access a wealth of personal information from every chat interaction involving individuals who had ever applied for a job at McDonald’s. This exposed data included names, email addresses, phone numbers, addresses, candidacy states, form inputs such as preferred shifts, and even authentication tokens that could be used to log into the consumer UI and view raw chat messages.

The scale of the potential data breach is staggering, given that Paradox had previously touted McHire’s adoption by 90 percent of McDonald’s franchises. With McDonald’s boasting a market cap of $213 billion and Paradox having raised $200 million in 2020, the use of such a weak password and the presence of the IDOR flaw raise serious questions about the companies’ commitment to data security.

Fortunately, Carroll and Curry reported the vulnerabilities to Paradox, and the company addressed the issues within a day of disclosure. However, the incident serves as a stark reminder of the importance of implementing robust security measures, especially when handling sensitive personal information.

The exposure of personal data belonging to millions of job applicants is a major concern, as it could potentially lead to identity theft, phishing attempts, or other malicious activities. It is crucial for companies, particularly those dealing with vast amounts of user data, to prioritize security and adopt stringent password policies and secure coding practices.

Read more at Tom’s Hardware here.

Lucas Nolan is a reporter for Breitbart News covering issues of free speech and online censorship.

Read the full article here

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link

Related Articles

Tech

Elmo Goes Full Nazi in Hacked Social Media Posts: ‘Kill All Jews’

July 14, 2025
Tech

Electric Desperation: Tesla and Ford Urge Buyers to Act Fast as $7,500 EV Tax Credit Is Set to Expire

July 13, 2025
Tech

Judge Allows Don Lemon’s Lawsuit Against Elon Musk’s X to Proceed

July 11, 2025
Tech

‘Houston, We Have a Problem:’ Dick Durbin Calls Plan to Move Space Shuttle to Texas a ‘Heist’

July 11, 2025
Tech

Exclusive — Justice Department to File Statement of Interest in Antitrust Case Alleging Big Media, Big Tech Colluded to Censor RFK Jr.-Founded Group

July 10, 2025
Tech

Chinese Vape Companies Flood Market, Avoid Billions in Tariff Duties

July 10, 2025
Add A Comment
Leave A Reply Cancel Reply

Editors Picks

Poll: Democrat Favorability Continues to Plummet

July 14, 2025

US could ‘immediately’ start deporting migrants to unsafe countries – WaPo

July 14, 2025

Alarming Report: Current Secret Service Director Sean Curran Signed Off on Unacceptable Security Plan the Day Before Butler Rally Where Trump Was Nearly Killed

July 14, 2025

Elite Economist Admits: Trump’s Deportations Push up Citizens’ Wages

July 14, 2025
Latest News

Republican Lawmakers, Officials Thank God for Saving Trump on Anniversary of Butler Assassination Attempt

July 14, 2025

Trump confirms plans to send Patriots to Ukraine

July 14, 2025

President Trump Says He Spoke with Dan Bongino Amid Viral Reports of Possible Resignation From FBI (VIDEO)

July 14, 2025

Subscribe to News

Get the latest politics news and updates directly to your inbox.

The Politic Review is your one-stop website for the latest politics news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Instagram Pinterest YouTube
Latest Articles

Trump to Be Hosted by King During Unprecedented Second UK Visit

July 14, 2025

Poll: Democrat Favorability Continues to Plummet

July 14, 2025

US could ‘immediately’ start deporting migrants to unsafe countries – WaPo

July 14, 2025

Subscribe to Updates

Get the latest politics news and updates directly to your inbox.

© 2025 Prices.com LLC. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • For Advertisers
  • Contact

Type above and press Enter to search. Press Esc to cancel.