Close Menu
The Politic ReviewThe Politic Review
  • News
  • U.S.
  • World
  • Politics
  • Congress
  • Business
  • Economy
  • Money
  • Tech
  • More Articles
Trending

Trump: Syria Could Do ‘Better Job’ of Taking Out Hezbollah than Israel

June 16, 2026

Happy 250th Birthday America! Trump Announces ‘Largest Fireworks Show in History’

June 16, 2026

The calm in Hormuz could be dangerously brief

June 16, 2026
Facebook X (Twitter) Instagram
  • Donald Trump
  • Kamala Harris
  • Elections 2024
  • Elon Musk
  • Israel War
  • Ukraine War
  • Policy
  • Immigration
Facebook X (Twitter) Instagram
The Politic ReviewThe Politic Review
Newsletter
Tuesday, June 16
  • News
  • U.S.
  • World
  • Politics
  • Congress
  • Business
  • Economy
  • Money
  • Tech
  • More Articles
The Politic ReviewThe Politic Review
  • United States
  • World
  • Politics
  • Elections
  • Congress
  • Business
  • Economy
  • Money
  • Tech
Home»Tech»AI Chatbot for Hiring McDonald’s Workers Exposed Millions of Applicants’ Personal Data
Tech

AI Chatbot for Hiring McDonald’s Workers Exposed Millions of Applicants’ Personal Data

Press RoomBy Press RoomJuly 13, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram

Security researchers have uncovered glaring vulnerabilities in the “McHire” AI chatbot used by McDonald’s to hire workers, potentially exposing the personal information of approximately 64 million job applicants.

Tom’s Hardware reports that security researchers Ian Carroll and Sam Curry have discovered critical flaws in the McHire chatbot, developed by Paradox.ai for McDonald’s, which could have been exploited to access sensitive data of millions of job applicants. The chatbot, known as Olivia, is reportedly used by 90 percent of McDonald’s franchises in the United States to streamline their hiring processes.

The first vulnerability came to light when the researchers successfully guessed the password used by Paradox team members to access McHire: “123456.” This weak password allowed Carroll and Curry to gain administrator access to a test restaurant within the McHire system. While this initial access only revealed employees of Paradox.ai, it provided valuable insights into the workings of the application.

However, the real concern emerged with the discovery of a second vulnerability. An insecure direct object reference (IDOR) flaw in the McHire API enabled the researchers to access a wealth of personal information from every chat interaction involving individuals who had ever applied for a job at McDonald’s. This exposed data included names, email addresses, phone numbers, addresses, candidacy states, form inputs such as preferred shifts, and even authentication tokens that could be used to log into the consumer UI and view raw chat messages.

The scale of the potential data breach is staggering, given that Paradox had previously touted McHire’s adoption by 90 percent of McDonald’s franchises. With McDonald’s boasting a market cap of $213 billion and Paradox having raised $200 million in 2020, the use of such a weak password and the presence of the IDOR flaw raise serious questions about the companies’ commitment to data security.

Fortunately, Carroll and Curry reported the vulnerabilities to Paradox, and the company addressed the issues within a day of disclosure. However, the incident serves as a stark reminder of the importance of implementing robust security measures, especially when handling sensitive personal information.

The exposure of personal data belonging to millions of job applicants is a major concern, as it could potentially lead to identity theft, phishing attempts, or other malicious activities. It is crucial for companies, particularly those dealing with vast amounts of user data, to prioritize security and adopt stringent password policies and secure coding practices.

Read more at Tom’s Hardware here.

Lucas Nolan is a reporter for Breitbart News covering issues of free speech and online censorship.

Read the full article here

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link

Related Articles

Tech

Nigel Farage The Top Performing UK Politician on TikTok

June 16, 2026
Tech

Hackers Linked to Iran Claim to Have Infiltrated FBI Drone Network

June 16, 2026
Tech

BOKHARI: Europe Declares War on American Tech Companies

June 15, 2026
Tech

Elon Musk’s SpaceX Jumps 8% in Post-IPO Market Open as Analysts Clash on Value

June 15, 2026
Tech

Anthropic Sends Team to Washington in Bid to Lift AI Export Ban

June 15, 2026
Tech

Far Leftists Torch Tesa, Smash Shop Windows, Clash With Cops at G7 Summit in Geneva

June 14, 2026
Add A Comment
Leave A Reply Cancel Reply

Editors Picks

Happy 250th Birthday America! Trump Announces ‘Largest Fireworks Show in History’

June 16, 2026

The calm in Hormuz could be dangerously brief

June 16, 2026

Nigel Farage The Top Performing UK Politician on TikTok

June 16, 2026

VIDEO: Iranian Fans Fight Each Other Amid War Tensions at World Cup

June 16, 2026
Latest News

Brent Crude Dips Below $80

June 16, 2026

Calls to Impeach Obama-Appointed Judge Intensify over Sex Scandal Involving Atlanta Police Commander

June 16, 2026

Sweden passes illegal migrant ‘snitch law’

June 16, 2026

Subscribe to News

Get the latest politics news and updates directly to your inbox.

The Politic Review is your one-stop website for the latest politics news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Instagram Pinterest YouTube
Latest Articles

Trump: Syria Could Do ‘Better Job’ of Taking Out Hezbollah than Israel

June 16, 2026

Happy 250th Birthday America! Trump Announces ‘Largest Fireworks Show in History’

June 16, 2026

The calm in Hormuz could be dangerously brief

June 16, 2026

Subscribe to Updates

Get the latest politics news and updates directly to your inbox.

© 2026 Prices.com LLC. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • For Advertisers
  • Contact

Type above and press Enter to search. Press Esc to cancel.