A newly launched security research project has identified nearly 200 apps in the App Store that are actively exposing sensitive user data, including names, emails, and complete chat histories. This discovery raises serious concerns about how well some developers protect the information you share through their apps.
What Is Firehound and What Did It Find?
Firehound is a security scanning project operated by CovertLabs that actively identifies and catalogs mobile apps with exposed databases or improperly secured cloud storage. As of this writing, the project has flagged 198 iOS apps, with 196 of them confirmed to be leaking user data to varying degrees.
The most alarming case involves an app called “Chat & Ask AI,” which reportedly exposes more than 406 million records from over 18 million users. According to security researchers, this includes complete chat histories with AI assistants, along with personally identifiable information such as email addresses and usernames.
The scope of the problem extends across multiple app categories, not just AI tools. Affected apps have been found in education, entertainment, health and fitness, lifestyle, social networking, and other categories.
How Are These Apps Leaking Data?
Most of the exposed apps appear to have misconfigured backend systems. In many cases, databases or cloud storage buckets that should be private are accessible to anyone who knows where to look. This is not typically the result of a sophisticated hack or breach, but rather a failure in basic security practices during app development.
While many of the flagged apps are AI-related chatbots or assistants, it remains unclear whether these vulnerabilities stem from automated development tools or simply careless coding. What is clear is that a significant number of apps have made it through the App Store review process despite these serious flaws.
What Data Is at Risk?
The types of exposed data vary by app, but commonly include:
- Full names and email addresses
- Complete conversation histories
- User IDs and device identifiers
- Account metadata and usage patterns
- In some cases, payment or subscription information
This kind of exposure can enable identity theft, phishing attacks, social engineering, or simply invasive profiling. If you’ve shared sensitive personal details or private thoughts with an AI chatbot app, those records may be freely accessible on the open internet.
How to Check If You’re Affected
The Firehound project maintains a public database at firehound.covertlabs.io where you can search for specific apps. The site provides a searchable list ranked by the number of exposed files and records. Some detailed scan results are restricted and require a verified account, especially for highly sensitive findings.
If you use AI chat apps or any lesser-known utilities, it’s worth checking whether they appear on the list. Even if an app you use isn’t currently listed, that doesn’t guarantee it’s secure. New discoveries are being added as the scanning project continues.
What You Should Do Right Now
If you’ve used any of the apps flagged by Firehound, especially those at the top of the exposure rankings, here are some practical steps to take:
- Delete the app from your device immediately
- Change any passwords associated with accounts you discussed in the app
- Review your email for suspicious activity or phishing attempts
- Consider enabling two-factor authentication on important accounts
- Be cautious of unexpected messages or calls referencing information you shared in the app
Going forward, be more selective about the apps you download, especially from developers you’re not familiar with. Check reviews carefully, and be wary of apps with few downloads or vague privacy policies.
What This Means for App Store Security
This situation highlights a growing challenge in the app ecosystem. As development tools become more accessible and the barrier to entry lowers, more apps are being published without adequate security oversight. Apple’s App Store review process is designed to catch many issues, but it clearly doesn’t catch everything, especially backend misconfigurations that only become apparent through active security scanning.
The rise of AI-powered development tools may be accelerating this problem. While these tools make it easier to build functional apps quickly, they don’t necessarily teach developers about secure infrastructure or data protection best practices.
Responsibility ultimately falls on developers to properly secure user data, regardless of how their apps are built. But as users, we also need to remain vigilant about what we share and with whom.
Moving Forward: A More Cautious Approach
This discovery serves as a sobering reminder that not every app in a major app store is trustworthy, even if it has been reviewed and approved. The convenience of AI chatbots and other tools comes with real privacy risks, especially when dealing with lesser-known developers.
When choosing apps, especially those that handle personal conversations or sensitive data, prioritize established developers with clear privacy policies and good track records. Be skeptical of apps with overly broad permission requests or vague descriptions of how they use your data.
And remember: once you share information with an app, you’re trusting that developer to protect it properly. That trust should be earned, not given freely.
FAQ
Q: How can I tell if an app I use is on the Firehound list?
A: Visit firehound.covertlabs.io and use the search function to look up specific app names. The site ranks apps by the number of exposed files and records. Keep in mind that the list is updated regularly as new vulnerabilities are discovered.
Q: Are all AI chat apps unsafe?
A: No, but many of the apps flagged by Firehound happen to be AI-related. Well-established AI services from major companies typically have better security practices. The risk is higher with lesser-known apps from small or unknown developers.
Q: Will Apple remove these apps from the App Store?
A: Apple has not made a public statement about this research as of this writing. Historically, Apple does remove apps when security issues are brought to light, but the timeline for action can vary. Don’t wait for Apple to act before protecting yourself.
Q: Can I recover or delete my exposed data?
A: Unfortunately, once data has been exposed through an insecure database, it may have already been accessed or archived by third parties. You can contact the app developer to request data deletion, but there’s no guarantee the exposed copies can be fully removed from the internet.
First and Geek Verdict
The Firehound findings are a wake-up call for anyone who casually downloads apps without considering the security implications. Nearly 200 apps with millions of exposed user records is not a small problem, and it highlights a fundamental gap in how some developers approach data protection.
As someone who values both convenience and privacy, I find this situation frustrating but not entirely surprising. The app ecosystem has grown rapidly, and not every developer has the expertise or resources to implement proper security measures. That doesn’t excuse the failures, but it does mean we need to be more careful about which apps we trust with our personal information.
If you’ve been affected, take action now to limit the potential damage. And going forward, treat app downloads with a bit more skepticism. Not every tool that promises convenience is worth the privacy trade-off, especially when that tool comes from a developer you’ve never heard of.
Stay cautious, stay informed, and remember that your data is worth protecting.


