Skip to content
December 3, 2025
Newsletter
Random News
Securitydive

Securitydive

Data Security

  • News
    • Industry News
    • Product News
    • Tech News
  • Articles
    • Industry Trend
    • Tech Trend
    • Product Trend
  • Deep Analysis
  • Interviews
    • Corporate Interviews
    • Expert Interviews
  • Hacking Fox
    • International Hacking News
    • National Hacking News
  • About us
  • Contact us
  • Home
  • 2025
  • December
  • 1
  • OpenAI Confirms Data Breach—Here’s Who Is Impacted
  • CYBERSECUIRTY NEWS
  • Data security
  • Information security

OpenAI Confirms Data Breach—Here’s Who Is Impacted

admin2 days ago04 mins
OpenAI said a Mixpanel breach exposed API user metadata—and urged customers to watch for phishing attacks.
  • Mixpanel said an attacker accessed part of its systems and exported customer-identifiable metadata.
  • OpenAI said no prompts, API keys, payment information, or authentication tokens were involved.
  • Both companies reviewed the incident, notified affected users, and outlined new security steps
  • A breach at analytics provider Mixpanel earlier this month exposed account names, email addresses, and browser locations for some users of OpenAI’s API, the AI giant confirmed Wednesday, raising concerns that cybercriminals could use the stolen metadata in targeted phishing attempts.

    According to Mixpanel, on November 8, an unknown attacker gained access to part of its systems and exported a dataset containing customer-identifiable metadata and analytics information. The stolen data included usernames, email addresses, approximate browser-based location, operating system, and browser details.

    OpenAI said the breach did not include users’ prompts, API keys, payment information, or authentication tokens.

    Only data from users who accessed OpenAI’s tech via the API—aka, via external apps powered by GPT—was leaked, the company said. In other words, if you access the ChatGPT chatbot directly from OpenAI’s website, then you won’t be impacted here.

  • “As part of our security investigation, we removed Mixpanel from our production services, reviewed the affected datasets, and are working closely with Mixpanel and other partners to fully understand the incident and its scope,” OpenAI said in a statement.

    Founded in 2009, the San Francisco-based Mixpanel is a product analytics platform used to track user behavior across web and mobile applications. The company said it detected the “smishing” campaign, and after an initial investigation and response, alerted OpenAI the next day.

    “We are committed to transparency, and are notifying all impacted customers and users,” OpenAI said. “We also hold our partners and vendors accountable for the highest bar for security and privacy of their services.”

    Mixpanel said it secured affected accounts, revoked active sessions, rotated compromised credentials, and blocked malicious IP addresses. The company also reset employee passwords, hired external cybersecurity firms, and reviewed authentication, session, and export logs.

    After the breach, Mixpanel said it began notifying impacted customers about the incident.

    “If you have not heard from us directly, you were not impacted,” Mixpanel CEO Jen Taylor said in a statement. “We continue to prioritize security as a core tenet of our company, products, and services. We are committed to supporting our customers and communicating transparently about this incident.”

(Courtesy:Dycrypt.co)

Tagged: Attacker cyber security Metadata Mixpanel Open AI Phishing attack

Post navigation

Previous: FCC says hackers hijack US radio gear to send for False Alerts
Next: Akira’s SonicWall Hacks Are Taking Down Large Enterprises

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Hyundai Motor launches 1st group-level dedicated cyberthreat team

admin2 days ago 0

Deepwatch Expands its Footprint in India with a New GCC in Bengaluru to Advance AI-Driven Cybersecurity Innovation

admin6 days ago 0

Recent Posts

  • DOT Mandate aimed at Curbing, Cyber frauds
  • Hyundai Motor launches 1st group-level dedicated cyberthreat team
  • Akira’s SonicWall Hacks Are Taking Down Large Enterprises
  • OpenAI Confirms Data Breach—Here’s Who Is Impacted
  • FCC says hackers hijack US radio gear to send for False Alerts

Recent Comments

No comments to show.

Archives

  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023

Categories

  • AI
  • Articles
  • Cloud Security
  • Corporate Interviews
  • Cyber Security
  • CYBERSECUIRTY NEWS
  • Data security
  • Deep Analysis
  • Expert Interviews
  • Hacking Fox
  • Industry News
  • Industry Trend
  • Information security
  • International Hacking News
  • Interviews
  • Interviews
  • Leadership
  • National Hacking News
  • News
  • Product News
  • Product Trend
  • Ransomware
  • Report
  • Tech News
  • Tech Trend
  • Uncategorized

Quick links

  • About us
  • Contact us

Newsletter

Securitydive 2025. Powered By BlazeThemes.
  • News
  • Articles
  • Deep Analysis
  • Interviews
  • Hacking Fox

WhatsApp us