Imagine a company using the password â123456â for one of its internal systems. Thatâs exactly what happened with a chatbot McDonaldâs used to hire staff. The security flaw was discovered by security researchers who were able to sign in with that password in just 30 minutes.
The chatbot, named Olivia, is on the McHire website and is used to screen applicants, ask for their contact information, and direct them to a personality test. The researchers gained âfull access to virtually every application thatâs ever been made to McDonaldâs going back yearsâ. The database contained the names, email addresses, and phone numbers of 64 million applicants.
Why Was This Password a Problem?
The flaw was with a test account last used in 2019. The company behind the chatbot, Paradox.ai, said it had neglected to update the test accountâs username and password when it tightened its security standards. McDonaldâs was âdisappointed by this unacceptable vulnerabilityâ and mandated that Paradox.ai fix it âimmediatelyâ.
This shows how a simple oversight can lead to a massive data leak. Itâs a clear reminder that you should always use strong, unique passwords for every online account, and never use a weak password like â123456â. I recommend using a password manager like Bitwarden to generate and store your passwords.
What Else Should You Look Out For?
The Co-op recently had the biggest data breach in UK retail history, and hackers stole the names, addresses, and contact info of all 6.5 million members. This information is enough for criminals to create convincing scams. If youâve used your Co-op password on any other sites, you should change it there too. Always be on the lookout for suspicious emails or messages asking for your personal details.
â
Bibliography:
- âMcDonaldâs chatbot used the password â123456â.â Computeractive, Computeractive â Issue 715, 30 July-12 August 2025.
- âCo-op Hackers Steal Your Data.â Computeractive, Computeractive â Issue 715, 30 July-12 August 2025.
- âStop hackers spying on your security camera.â Computeractive, Computeractive â Issue 715, 30 July-12 August 2025.
- NVIDIA to Invest $5 Billion in Rival Intel in Landmark AI Chip Collaboration
- Spotify Premium Lossless Audio: How to Enable Hi-Fi Streaming
- Apple Event September 2025: Everything Announced â iPhone 17, AirPods Pro 3, Apple Watch & More
- iPhone 17 Series Unveiled at Apple Event: 17, 17 Air, and 17 Pro Redefine Innovation
- A Guide to Factory Reset Google Pixel/Android with Family Link Account | Safely Remove Childâs Account
- How to Recover Permanently Deleted Files on Mac
- How to Remove Microsoft Store Ads Showing Up on Windows