McDonald's uses an AI hiring platform, McHire.com, which was discovered to have serious security flaws by researchers Ian Carroll and Sam Curry.
The platform had an admin account with the username and password '123456', granting access to 64 million candidate chat logs containing personal information.
Carroll and Curry were able to access the chat logs and personal data of multiple applicants by exploiting this vulnerability.
The security issue has been patched, and Paradox.ai, the AI firm behind the chatbot, confirmed the findings. McDonald's blamed Paradox.ai and emphasized the quick resolution of the vulnerability.