threat-intel
Suitable AI : 15 176 comptes exposés via GraphQL
Medium
Summary
A hacker claims to have breached Suitable AI, a recruitment platform utilizing AI, exposing data of 15,176 candidates and potentially compromising administrator accounts. The breach stemmed from vulnerabilities in Suitable AI’s GraphQL API, allowing for large-scale account usurpation and access to sensitive information including CVs, internal evaluations, and recruiter data. The attacker claims the platform is illegitimate, with candidates never receiving applications or even viewing their profiles.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
