{"version":"1.0","type":"rich","provider_name":"Acast","provider_url":"https://acast.com","height":250,"width":700,"html":"<iframe src=\"https://embed.acast.com/$/66cf6d924960e4eb18d4aa8d/697cc745ebb1ff695f47e737?\" frameBorder=\"0\" width=\"700\" height=\"250\"></iframe>","title":"WhatsApp Encryption on Trial & AI Chat App Data Exposure: Enterprise Messaging Risks","thumbnail_width":200,"thumbnail_height":200,"thumbnail_url":"https://open-images.acast.com/shows/66cf6d924960e4eb18d4aa8d/1769784912091-3b01133e-5881-456f-a079-50a6c3625d4c.jpeg?height=200","description":"<p>In this episode of <strong>IT SPARC Cast – CVE of the Week</strong>, John Barger and Lou Schmidt break format to examine two high-impact security and privacy stories that every enterprise IT and security leader should be paying attention to.</p><p><br></p><p>First, we dive into a new lawsuit alleging that <strong>Meta can access or infer WhatsApp message contents</strong>, despite years of public claims that WhatsApp is fully end-to-end encrypted. We unpack what “access” really means in modern encrypted messaging systems, including metadata, client-side processing, backups, and enterprise risk implications—especially for organizations using WhatsApp for daily business communications.</p><p><br></p><p><a href=\"https://www.bloomberg.com/news/articles/2026-01-25/lawsuit-claims-meta-can-see-whatsapp-chats-in-breach-of-privacy\" rel=\"noopener noreferrer\" target=\"_blank\">https://www.bloomberg.com/news/articles/2026-01-25/lawsuit-claims-meta-can-see-whatsapp-chats-in-breach-of-privacy</a></p><p><br></p><p>Next, we examine a major data exposure involving <strong>Chat &amp; Ask AI</strong>, a popular AI chatbot aggregator with tens of millions of users. Due to a backend <strong>Firebase misconfiguration</strong>, hundreds of millions of private conversations—including highly sensitive topics—were left publicly accessible. This incident highlights the growing risk of <strong>Shadow AI</strong> inside enterprises and the dangers of third-party AI wrappers that lack enterprise-grade security controls.</p><p><br></p><p><a href=\"https://www.404media.co/massive-ai-chat-app-leaked-millions-of-users-private-conversations/\" rel=\"noopener noreferrer\" target=\"_blank\">https://www.404media.co/massive-ai-chat-app-leaked-millions-of-users-private-conversations/</a></p><p><br></p><p>The episode closes with listener feedback on a previously covered UniFi Access vulnerability and a broader discussion on how organizations should educate, monitor, and protect users without resorting to blunt enforcement.</p><p><br></p>","author_name":"John Barger"}