Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse

Incident 1356: Urban VPN Proxy Browser Extension Reportedly Harvested and Sold Private AI Chatbot Conversations via Silent Update

Description: Security researchers reported that the Urban VPN Proxy browser extension introduced AI conversation–harvesting functionality in version 5.5.0, released July 9, 2025. The extension allegedly intercepted and exfiltrated private conversations from AI platforms including ChatGPT, Claude, Gemini, Grok, and others without a user-facing opt-out. The data, including sensitive personal and financial information, was reportedly shared with affiliated data brokers for commercial analytics.

Tools

New ReportNew ReportNew ResponseNew ResponseDiscoverDiscoverView HistoryView History

Entities

View all entities
Alleged: Urban Cyber Security Inc. and BiScience developed an AI system deployed by Urban Cyber Security Inc., which harmed Urban VPN Proxy users , General public , Gemini users , Copilot users , Claude users , ChatGPT users , Chatbot users , Browser extension users , Grok users , Meta AI users , DeepSeek users and Perplexity users.
Alleged implicated AI systems: Perplexity , Meta AI , Grok , Gemini , DeepSeek , Copilot , Claude , ChatGPT and Urban VPN Proxy

Incident Stats

Incident ID
1356
Report Count
3
Incident Date
2025-07-09
Editors
Daniel Atherton

Incident Reports

Reports Timeline

Incident Occurrence+1
8 Million Users' AI Conversations Sold for Profit by "Privacy" Extensions
Millions of Private ChatGPT Conversations Are Being Harvested and Sold for Profit
Loading...
8 Million Users' AI Conversations Sold for Profit by "Privacy" Extensions

8 Million Users' AI Conversations Sold for Profit by "Privacy" Extensions

koi.ai

Loading...
This Google Chrome extension has been silently stealing every AI prompt its users enter

This Google Chrome extension has been silently stealing every AI prompt its users enter

techradar.com

Loading...
Millions of Private ChatGPT Conversations Are Being Harvested and Sold for Profit

Millions of Private ChatGPT Conversations Are Being Harvested and Sold for Profit

futurism.com

Loading...
8 Million Users' AI Conversations Sold for Profit by "Privacy" Extensions
koi.ai · 2025

A few weeks ago, I was wrestling with a major life decision. Like I've grown used to doing, I opened Claude and started thinking out loud-laying out the options, weighing the tradeoffs, asking for perspective.

Midway through the conversatio…

Loading...
This Google Chrome extension has been silently stealing every AI prompt its users enter
techradar.com · 2025

A popular Google Chrome browser extension has been found to be harvesting anything its users prompted into most of the biggest AI tools around, as well as collecting the chatbot's responses, all apparently in order to earn an extra few doll…

Loading...
Millions of Private ChatGPT Conversations Are Being Harvested and Sold for Profit
futurism.com · 2025

You know those memes about how there's no such thing as a free VPN? Here's the ultimate cautionary tale.

A recent investigation by Tel Aviv-based security firm Koi uncovered a massive data harvesting operation tied to a voluntary extension …

Variants

A "variant" is an AI incident similar to a known case—it has the same causes, harms, and AI system. Instead of listing it separately, we group it under the first reported incident. Unlike other incidents, variants do not need to have been reported outside the AIID. Learn more from the research paper.
Seen something similar?

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Loading...
High-Toxicity Assessed on Text Involving Women and Minority Groups

High-Toxicity Assessed on Text Involving Women and Minority Groups

Feb 2017 · 8 reports
Loading...
Biased Sentiment Analysis

Biased Sentiment Analysis

Oct 2017 · 7 reports
Loading...
Content Using Bestiality Thumbnails Allegedly Evaded YouTube’s Thumbnail Monitoring System

Content Using Bestiality Thumbnails Allegedly Evaded YouTube’s Thumbnail Monitoring System

Apr 2018 · 2 reports
Previous IncidentNext Incident

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Loading...
High-Toxicity Assessed on Text Involving Women and Minority Groups

High-Toxicity Assessed on Text Involving Women and Minority Groups

Feb 2017 · 8 reports
Loading...
Biased Sentiment Analysis

Biased Sentiment Analysis

Oct 2017 · 7 reports
Loading...
Content Using Bestiality Thumbnails Allegedly Evaded YouTube’s Thumbnail Monitoring System

Content Using Bestiality Thumbnails Allegedly Evaded YouTube’s Thumbnail Monitoring System

Apr 2018 · 2 reports

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2024 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • d690bcc