Bee Cheng Hiang customers' e-mail addresses exposed in Singapore's first case of AI-related data breach
Bee Cheng Hiang, a Singaporean food company, accidentally exposed 95,000 customer email addresses due to an employee's improper use of an AI tool. The incident, which involved a poorly constructed prompt for mass emailing, is the first reported AI-related data breach in Singapore.
Why it matters
This highlights the growing risks of human error when integrating generative AI into business workflows and the need for better AI literacy in the workplace.
There is no evidence of further misuse, says the Personal Data Protection Commission
[SINGAPORE] More than 95,000 of Bee Cheng Hiang’s customers had their e-mail addresses exposed in April after an employee used a bad prompt in an artificial intelligence tool, in Singapore’s first reported case of an AI-related data breach.
The bad prompt generated code that sent out marketing e-mails with all the recipients’ addresses visible to everyone.
It was the first AI-related data breach reported to the Personal Data Protection Commission (PDPC), the commission told The Straits Times on Wednesday (Sep 30).
It was also the first time the home-grown traditional food products company known for its bak kwa was using an AI tool for its business operations.
Bee Cheng Hiang’s marketing e-mails were sent in batches of 1,000 customers, according to details published on Sep 21 on PDPC’s website.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in