Bee Cheng Hiang customers’ e-mail addresses exposed in Singapore’s first case of AI-related data breach
There is no evidence of further misuse, says the Personal Data Protection Commission
On September 30, the Personal Data Protection Commission (PDPC) of Singapore reported the country's first case of an AI-related data breach involving Bee Cheng Hiang. The breach was caused by an employee using a bad prompt in an AI tool, resulting in the exposure of over 95,000 customer email addresses. The PDPC clarified that there was no evidence of further misuse of the exposed email addresses.
The incident was attributed to a human error in developing the email distribution code, which should have hidden each recipient's email address from other customers. Bee Cheng Hiang has since implemented double-verification checks for all bulk email communications and developed a framework to govern employees' use of AI tools for coding.
Written by urgent.news from The Business Times - Singapore's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.