Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
ai-platform-securityprivacy-surveillance-policy

AI Assistants Expand Personalization and Data Access, Raising Privacy and Integrity Risks

Updated 3mo agoFirst seen Jan 26, 20263 sources

Google is rolling out AI Mode personalization that can connect Google Search to Gmail and Google Photos for opt-in users, aiming to deliver more tailored results based on personal context. The feature is positioned as “secure” and is initially available via Labs for Google AI Pro and AI Ultra subscribers (with limited account eligibility), with Google stating the system processes data for specific prompts and does not directly train on a user’s inbox or photo library; the change nonetheless increases the amount of sensitive personal data that can be accessed during AI-assisted search workflows.

OpenAI is testing an upgrade to ChatGPT Temporary Chat that keeps the session from being saved to history or used for model improvement, while still allowing personalization signals (e.g., memory/style preferences) to apply—alongside a stated retention window where OpenAI may keep a copy for up to 30 days for safety. Separately, researchers and commentators warned about an “Ouroboros effect” where ChatGPT may cite AI-generated repositories such as xAI’s Grokipedia, increasing the risk of misinformation loops and “content traps” if AI systems do not rigorously vet sources, potentially degrading trust and decision-making even without direct training on the cited content.

Share:
AI Assistants Expand Personalization and Data Access, Raising Privacy and Integrity Risks
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

3 events from the most recent confirmed update back to the earliest known activity.

3 EVENTS
Jan 26, 20265mo ago

Reports raise concerns over ChatGPT citing xAI's Grokipedia

Observers reported that ChatGPT was occasionally citing Grokipedia, an xAI-associated repository of AI-written entries, particularly on obscure topics. The reports raised concerns about AI-to-AI citation loops spreading inaccurate information, while noting that neither OpenAI nor xAI had formally responded.

OpenAI tests upgraded ChatGPT Temporary Chat personalization

OpenAI began testing an upgrade to ChatGPT's Temporary Chat mode so sessions can use personalization signals such as memory, chat history, and style preferences without affecting the user's account history. The company also indicated users could disable this access and that temporary chats may still be retained for up to 30 days for safety purposes.

Google expands AI Mode with Gmail and Photos personalization

Google expanded its opt-in "Personal Intelligence" capability into AI Mode in Search, allowing eligible users to connect Gmail and Google Photos to personalize results. The company said the feature uses Gemini 3, excludes Workspace business and education accounts during the experimental phase, and does not directly train on users' inboxes or photo libraries.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

15 LINKEDOpen in app
Affected products
9 linked
Google SearchGmailGmailGoogle SearchGmailWindows 111passwordChatgpt1password
Organizations
6 linked
Google1passwordOpenaiAppleMicrosoft CorporationxAI
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.