Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
ai-platform-securitybreach-disclosure-notificationmass-credential-exposure

Meta Suspends Internal AI Training Program After Employee Data Exposure

Updated 6h agoFirst seen Jun 23, 20268 sources

Meta halted its internal Model Capability Initiative (MCI) after a permissions misconfiguration exposed sensitive employee-monitoring data to the company’s broader workforce. The program, launched in April for U.S.-based employees, collected detailed telemetry including mouse movements, clicks, keystrokes, and occasional screenshots to train internal AI and machine-learning systems. Reuters-reported documents indicated the exposed data included private conversations, AI prompts and request transcripts, and other records gathered from internal systems.

Internal concerns had reportedly been raised earlier about both the intrusiveness of the monitoring and data-storage weaknesses, with a later security alert finding confidential information accessible in cleartext to Meta employees. The exposed material reportedly included named HR performance data and documents classified under DSS sensitivity levels 1 through 4. Meta said it has found no evidence of improper employee access or malicious exploitation, but it suspended the program while investigating and has not said when, or in what form, it may resume.

Share:
Meta Suspends Internal AI Training Program After Employee Data Exposure
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

6 events from the most recent confirmed update back to the earliest known activity.

6 EVENTS
Jun 24, 20261d ago

Meta employees petition against MCI monitoring program

In May 2026, Meta employees petitioned against the Model Capability Initiative, raising concerns about privacy protections and the scope of telemetry collection for AI training. The reference says workers questioned the lack of completed privacy reviews and the vagueness of proposed mitigations.

Meta keylogs staff typing for AI training - then leaks it - Pivot to AI
Jun 23, 20262d ago

Meta flags MCI data storage problems internally

Reuters reported that data storage issues related to the MCI program had already been flagged in May. This preceded discovery that collected confidential data was broadly accessible internally.

Fuite de données chez Meta : l'entraînement de l'IA interne suspe ...

Internal alert finds MCI data exposed to all Meta staff

An internal security alert determined that confidential MCI training data was accessible in cleartext to any Meta employee because of a permissions misconfiguration. Exposed data reportedly included AI prompts and transcripts, private employee conversations, HR performance data, and documents with DSS sensitivity labels 1 through 4.

Meta Pauses Employee Mouse-Tracking AI Training Program After Internal Data Exposure - gHacks Tech News

Meta launches internal MCI employee monitoring program

Meta began deploying its Model Capability Initiative (MCI) to U.S.-based employees in April 2026 to collect telemetry such as mouse movements, clicks, keystrokes, and occasional screenshots for AI training.

Meta Pauses Employee Mouse-Tracking AI Training Program After Internal Data Exposure - gHacks Tech News
Jun 22, 20263d ago

Meta pauses MCI program after internal data exposure

On 2026-06-22, Meta halted the Model Capability Initiative while it investigated the internal exposure of sensitive employee monitoring data. Meta said it had no evidence that employees improperly accessed the data or that the issue involved external malicious exploitation.

Meta Pauses Employee Mouse-Tracking AI Training Program After Internal Data Exposure - gHacks Tech News
Jun 18, 20267d ago

Meta detects unauthorized MCI data access and applies initial fix

Meta said it detected unauthorized internal access to MCI data on 2026-06-18 and fixed the issue within four hours. The company later acknowledged that the initial remediation was incomplete and that additional access restrictions were required.

"직원 데이터는 모으고 보호는 못했다"…메타 AI 실험에 경고음 | CIO
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

28 LINKEDOpen in app
Threat actors
1 linked
Malware
1 linked
Organizations
22 linked
Meta PlatformsTom's HardwareBusiness InsiderReutersWIREDAnthropicOracleAmazon Web ServicesPepsiCoFoundryBritish Broadcasting CorporationMicrosoft CorporationSpaceXInternational Data CorporationLos Angeles TimesInfo-Tech Research GroupTech RadarConifers.aiAcceligenceBloterLex LuminaRank One
Breaches
4 linked
META-2026-04META-2026-06META-2026-01METAPLATFORMSINC-2026-04
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.