Skip to main content
Meet us at Black Hat USA 2026— Las Vegas, August 1–6Book a Meeting
Mallory
Back to intelligence
breach-disclosure-notificationinternet-exposed-servicemass-credential-exposurecloud-misconfiguration

Dialog Member Data Exposed Through Misconfigured App Site

Updated 1d agoFirst seen Jun 25, 20264 sources

Dialog, an invite-only network and private events group cofounded by Peter Thiel, exposed sensitive data on roughly 200 members and past participants through a misconfigured app distribution site that appears to have made internal files publicly accessible. Reporting indicates that anyone could submit an email address without a password and reach a page that loaded plaintext records through standard browser developer tools, exposing details such as dates of birth, cell phone numbers, emergency contacts, internal rankings and grading notes, political leanings assigned by Dialog, and active digital login tokens.

Dialog told members the database had been breached by a criminal hacker, but WIRED reported it found no evidence that an intrusion was required and concluded the exposure stemmed from insecure configuration tied to Fillout forms and Airtable-connected data. Fillout said its own systems were not known to be compromised and that customers are responsible for secure setup, while security experts cited in coverage said the incident reflects the persistent risk of security misconfiguration, ranked by OWASP as a leading application security weakness.

Share:
Dialog Member Data Exposed Through Misconfigured App Site
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

4 events from the most recent confirmed update back to the earliest known activity.

4 EVENTS
Jun 26, 20262d ago

Pentagon examines Dialog exposure over affected national security personnel

WIRED reported that the Pentagon is looking into the Dialog data exposure after records reportedly revealed personal information belonging to multiple US national security officials, including intelligence and military personnel. The development marked a government response and highlighted that the exposed victim set included especially sensitive individuals.

The Pentagon Is Looking Into the Dialog Data Exposure for Unmasking National Security Officials | WIRED
Jun 25, 20263d ago

Dialog member data was exposed via website misconfiguration

A misconfigured landing page for Dialog's app made internal files containing personal information for roughly 200 members and past participants publicly accessible without a demonstrated intrusion. Reporting said the exposed workflow involved Fillout forms connected to Airtable and that access could be obtained through standard browser developer tools.

Elite network says it was hacked after members’ personal data was left exposed - Malware News - Malware Analysis, News and Indicators
Jun 23, 20265d ago

WIRED reported no evidence of a break-in at Dialog

WIRED published an analysis concluding there was no evidence of an actual intrusion into Dialog's systems and that the exposed files appeared reachable through a publicly accessible app page. Experts cited by WIRED described the incident as a security misconfiguration rather than a confirmed hack.

Dialog Claims It Was Hacked. A Misconfigured Website Left Its Members Exposed | WIRED

Dialog notified members that their data had been breached

Dialog told members and past event participants that a database containing their personal information had been breached by a purported criminal hacker. The company characterized the exposure as a hack, despite later reporting finding no evidence that an intrusion was required.

Dialog Claims It Was Hacked. A Misconfigured Website Left Its Members Exposed | WIRED
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

25 LINKEDOpen in app
Affected products
1 linked
Airtable
Organizations
20 linked
WIREDDialogPepsiCoMeta PlatformsBloombergMyPillowGizmodoMadison Square GardenOpenaiRank OneAirtablePayPalFilloutPalantir TechnologiesMalwarebytesAppleMicrosoft CorporationOracleGoogleBusPatrol
Breaches
4 linked
DIALOG-2026-06UNITEDSTATESDEPARTMENTOFDEFENSE-2026-01DIALOG-2026-01NATIONALSECURITYCOUNCIL-2026-01
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.