Grok leaks user chats via encrypted webpage trick, 11 weeks after xAI warned
Aug 20, 2026
< 1 min read
by Randa Moses
for CryptoPolitan

Share:
AI Overview
Adversa AI disclosed that xAI's Grok leaks user names, locations and full chat histories to attackers who can hide encrypted commands on a web page, and xAI has not yet issued a patch. This security and privacy vulnerability raises risks for crypto platforms and DeFi projects integrating Grok, could hinder adoption, invite regulatory scrutiny and cause reputational damage.
Bearish
Adversa AI says Grok still leaks user names, location, and full chat history to attackers hiding encrypted commands on a web page. xAI has not yet patched this.