Government employee exposed private API key linked to sensitive U.S. data
A government employee with access to sensitive data from U.S. agencies has reportedly leaked a private API key related to Elon Musk’s xAI chatbot. Marko Elez, a special government staffer working on high-security systems at the U.S. Treasury, Social Security Administration, and Department of Homeland Security, accidentally exposed the key to his GitHub account. This key provided access to multiple AI models, including Grok from xAI. While the key was later removed after being flagged, it was never revoked, allowing potential continued access to these models. The discovery was made by Philippe Caturegli, the founder of Seralys, who alerted Elez to the issue. The incident has raised serious concerns about the handling of sensitive government data, as security experts point out the potential risks of mishandling critical information. The case highlights the importance of maintaining stringent security practices when dealing with private data in both government and private sectors.
