Perplexity, Anthropic and Other Big AI Companies Might Have Exposed Secrets on GitHub

Researchers claimed that 65 percent of the 50 leading AI companies have leaked verified secrets on GitHub.

Advertisement
Written by Akash Dutta, Edited by Rohan Pal | Updated: 12 November 2025 14:29 IST
Highlights
  • Researchers looked at the Forbes 2025 AI 50 list for exposure
  • They were able to find API keys, tokens, and sensitive credentials
  • The report found leaked secrets of a company with 0 public repositories

The researchers highlighted that AI companies should invest in secret scanning to protect their assets

Photo Credit: GitHub

Perplexity, Anthropic, and other leading artificial intelligence (AI) companies might have exposed sensitive data on GitHub, claims a cloud security firm. As per the firm's report, at least 65 percent of the leading AI companies have exposure risk around their proprietary AI models, datasets, and training processes. Some of the exposed data includes application programming interface (API) keys, tokens, and sensitive credentials, the report claimed. The researchers also highlighted the need for AI companies to use more advanced scanners that can alert them to such exposure.

GitHub Contains AI Secrets of Major AI Firms, Claims Research

According to the cloud security platform Wiz, 65 percent of the AI companies mentioned in Forbes' AI 50 list have their AI secrets exposed on GitHub. This would include companies such as Anthropic, Mistral, Cohere, Midjourney, Perplexity, Suno, World Labs, and more. However, the researchers did not name any particular company.

The sensitive data leaks on GitHub as the company's developers use the platform to code and create repositories. These repositories can inadvertently contain API keys, dataset information, and other information that can even reveal critical information about their proprietary AI models. The risk increases with a higher GitHub footprint, although the researchers found an instance where data was leaked even without any public repositories.

Advertisement

To test whether these AI companies have any exposure risk, Wiz's team first identified the employees of the company by scanning through the followers of an organisation on LinkedIn, accounts referencing the organisation name in their GitHub metadata, code contributors, and correlating the information across Hugging Face and other platforms.

Advertisement

After identifying the accounts, the researchers then performed an extensive scan across three parameters of depth, coverage, and perimeter. Depth search or searching for new sources lets the researchers scan the accounts' full commit history, commit history on forks, deleted forks, workflow logs, and gists. The researchers also found that the employees can sometimes add this sensitive data into their own public repositories and gists.

Some of the leaked data surfaced by the team includes model weights and biases, Google API, credentials of Hugging Face and ElevenLabs, and more.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 15 Price in India May Have Leaked via Listing Ahead of Launch
  2. Oppo Reno 15 Pro Features Leaked; Could Include a Reno 15C Model
  3. Latest Pixel Drop Brings Several New Features to Pixel Phones
  4. Realme Neo 8 Could Launch With 8,000mAh Battery and More
  5. Nothing Phone 3a Lite India Launch Confirmed by the Brand
  6. ChatGPT Might Soon Go Social With a Group Chats Feature
  7. Vivo X300 Series Teased to Launch Soon in India
  8. Exclusive: iQOO 15's Launch Price Is Not What You'd Expect
  9. Perplexity, Anthropic and Others Might Have Leaked AI Secrets on GitHub
  10. You Can Now Convert PDFs in Google Drive into AI-Powered Audio Podcasts
  1. Google Drive Gets Popular AI-Powered Podcast-Style Overviews for PDFs
  2. OnePlus Nord 6 Launch Timeline Leaked: Expected Specifications, Features
  3. Valve to Reportedly Debut Its Next VR Headset, 'Steam Frame', This Week; Half Life 3 Announcement Rumoured
  4. Realme Neo 8 Key Specifications Leaked Online; Might Launch With an 8,000mAh Battery
  5. OpenAI Tipped to Release ChatGPT Group Chats Feature to Let Multiple Users Collaborate
  6. Bitcoin Slips to $103,500 as Market Consolidates Amidst Mixed Global Cues
  7. Google Introduces Private AI Compute for Privacy-Safe Cloud-Backed AI Processing
  8. Elden Ring Nightreign DLC, the Forsaken Hollows, Announced; Launch Set for December
  9. Oppo Reno 15 Pro Specifications Leaked; Compact Model Could be Called Reno 15C
  10. Perplexity, Anthropic and Other Big AI Companies Might Have Exposed Secrets on GitHub
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.