I've got no idea who codewall is. Is there acknowledgment from McKinsey that they actually patched the issue referenced? I don't see any reference to "codewall ai" in any news article before yesterday and there's no names on the site.
Yeah can't find much information either. I would like to see at least some proof. Either via Mckinsey or from the security team.
it is weird isn't it? The register article implies that it's acknowledged by McKinsey- https://www.theregister.com/2026/03/09/mckinsey_ai_chatbot_h...
Edit: Apparently, this is the CEO https://github.com/eth0izzle
If it's true that there's 58k users in the dump, that would mean former employees are in the dump
I assume that means McKinsey would need to disclose it, or at least alert the former employees of the breach?
There's a responsible disclosure timeline at the bottom indicating they'd all been fixed.
We’re pretty new! :) They didn’t want to provide comment on our post but they did offer comment via The Register.