Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
Short version: A security vulnerability in Paradox’s McHire recruiting platform, which used the Olivia chatbot, allowed researchers to access applicant chat records in June 2025. The flaw involved a legacy test account protected by the password 123456 and a separate API authorization weakness.
Paradox says the vulnerability was fixed within hours after researchers Ian Carroll and Sam Curry reported it on June 30, 2025. The vendor says the researchers viewed information from five U.S. candidates during validation, no applicant information was posted publicly, and it found no evidence that another third party accessed the account. That does not establish that all 64 million applicants were hacked or that criminals stole their data.
What happened to McDonald’s applicant data?
Applicants at participating McDonald’s restaurants used McHire, a recruitment platform that incorporated Olivia, Paradox’s conversational recruiting assistant. Researchers examining the system found a link to a Paradox staff or team-member login and discovered that a legacy test account used the extremely weak password 123456.
The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →After entering the system, the researchers identified an API vulnerability that allowed access to chat-interaction records. In simple terms, the login was an old administrative door with a weak key, and the application behind that door did not properly restrict which records the account could request. This involved both authentication—verifying who can log in—and authorization—limiting what an authenticated account can see.
#1 Best Overall
The researchers reported the issue to Paradox on June 30, 2025. Paradox says it revoked the credentials and patched the affected endpoint within several hours. It published its security update on July 9, 2025. Paradox’s incident statement describes those remediation steps.
What information was involved?
Paradox said the researchers accessed chat interactions rather than the entire job-application database. The information potentially reachable through the affected system included:
- Names
- Email addresses
- Telephone numbers
- IP addresses
- Applicant conversations with Olivia
- Information entered during chatbot interactions and related application context
Paradox said the five candidate chats downloaded during validation included names, email addresses, phone numbers and IP addresses. It also said Social Security numbers and other sensitive personal information were not exposed because those fields remained protected. That account does not prove that every historical record was harmless, but it is the clearest available description of the data actually viewed.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
It would be inaccurate to say that every applicant’s resume, home address, work history, personality-test results or complete application was exposed. A chatbot conversation, a completed application and an employee’s HR file are different types of records.
Did 64 million McDonald’s applicants get hacked?
No—that conclusion is not supported by the available evidence.
The widely repeated figure of approximately 64 million refers to the scale of records or applicants potentially represented in the accessible system. It is not a confirmed count of people whose information was stolen.
Rank #3
| Question | What the evidence supports |
|---|---|
| How large was the potentially reachable pool? | A very large historical collection of McHire interactions, reportedly associated with roughly 64 million records or applicants. |
| How many candidate records did Paradox say the researchers viewed? | Information from five U.S. candidates during responsible validation. |
| Was there confirmed criminal theft? | Paradox said its records showed no access by another third party. |
| Was the data publicly posted? | Paradox said no applicant information was published online. |
WIRED reported that the researchers could reach a database containing a large number of historical McHire interactions. Paradox said most records were not tied to a candidate and that only five candidate chats were downloaded during testing. The distinction is important: potential exposure is not the same as confirmed access, confirmed theft or public disclosure. WIRED’s report provides the reported scale and response details.
Quick wins for a faster PC:
Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Clear out junk files and repair common Windows errorsFree Scan →Was this an AI failure?
Primarily, this was a conventional application-security and vendor-governance failure—not an AI hallucination, prompt-injection attack or autonomous AI decision-making incident.
The chatbot was part of the hiring workflow and handled applicant information, which made the consequences of weak controls more serious. But the reported technical problems were familiar security weaknesses:
Rank #4
- A stale or legacy test account remained active.
- The account used an exceptionally weak password.
- An API endpoint did not enforce sufficiently narrow access controls.
- Test-account lifecycle and least-privilege controls were inadequate.
- Earlier testing and monitoring did not identify the problem.
The larger lesson is that adding AI to a sensitive workflow does not replace basic security practices. An AI recruiting vendor still needs strong authentication, strict API authorization, account decommissioning, logging, monitoring and data minimization.
Who was responsible?
Responsibility has several layers:
- Paradox: It built and operated the Olivia and McHire technology and acknowledged responsibility for the vulnerable test account and API flaw.
- McDonald’s: It used the third-party recruiting platform and therefore had vendor-oversight and applicant-data-governance responsibilities. McDonald’s told WIRED it was disappointed by the provider’s vulnerability and required immediate remediation.
- Restaurants and franchisees: The organization handling an application can vary. Independent franchisees may have their own privacy practices and data responsibilities.
McDonald’s U.S. applicant privacy statement covers applications for McDonald’s Corporation, McDonald’s USA and certain U.S.-based affiliates, but says it does not cover franchisees. If the application was for an independently owned restaurant, the relevant privacy contact may be that franchisee rather than McDonald’s corporate. See the McDonald’s Applicant Privacy Statement for the applicable U.S. disclosures.
Do these 3 things before closing this tab:
1Clear out junk files and repair common Windows errors2Scan for outdated or missing drivers - takes under a minute3Repair Windows errors before they cause bigger problemsWhat did Paradox do after the report?
Paradox says it:
- Revoked the legacy test-account credentials
- Patched the vulnerable API endpoint
- Updated password-security standards
- Added a security contact process
- Planned a bug-bounty program
- Reviewed the incident with the affected organization
These are the vendor’s stated remediation measures, not independently verified test results. Based on Paradox’s timeline, the reported access path was remediated in June 2025. There is no evidence in the supplied reporting that the same vulnerability remains open in 2026.
Best Value
What applicants should do
The most practical risk for applicants is targeted phishing using contact details or information from a recruiting conversation. The available evidence does not show that criminals used the data, but caution is reasonable.
- Be suspicious of unexpected recruiting messages. Do not assume an email, text or phone call is genuine merely because it mentions McDonald’s, a job title or details from an application.
- Verify independently. Contact the restaurant through a known official channel or begin at the official McDonald’s careers site instead of relying only on a link in a message.
- Do not send highly sensitive information in response to an unsolicited request. Never provide a Social Security number, bank details, password or identity document merely because a message claims to be completing your hiring process.
- Change reused personal passwords. The incident involved a vendor administrator credential, not evidence that applicants’ passwords were exposed. Still, if you reused a password elsewhere—especially
123456or another weak password—replace it with a unique password and enable multifactor authentication where available. - Ask the right organization for clarification. Corporate applicants should consult McDonald’s privacy contact information. Franchise applicants may need to contact the independent franchisee because franchisee privacy practices can differ.
There is no basis in the available evidence for every applicant to freeze their credit or assume identity theft occurred. Those steps may be appropriate when financial-account or government-identity information is confirmed stolen, but Paradox said Social Security numbers were not exposed in this incident.
What employers should learn from the incident
For employers using AI-supported recruiting tools, the important controls are not limited to the chatbot model. A basic vendor-security review should ask:
Recommended Free Tools
- Are test and demonstration accounts removed or disabled when no longer needed?
- Does every administrative account use a unique, strong credential and multifactor authentication?
- Do APIs enforce authorization on every record request, not just at login?
- Are applicant conversations separated from completed applications and restricted by organization, role and purpose?
- How quickly can the vendor revoke credentials and investigate access logs?
- Is applicant data minimized, retained only as long as necessary and clearly assigned to a responsible data controller?
- Are security testing, bug reporting and incident-notification procedures documented?
- Are applicants told when AI or algorithms are used and whether a human reviews decisions?
McDonald’s current U.S. privacy materials say the company may use algorithms or AI models in employment-related contexts. A separate Switzerland privacy statement describes Olivia’s recruitment role and says hiring decisions there are not made solely through automated processing. Those disclosures are jurisdiction-specific and should not be generalized to every McDonald’s market or every application.
The accurate way to describe the incident
The strongest supported description is:
A vulnerability in a third-party McDonald’s recruiting platform allowed unauthorized access to applicant chat records. Researchers reported the issue responsibly, and the vendor says it fixed the flaw within hours. The evidence does not establish that all 64 million applicants were hacked, that criminals obtained the data or that the information was publicly leaked.
Calling it “64 million applicants’ data was stolen” overstates the evidence. Calling it “no breach” understates the fact that researchers accessed candidate information without authorization. The precise middle ground matters for applicants deciding how to respond and for employers evaluating AI recruiting vendors.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

