Skip to content
Z.ai Disables Features After Unauthorized Code Uploads to Cloud

Z.ai Disables Features After Unauthorized Code Uploads to Cloud

First seen 21 Sep 2026, 21:12 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 21, 2026 at 21:13 UTC
  • Z.ai disabled features after unauthorized uploads of user code to Alibaba Cloud.
  • The incident involved sensitive data, including source code and personal information.
  • Z.ai has committed to improving security processes and transparency.

Chinese AI startup Z.ai, also known as Zhipu, has disabled certain features of its AI coding assistant, ZCode, after users reported unauthorized uploads of local code repositories to Alibaba Cloud. The issue arose from a default-enabled 'Codebase Indexing' feature, which led to sensitive data, including source code and personal information, being uploaded without consent. Although Z.ai initially stated that the data had been deleted, users found it was encrypted with a private key only accessible to Z.ai, raising concerns about the actual deletion. The incident, which was highlighted by a technical blogger, has prompted Z.ai to patch the vulnerability and commit to improving transparency and security processes. An independent security assessment confirmed that the uploaded data was deleted and not retained. The incident has sparked discussions about the implications for Z.ai's reputation amid increasing scrutiny of AI security risks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-09-16
Unauthorized uploads discovered
A technical blogger found that ZCode was attempting to upload user code to Alibaba Cloud without consent.
Scmp
2026-09-18
Z.ai issues apology
Z.ai apologized for the incident, stating that the data had been deleted, but users raised concerns about the encryption.
Wtaq
2026-09-21
Features disabled and patch released
Z.ai disabled certain features of ZCode and patched the vulnerability, pledging to enhance security measures.
Wtaq

More articles in this cluster (2)

Following this threat?

Track Chengming Technology in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed