A data exposure at Dialog, the private events group cofounded by Peter Thiel, has compromised personal information of multiple US national security personnel, according to WIRED. Among those exposed are an intelligence official on the National Security Council (NSC) and an active-duty intelligence officer supporting sensitive military operations. The Pentagon confirmed it is examining the matter.
The Exposure Details
Evidence shows the exposure was enabled by a misconfigured website, WIRED reported. Anyone could create an account with an email address, log in, and access the files simply by loading a landing page for the group’s app. The discovery began with a tip first received by a Swiss DJ and cybersecurity researcher, maia arson crimew. How long the records were accessible, and who else may have obtained them, remains unclear.
The leaked data includes the private information and login tokens of 222 Dialog event registrants, encompassing current and former senior military and national security officials from the United States and its allies. Dialog internally characterized the exposure as a "cyberattack," but WIRED stated it was due to a misconfiguration. Outside counsel for Dialog issued a letter over the weekend saying the data was "stolen" and demanded WIRED turn over its copy. WIRED declined.
Who Was Exposed
Among the exposed individuals is an NSC intelligence official, a former CIA officer, whose role includes advising President Donald Trump and the national security adviser on sensitive intelligence programs. The records include at least two dozen personal details and survey responses, similar to Dialog’s dossiers on tech founders, actors, and hedge fund managers. The file contains their date of birth, home address, mobile number, headshot photo, private authentication token, political leanings, and answers to Dialog’s registrant questionnaire, including a personal prediction and a book recommendation.
Also exposed is an active-duty intelligence officer embedded with a "Tier 1" special operations unit. Their dossier follows the same template and indicates they were nominated to join Dialog by another military officer assigned to a major command headquarters. The White House asked WIRED not to name the NSC official on national security grounds but declined further comment.
Pentagon Investigation
The Pentagon told WIRED on Tuesday that its operations security team is examining the matter. Personal information about intelligence and military personnel is among the data most sought by foreign intelligence services, which use it to identify, surveil, and approach US operatives abroad and at home. For active-duty officers and the units they support, the exposure can add operational risks.
Implications for Cybersecurity in Sensitive Organizations
The Dialog incident highlights the severe consequences of misconfigured web applications in organizations that handle sensitive personal data. For enterprise technology leaders, this case underscores the critical need for rigorous access controls, regular security audits, and prompt patching of misconfigurations. The exposure of authentication tokens—coupled with personal details—can enable credential theft and targeted attacks. As Dialog’s files contained survey responses and political leanings, the incident also raises concerns about data minimization and the retention of sensitive metadata. Organizations managing high-risk personnel data should enforce zero-trust architectures and implement continuous monitoring to detect unauthorized access. This breach serves as a stark reminder that even invitation-only platforms are not immune to configuration errors that can jeopardize national security and operational safety.