Chinese Facial Recognition Database Exposes 2.5 Million People

Chinese Facial Recognition Database

An artificial intelligence company operating a facial recognition system in China recently left its database exposed online, leaving the personal information of some 2.5 million Chinese citizens vulnerable. Considering how much the Chinese government relies on facial recognition technology, this is a big deal—for both the Chinese government and Chinese citizens.

What Happened With This Chinese Facial Recognition Database?

So what happened? The database belongs to SenseNets Technology, Ltd, a company that develops artificial intelligence security software systems, including facial recognition, crowd analysis, and personal verification. Founded in 2015 and based in Shenzhen, China, SenseNets’ technology is used by police surveillance systems in many Chinese cities. SenseNets’ video tracking cameras monitor people and record their movements as data. As you might imagine, SenseNets has access to a lot of data, gathered from watching millions of people all day, every day. The big deal? That boatload of information was exposed to the public because the company failed to password protect it. The data was in plain text, and anyone nosing around could easily access it.

Victor Gevers, a Dutch cybersecurity researcher at the non-profit group, GDI.Foundation, discovered the open database online because, well, it’s what he does. Grevers discovered the problem in July of 2018 and warned the company about it, but the company didn’t reply. In February of 2019, Grevers publicly shared information about the breach on Twitter. Grevers’ tweets indicate the data has been viewed and in some cases copied by visitors to the access point. SenseNets has since blocked access to the database and as refrained from any comment on the occurrence.

As an aside, Grevers is also the person who discovered what is being called the “BreedReady” database this past weekend. This is an open database in China apparently developed to register the personal information of some 1.8 million women. The information in the database includes age, addresses, phone numbers, education, location, ID number, and what is being called a “BreedReady” status of these women. For a Communist country suffering from falling birthrates, an extreme shortage of women, this shouldn’t come as a surprise, but is nonetheless alarming.

What Kind of Information Was Exposed?

The database exposure included the gender, address, birthdate, and nationality of more than 2.5 million people in China. It also included each person’s employer and a photo. This type of private information is linked to the ID card number that Chinese residents are required to have. That ID number was also exposed in this Chinese facial recognition

How Does China Use Facial Recognition Technology?

In China, facial recognition technology is sophisticated and part of everyday life. The government watches everything and everyone, all day every day. Residents who go through the security checkpoint at the Shanghai Hongqiao International Airport have to get through the facial recognition step first. The subway system in Beijing is getting ready to use this technology, and police officers use special glasses that let them quickly recognize faces, to aid in the rapid identification of suspects. Schools in China may start using facial recognition to take attendance each day, and it’s even been considered to use the system to ensure the children are paying attention during class.

The Chinese are currently testing a very controversial social credit scoring system, designed to monitor unattractive or unhealthy behavior (e.g. frivolous spending, being wasteful, smoking where it’s not permitted, or not being a “good citizen.” This system is expected to roll out in 2020 and may preclude Chinese citizens with low social credit scores from traveling, getting a loan, a good job, or having educational opportunities.

Facial recognition technology and the artificial intelligence that fuels it is cool, without question, and can be used for much good. But when it’s left unsecured and unprotected, it poses extreme danger to the millions of people potentially impacted. Chinese citizens, while accustomed to being under constant surveillance, quite likely are less comfortable having their personal information available online. Unfortunately for them, there’s probably not much they can do about it.

Here in the U.S., we’re not unaffected by the potential dangers of facial recognition technology. As just one example, facial recognition on the devices we use every day is largely insecure. See the recent report of the Samsung Galaxy S10 facial recognition being fooled by a video of the phone owner for more on that. Also, note that the U.S. Customs are reported to be speeding up facial recognition adoption at airports, in spite of a myriad of security concerns. China is a few years ahead of us in terms of how they are publicly using AI and facial recognition, but I predict we’ll be seeing more and more of it in the not too distant future.

Futurum Research provides industry research and analysis. These columns are for educational purposes only and should not be considered in any way investment advice. 

Author Information

Shelly Kramer is a serial entrepreneur with a technology-centric focus. She has worked alongside some of the world’s largest brands to embrace disruption and spur innovation, understand and address the realities of the connected customer, and help navigate the process of digital transformation.

Related Insights
Can Creatio's 10x Release Unseat Entrenched CRM Giants With Agentic AI?
July 31, 2026

Can Creatio’s 10x Release Unseat Entrenched CRM Giants With Agentic AI?

Keith Kirkpatrick, Vice President & Research Director, Enterprise Software & Di at Futurum, Creatio's 10x Release uses AI Twin and AI Studio to democratize agentic AI development, consolidating fragmented CRM...
Can Salesforce's Agentic AI Close Field Service's Talent and ROI Gap?
July 31, 2026

Can Salesforce’s Agentic AI Close Field Service’s Talent and ROI Gap?

Keith Kirkpatrick, Vice President & Research Director, Enterprise Software & Di at Futurum, Agentic AI is reshaping field service by automating complex tasks, offsetting talent shortages, and delivering quantifiable business...
Microsoft Copilot Hits 30 Million Seats: Is AI Transformation Finally Real?
July 31, 2026

Microsoft Copilot Hits 30 Million Seats: Is AI Transformation Finally Real?

Keith Kirkpatrick, Vice President & Research Director, Enterprise Software & Di at Futurum, Microsoft Copilot's 30 million paid seats show strong enterprise ROI, though Salesforce Agentforce and ServiceNow pose competitive...
OpenClaw Introduces Maturity Scorecard for AI Feature Selection
July 31, 2026

OpenClaw Introduces Maturity Scorecard for AI Feature Selection

OpenClaw launches maturity scorecard and long-lived release channel to address enterprise AI reliability concerns, positioning itself to capture share in the $181.3B AI platforms market....
Citizen Engagement
July 28, 2026

Bridging the Gap: Why Citizen Engagement Needs a Technology Overhaul

Keith Kirkpatrick, Vice President & Research Director, Enterprise Software & Di at Futurum, examines the critical gap between government self-assessment and citizen perception of engagement efforts, revealing why technology solutions...
TeamViewer ServiceNow
July 27, 2026

How Will TeamViewer and ServiceNow Reshape Autonomous IT Operations?

Keith Kirkpatrick, Vice President & Research Director, Enterprise Software & Di at Futurum, examines how the TeamViewer ServiceNow partnership combines remote connectivity with workflow automation to reshape autonomous IT operations...

Book a Demo

Welcome

The vision behind everything in Futurum’s Custom Research practice is this: research should show you what is happening, what comes next, and what to do about it. It should be personal to each audience, easy for people to grasp, and structured so LLMs can reason over it accurately. And it should be fast and turnkey; you want answers now, not another project to carry for quarters.

Whether you are defining business, channel, or go-to-market strategy; evaluating vendors or justifying ROI; or commissioning research to fill an emerging market need, we have your back, with a program that answers your questions with the objectivity and credibility to drive real decisions.

To do it, we bring unmatched data to bear: Futurum research, surveys, and market projections; validated market feeds; ETR’s 15 years of insight from 10,000 technology decision-makers; G2’s buyer and user data; and what our analysts hear every day. Add leading primary collection, from AI-moderated voice interviews to surveys and analyst-led interviews, all turnkey, and every project comes out credible, nuanced, and actionable.

And we don’t just drop the results in your lap. For internal work, we provide analyst-led sessions, interactive dashboards, and a range of formats. For market-facing work, Futurum delivers turnkey activation and amplification that actually gets seen, by people and by LLMs, through our media and share of voice. This is research that moves decisions and markets.

We will meet you wherever you are, from a fast-turn brief to a multi-year program, and shape the work to your goals, timeline, and budget. The right program for your moment.

If any of this is useful, I would love to talk.

Benjamin Brown, VP Custom Research, Futurum Research

Benjamin Brown

VP, Custom Research · The Futurum Group

Newsletter Sign-up Form

Get important insights straight to your inbox, receive first looks at eBooks, exclusive event invitations, custom content, and more. We promise not to spam you or sell your name to anyone. You can always unsubscribe at any time.

All fields are required






Thank you, we received your request, a member of our team will be in contact with you.