Get a Pentest and security assessment of your IT network.

News

Reverse Engineering Bumbles API

ISE Labs research into popular dating apps, we looked at Bumbles web application and API. As of November 1, 2020, all the attacks mentioned in this blog still worked. An attacker can still use the API to obtain information such as Facebook likes, pictures, and other profile information. Bumble is no longer using sequential user ids and has updated its previous encryption scheme. The attacks on bypassing payment for Bumble’s other premium features still work. We will be focusing on finding workarounds for the following Boost features.”]

Source: https://blog.securityevaluators.com/reverse-engineering-bumbles-api-a2a0d39b3a87

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months