Get a Pentest and security assessment of your IT network.

Cyber Security

Dating Site Bumble Leaves Swipes Unsecured for 100M Users

Independent Security Evaluators researcher Sanjana Sarda reverse-engineered Bumble s API and found several endpoints that were processing actions without being checked by the server. She was able to access users Facebook data and the wish data from Bumble, which tells you the type of match their searching for. Sarda said these issues were easy to find and that the company’s response to her report on the flaws shows that Bumble needs to take testing and vulnerability disclosure more seriously.

Source: https://threatpost.com/dating-site-bumble-swipes-unsecured-100m-users/161276/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security