New hack of women-only app Tea exposes personal chats, phone numbers

0
14

New Tea app hack exposes women's personal messages, phone numbers

This is the second recent data breach of the women's security app.

 By 

Chase DiBenedetto

 on 

Share on Facebook Share on Twitter Share on Flipboard

A phone displays the green Tea app icon.

Tea's security woes worsen. Credit: Thomas Fuller/SOPA Images/LightRocket via Getty Images

Just days after thousands of user images and locations were leaked in an apparent hack of archived app data, women-only safety app Tea is weathering data exposure at an even larger scale than first reported.

In addition to exposing thousands of user verification images and personal IDs, which were later abused by users on platforms like 4Chan, the app's recently discovered security flaws make it possible for hackers to access private messages between users. An independent security researcher, verified by 404Media, was able to pull conversations from a second database that were sent as recently as last week, which included sensitive information like shared phone numbers, conversations about intimate relationships, and discussions of abortion.

The researcher, Kasra Rahjerdi, also obtained access to back-end app features like the ability to send mass push notifications to users' devices. They told 404Media that the second vulnerability existed until late last week, around the time the initial hack was reported.

Mashable Light Speed

In a statement given on Friday, Tea said it was addressing the first database breach and that no current user data had been exposed. In a follow-up statement to 404Media, Tea wrote: "We are continuing to work expeditiously to contain the incident and have launched a full investigation with assistance from external cybersecurity firms. We have also reached out to law enforcement and are assisting in their investigation. Since our investigation is in its early stages, we do not have more information we can share at this time."

The Tea app recently shot up in popularity, following viral controversy over its existence as an alleged "man-shaming" app. Prior to the breach, some users were concerned with the app's storing of personal information (including that of both users themselves and the men they discuss), while others supported the need for women-only spaces online to share stories and protect each other's safety.

This Tweet is currently unavailable. It might be loading or has been removed.
This Tweet is currently unavailable. It might be loading or has been removed.

But while debate about the app's efficacy flared, online users took advantage of the app's vulnerable security system to target its female user base: Shortly after reporting on the first breach, hackers seized geolocation information stored in the legacy database to explicitly doxx users — who are promised anonymity upon making an account in order to more comfortably share warnings about encounters with men — and have since created a nationwide map with the locations of Tea users. Others pulled personal images from the database in order to ridicule their appearance in public forums, while a few created copycat apps designed for men to discuss intimate details of women's bodies.

Chase sits in front of a green framed window, wearing a cheetah print shirt and looking to her right. On the window's glass pane reads "Ricas's Tostadas" in red lettering.

Chase joined Mashable's Social Good team in 2020, covering online stories about digital activism, climate justice, accessibility, and media representation. Her work also captures how these conversations manifest in politics, popular culture, and fandom. Sometimes she's very funny.

These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.

Pesquisar
Categorias
Leia Mais
Technology
Apple is looking into buying Perplexity AI
Apple is looking into buying Perplexity AI No bids or...
Por Test Blogger7 2025-06-22 18:00:15 0 730
Stories
Let My People Go! – The History and Historicity of the Biblical Account of the Exodus
Let My People Go! The History and Historicity of the Bible's Exodus Account...
Por Test Blogger2 2025-05-31 10:00:24 0 1K
Science
Doctors Find 2 New Ways To Bring “Dead” Hearts Back To Life Outside The Body
Can You Bring A “Dead” Heart Back To Life? 2 New Approaches Prove Yes, You CanHow do we know when...
Por test Blogger3 2025-07-21 16:00:21 0 183
Music
Best Rock Album - 'Back in Black' vs. 'Appetite for Destruction'
VOTE: Better Rock Album - AC/DC's 'Back in Black' vs. Guns N' Roses' 'Appetite for...
Por Test Blogger4 2025-07-21 21:00:03 0 202
Technology
Ditch monthly fees and get 1TB of lifetime cloud storage for A$186
1TB of lifetime cloud storage TL;DR: For a limited time,...
Por Test Blogger7 2025-06-02 19:00:13 0 1K