Users from 4chan claim to have discovered an exposed database hosted on Google’s mobile app development platform, Firebase, belonging to the newly popular women’s dating safety app Tea. Users say they are rifling through peoples’ personal data and selfies uploaded to the app, and then posting that data online, according to screenshots, 4chan posts, and code reviewed by 404 Media.

  • sp3ctr4l@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    91
    ·
    edit-2
    22 hours ago

    Wow that was fast.

    I did not even know this app existed untill about 8 hours ago.

    Already comprimised.

    EDIT: Also, lol, this arguably is not even largely a hack.

    These idiots just had everything stored in a fucking publically accesible firebase bucket… amazing.

    They didn’t delete anything they claimed to.

    Either way you look at it, anywhere on the spectrum from:

    A ] A bunch of women reasonably concerned for their safety

    B ] A bunch of gossip mongers

    … well, they’ve now all been doxxed, ironic from each angle.

    What a fucking disaster.

    • JackbyDev@programming.dev
      link
      fedilink
      English
      arrow-up
      2
      ·
      3 hours ago

      this arguably is not even largely a hack.

      While I agree in principle, I think we should still call it a hack. As in “to gain illegal access to (a computer network, system, etc.)” as Merriam-Webster puts it. It shouldn’t be legal to do do this just because the website had horrible (non-existent) security. You shouldn’t be allowed to rob a house just because the door wasn’t locked.

    • 𝕛𝕨𝕞-𝕕𝕖𝕧@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      4
      ·
      7 hours ago

      if that’s truly how the leak happened then these people, in any reasonable jurisdiction, would be considered criminally negligent, at the least.

      yay compsci ethics courses :D

      boo courts failing to uphold the law >:(