logo

Feeld dating app's security too open-minded as private data swings into public view

ID: b8003485-9805-52f9-80d8-030c3132307a

STIX ID: report--b8003485-9805-52f9-80d8-030c3132307a

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-09-13

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Security researchers disclosed multiple critical vulnerabilities in the Feeld dating app that enable attackers to intercept API traffic and access other users' private data — including messages, disappearing photos/videos, profile details, and matches — as well as to edit, delete, or send messages on behalf of others. The flaws were demonstrated using a network proxy and simple API parameter manipulation, are easy to exploit, and present significant privacy and extortion risks to users; researchers reported the issues to Feeld but remediation was delayed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.