Feeld dating app's security too open-minded as private data swings into public view
ID: b8003485-9805-52f9-80d8-030c3132307a
STIX ID: report--b8003485-9805-52f9-80d8-030c3132307a
Feed Name: The Register (Security)
Security researchers disclosed multiple critical vulnerabilities in the Feeld dating app that enable attackers to intercept API traffic and access other users' private data — including messages, disappearing photos/videos, profile details, and matches — as well as to edit, delete, or send messages on behalf of others. The flaws were demonstrated using a network proxy and simple API parameter manipulation, are easy to exploit, and present significant privacy and extortion risks to users; researchers reported the issues to Feeld but remediation was delayed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
