Dating app Plenty of Fish reveals it leaked private names and zip codes of users
Researchers discovered the dating app Plenty of Fish was leaking information that users had set to private on their profiles. User's names and zip codes were displayed in the app's API, allowing malicious actors to locate a user's exact location. Although the data was scrambled, experts were able to reveal the information using freely available tools designed to analyze network traffic, as first reported by TechCrunch. The discovery was made by The App Analyst, an expert in digital apps, who found that sensitive data was visible via Plenty of Fish's API on October 20th. A fix was developed and tested on November 5th and on December 18th, it confirmed the sensitive data was no longer present in its API.
Dec-23-2019, 22:53:12 GMT
- Industry:
- Technology: