
New Video from @seytonic Highlights Security Breaches in Dating Apps and Banking Systems
The video begins with a discussion about a recent attack on the dating advice app "Tea," which is exclusively for women. This app allows users to check the backgrounds of potential dates, ensure they are not being catfished, and share information about their dating experiences with other women. However, the app suffered a major security breach, exposing thousands of government IDs and private messages.
The attack was initiated by an anonymous 4chan user who discovered that the app was using Firebase, a Google platform for app backends. The incorrect configuration of Firebase allowed anyone to access user images without authentication. Verification photos, supposed to be deleted immediately after verification, were exposed, along with thousands of other images from posts and direct messages. In total, 72,000 images were leaked, including 13,000 verification selfies and 59,000 other images.
The situation worsened when a security researcher discovered a second vulnerability, this time exposing millions of private messages between users. These messages contained highly sensitive information, such as discussions about unfaithful husbands or abortions. The direct messaging feature was disabled by the app's developers in response to this discovery.
Meanwhile, a new app called "Tea on Her" was launched, adopting the concept of the original app but for men. This app allows users to create profiles of women they have dated and tag them with green or red flags based on their experience. However, this new app also suffered a similar security breach, exposing images of government IDs, usernames, email addresses, and selfies.
The video also covers an attempted hack of an ATM by a group of cybercriminals using a Raspberry Pi. The plan involved connecting the Raspberry Pi to a bank's network switch to gain remote access. Although the hackers managed to move laterally within the bank's network, their plan failed when the Raspberry Pi was discovered and disconnected by an employee.
In conclusion, the video highlights the serious consequences of security breaches in apps and banking systems, as well as the measures taken to correct them. It also emphasizes the importance of data security and the responsibility of developers in protecting users' sensitive information.