By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Women’s ‘red flag’ app Tea is a privacy nightmare
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Women’s ‘red flag’ app Tea is a privacy nightmare
News

Women’s ‘red flag’ app Tea is a privacy nightmare

News Room
Last updated: 2025/07/28 at 4:39 PM
News Room Published 28 July 2025
Share
SHARE

An app designed to help women spot the “red flags” of men they date has incidentally put its users at risk. 404 Media reported that Tea was hacked by 4chan users last week, resulting in the selfies and driver’s licenses of its mostly women users being posted to 4chan. An independent researcher for 404 Media has since discovered that messages between users discussing infidelity, abortion, and personal phone numbers are also vulnerable to hackers.

Tea was founded by software developer Sean Cook, who said he was inspired to create an anonymous whisper network after witnessing his own mother’s “terrifying” dating experiences with men. It was also heavily influenced by the rise of “Are We Dating The Same Guy” Facebook groups and operates in a similar paradigm of sounding anecdotal alarms about men people have dated. The app surged in popularity to the top spot on Apple’s App Store last week. Tea claims to have more than 4 million active users.

On July 25th, 72,000 images — including 13,000 selfies and driver’s licenses, as well as another 59,000 images, that were published on the app — were breached, with many downloaded and posted publicly on 4chan. 4chan users initially posted images of four women’s driver’s licenses, redacting some personal information, but the firestorm of comments in the thread suggested that thousands of images were downloaded before the company was aware of the breach. Tea told 404 Media that it had launched “a full investigation with assistance from external cybersecurity firms,” and that it was working with law enforcement “to assist” in their investigation.

Tea was storing its users’ sensitive information on Firebase, a Google-owned backend cloud storage and computing service. Since 2023, Tea no longer requires users to send in photos of their IDs for verification purposes. While the company initially insisted that the hack only affected its “legacy” database and users who signed up before February 2024, according to the independent researcher and data trove reviewed by 404 Media, Tea remains unsafe, way beyond the scope of the original hack, and private messages sent as late as last week are accessible and vulnerable to further exposure.

Since Tea’s surge in use among women, it’s drawn more incensed criticism and ire among so-called “men’s rights” groups online.

Men who discovered they appeared on the app have called it a “toxic” network. Some are going viral on TikTok and X, claiming that the assertions made about them are defamatory and wholly untrue. “The issue is that people (women especially) won’t see this as an issue until the male version of the app is created. I deserve to know my date’s STD history, body count, etc.,” reads a top-rated comment on a thread in the subreddit r/MensRights. A retaliatory app featuring women was created shortly thereafter, called Teaborn, but it was promptly taken down after reports of users posting revenge porn.

Several cybersecurity and data privacy experts have called Tea’s storage methods, which led to the initial hack, downright negligent.

“This data was originally stored in compliance with law enforcement requirements related to cyber-bullying prevention,” the company initially claimed in the statement provided to 404 Media.

Peter Dordal, a professor of online networks and security at Loyola University in Chicago, told The Verge that he believes the company’s statement — that it was in compliance with the law — is “misleading,” and that the company could have done more to prevent this cybersecurity nightmare. “[The statement] is misleading on two counts: first of all, law enforcement doesn’t set requirements; that’s the job of Congress and state legislatures. Tea didn’t cite the actual legal requirement,” Dordal said. “Second, if there was a legitimate legal need to retain these images, they shouldn’t have been accessible online at all; they are clearly not needed for ordinary site activity.”

Dordal added that while it’s commonplace for user data to be stored in the cloud, Tea should have taken measures to ensure that it could not be accessed by the public. Tea’s terms and conditions also claim it deletes user data after verification, which it has apparently failed to do.

“Tea definitely had negligent security practices if the current reporting is true,” said Grant Ho, an assistant professor at the University of Chicago who researches computer security. “A company should never host users’ private data on a publicly accessible server, and, at a minimum, the data should’ve been stored encrypted.”

Andrew Guthrie Ferguson, a law professor at George Washington University and expert in Big Data surveillance, points out that a whisper network on the internet is no longer safeguarded like a real whisper network could be when it operates offline. Your data is no longer in your control.

“What changes when it’s digital and recoverable and save-able and searchable is you lose control over it,” Ferguson said. “You can’t keep it within the confines of people you trust.”

Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

  • Tanya Tianyi Chen

    Tanya Tianyi Chen

    Posts from this author will be added to your daily email digest and your homepage feed.

    See All by Tanya Tianyi Chen

  • Analysis

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Analysis

  • Security

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Security

  • Social Media

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Social Media

  • Tech

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Tech

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Unveiling the Code Abyss: Inverting LLMs to Expose Vulnerability Vortexes in AI-Generated Programs | HackerNoon
Next Article Samsung Galaxy Watch 8 vs. Watch 8 Classic: Are You Willing to Pay $150 More for a Rotating Bezel?
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

CISA Adds PaperCut NG/MF CSRF Vulnerability to KEV Catalog Amid Active Exploitation
Computing
Europe’s place in the global tech sector, Michelle Robson, Odyssey Ventures – UKTN
News
Check Release Date, Features And More
Mobile
Top LG Promo Codes for July 2025
Gadget

You Might also Like

News

Europe’s place in the global tech sector, Michelle Robson, Odyssey Ventures – UKTN

2 Min Read
News

Senator Pushes Musk to Crack Down on ‘Scam Compounds’ That Use Starlink

5 Min Read
News

Waymo taps Avis to manage robotaxi fleet in Dallas | News

3 Min Read
News

The best beer dispensers for pouring a pint at home

4 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?