logo
Sex toy maker Lovense left millions of users vulnerable to email ID leaks, account takeovers

Sex toy maker Lovense left millions of users vulnerable to email ID leaks, account takeovers

Indian Express3 days ago
A cybersecurity researcher has identified critical vulnerabilities in an app developed by sex toy manufacturer Lovense that not only exposed the private email addresses of users but also enabled threat actors to hijack a user's account on the platform.
The anonymous researcher published their findings about the two in-app security flaws on Monday, July 28, using the handle BobDaHacker. Anyone who has created an account on the Lovense app may have been potentially affected due to the two bugs.
'We could have easily harvested emails from any public username list. This was especially bad for cam models who share their usernames publicly but obviously don't want their personal emails exposed,' BobDaHacker wrote in their blog post. 'Cam models use these tools for work, so this was a huge deal. Literally anyone could take over any account just by knowing the email address,' they added.
Lovense is considered to be one of the largest brands that sell IoT-based sex toys. It has over 20 million users. In 2023, the Singapore-headquartered company announced it was the first to integrate OpenAI's ChatGPT into its products, according to a report by TechCrunch.
The recently discovered security vulnerabilities underscore the risks that come with using IoT-based sex toys, including privacy violations and device lock-ins. It comes less than a week after Tea, an app that lets women anonymously comment and review dates with men, said it suffered a data breach, with hackers gaining access to 72,000 user images.
BobDaHacker, the researcher, said that they first brought the security flaws to Lovense's notice on March 26 this year and won a $3,000 reward through a bug bounty programme.
The researcher said that he decided to publish their findings in the public domain after Lovense reportedly requested 14 months to fix the flaws as they did not want to force customers using older models of sex toys to update their apps immediately.
'The email disclosure vulnerability was surprisingly straightforward once you understood the flow […] The whole process took maybe 30 seconds per username manually, with the script we made though to automate it, it took less than 1 second for a username to be converted to an email,' BobDaHacker wrote.
The company has since said that it has fully addressed the account takeover bug. Lovense is further expected to roll out a software patch for the email disclosure bug in an update that will be 'pushed to all users within the next week', as per TechCrunch.
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

After Prada controversy, LIDCOM and LIDKAR reaffirm ownership of Kolhapuri Chappal GI Tag
After Prada controversy, LIDCOM and LIDKAR reaffirm ownership of Kolhapuri Chappal GI Tag

The Hindu

time33 minutes ago

  • The Hindu

After Prada controversy, LIDCOM and LIDKAR reaffirm ownership of Kolhapuri Chappal GI Tag

Days after the Prada controversy about Kolhapuri chappals, and after a business body from Maharashtra engaged in discussion with Prada, Maharashtra-based LIDCOM and Karnataka-based LIDKAR have reaffirmed their ownership of the Geographical Indication (GI) tag for Kolhapuri chappals. 'No individual or organization other than us is authorized to engage in any discussion, negotiation, or representation with Prada or similar international entities,' a press release issued jointly on Friday (August 1, 2025) by LIDCOM Managing Director Prerna Deshbhratar and LIDKAR Managing Director K.M. Vasundhara stated. 'The traditional and historic Kolhapuri chappal, originating from Maharashtra and Karnataka, has been granted the Geographical Indication (GI) tag. The officially registered ownership of this GI tag rests solely with two corporations—Sant Rohidas Leather Industries and Charmakar Development Corporation Limited (LIDCOM) and Dr. Babu Jagjivanram Leather Industries Development Corporation Limited (LIDKAR)—as clarified by the Managing Directors of both entities,' it stated. Kolhapuri chappals, which received royal patronage in the 20th century under Chhatrapati Shahu Maharaj, were made in the erstwhile province under the king. Today, these parts of the earlier province are spread across eight districts. Four of them are in Maharashtra, and four in Karnataka. The tradition of the chappals dates back to the 12th century saint tradition. In June 2025, the renowned Italian fashion brand Prada presented its Spring/Summer 2026 men's collection. 'Observers noted that the leather sandals worn by a model in this show bore a striking resemblance to the GI-tagged traditional Kolhapuri chappals from Maharashtra. This resemblance sparked strong reactions on social media platforms and among traditional artisan communities. Following the incident, a group of lawyers filed a Public Interest Litigation (PIL) in the Bombay High Court, alleging that Prada's use of a design protected under GI registration constituted a violation of intellectual property laws. On July 16, 2025, the court dismissed the PIL, stating that in such matters, only the registered GI holders—namely, the leather industry development corporations of Maharashtra and Karnataka—are the legitimate stakeholders and hence, solely entitled to initiate any civil legal proceedings,' the press release said. They said that their collective mission goes beyond protecting the geographical indication. 'It is also aimed at safeguarding the rights of thousands of local leather artisans and firmly establishing this heritage on national and international platforms.'

Forest tag stalls land allotment for Haveri industrial corridor
Forest tag stalls land allotment for Haveri industrial corridor

Time of India

timean hour ago

  • Time of India

Forest tag stalls land allotment for Haveri industrial corridor

Haveri: The industrial corridor planned near Ganajur and Koluru villages in Haveri is experiencing setbacks concerning 68 acres of forest or revenue land confusion. Despite local farmers cultivating this land for years without proper documentation, the Karnataka Industrial Areas Development Board (KIADB) is unable to provide compensation owing to its legal classification as forest land, thereby impeding the project. Over 125 entrepreneurs requested land allocation to establish industries near Haveri's district headquarters. Sources indicate that while the 68 acres originally belonged to the revenue department, forest authorities previously planted saplings there. Subsequently, residents of Kolur began cultivation without proper documentation. The forest department now asserts its ownership of this land. Previously, the govt decided to establish an industrial corridor between Ganajur and Kolur across 407 acres, comprising both govt and private land. Within this, the first phase involving a 200-acre industrial layout was contracted to Bengaluru-based SRC Infra. While the initial phase is 80% complete, farmers are resisting development in the second phase. "At least 59 farmers have been claiming that they are cultivating 68 acres of land in Koluru village, but these farmers don't have any documents. These farmers have been demanding compensation like other private landowners whose land was acquired for the purpose. by Taboola by Taboola Sponsored Links Sponsored Links Promoted Links Promoted Links You May Like How to Trade ETH/USD Without Holding Ether IC Markets Learn More Undo But without proper ownership of the property, KIADB could not provide compensation to the farmers," stated a senior revenue department official. Deputy commissioner Vijay Mahantesh Danammanavar conducted a meeting with KIADB officials, Haveri tahsildar, and forest authorities, delegating land-related responsibilities to the tahsildar. "I asked for a detailed report from the tahsildar of Haveri after receiving applications from the farmers who claim to have been cultivating govt land for a long time. We will submit the report to the govt, and the govt will make a decision. We will complete the development works of the first phase of the industrial corridor by the end of Dec," assured DC Danammanavar. Entrepreneur Ramesh Ballari noted that numerous individuals waiting to establish industries have applied for land in the new corridor. However, land disputes persist despite ongoing construction. "Following this, many entrepreneurs are frustrated because they are not able to execute their ideas through their startups. The KIADB and department of industries and commerce (DIC) should complete the corridor work and allot layouts as early as possible," he demanded. Attempts to reach Ashok Pyati, joint director of the DIC for comments were unsuccessful.

Apple CEO Tells Staff AI Is ‘Ours to Grab' in Hourlong Pep Talk
Apple CEO Tells Staff AI Is ‘Ours to Grab' in Hourlong Pep Talk

Mint

time2 hours ago

  • Mint

Apple CEO Tells Staff AI Is ‘Ours to Grab' in Hourlong Pep Talk

(Bloomberg) -- Apple Inc. Chief Executive Officer Tim Cook, holding a rare all-hands meeting following earnings results, rallied employees around the company's artificial intelligence prospects and an 'amazing' pipeline of products. The executive gathered staff at Apple's on-campus auditorium Friday in Cupertino, California, telling them that the AI revolution is 'as big or bigger' as the internet, smartphones, cloud computing and apps. 'Apple must do this. Apple will do this. This is sort of ours to grab,' Cook told employees, according to people aware of the meeting. 'We will make the investment to do it.' The iPhone maker has been late to AI, debuting Apple Intelligence months after OpenAI, Alphabet Inc.'s Google, Microsoft Corp. and others flooded the market with products like ChatGPT. And when Apple finally released its AI tools, they fell flat. But Cook struck an optimistic tone, noting that Apple is typically late to promising new technologies. 'We've rarely been first,' the executive told staffers. 'There was a PC before the Mac; there was a smartphone before the iPhone; there were many tablets before the iPad; there was an MP3 player before iPod.' But Apple invented the 'modern' versions of those product categories, he said. 'This is how I feel about AI.' An Apple spokesperson declined to comment on the gathering. The hourlong meeting addressed a range of topics, including the retirement of operating chief Jeff Williams, increasing Apple TV viewership and advances in health care with features like the AirPods Pro hearing-aid technology. It also touched on donations and community service by Apple employees, the company's goal to become carbon neutral by 2030, and the impact of regulations. 'The reality is that Big Tech is under a lot of scrutiny around the world,' Cook said. 'We need to continue to push on the intention of the regulation and get them to offer that up, instead of these things that destroy the user experience and user privacy and security.' Cook often holds town hall-style chats when visiting Apple's offices around the world, but companywide meetings from the Steve Jobs Theater at headquarters are unusual. The remarks followed a blockbuster earnings report, with sales growing nearly 10% during the June quarter. That beat Wall Street expectations and eased concerns about iPhone demand and a slowdown in China. Apple still faces myriad challenges, including Trump administration tariffs and a regulatory crackdown on its business practices. The company said Thursday that tariffs would bring a $1.1 billion headwind this quarter, though Apple was upbeat about sales growth. It also said that App Store revenue rose by a percentage in the double digits last quarter, despite efforts in the EU and elsewhere to further restrict that business. Echoing comments he made during the earnings conference call, Cook told employees the company is investing in AI in a 'big way.' He said 12,000 workers were hired in the last year, with 40% of the new hires joining in research and development roles. Apple's chip development efforts, led by executive Johny Srouji, are key to the company's AI strategy, Cook said. Apple is working on a more powerful cloud-computing chip — code-named Baltra — to power artificial intelligence features, Bloomberg News has reported. It's also setting up a new AI server manufacturing facility in Houston. The meeting included Craig Federighi, senior vice president of software engineering, who discussed the future of Apple's Siri voice assistant. The company had planned to roll out a Siri overhaul as part of Apple Intelligence earlier this year, adding the ability to tap into user data to better fulfill requests. It was delayed, spurring management changes for the company's AI work. Federighi explained that the problem was caused by trying to roll out a version of Siri that merged two different systems: one for handling current commands — like setting timers — and another based on large language models, the software behind generative AI. 'We initially wanted to do a hybrid architecture, but we realized that approach wasn't going to get us to Apple quality,' Federighi said. Now, Apple is working on a version of Siri that moves to an entirely new architecture for all of its capabilities. That iteration is slated for as early as spring, Bloomberg News has reported, though Apple executives haven't confirmed a timeline other than a release next year. 'The work we've done on this end-to-end revamp of Siri has given us the results we needed,' the engineering executive told employees. 'This has put us in a position to not just deliver what we announced, but to deliver a much bigger upgrade than we envisioned. There is no project people are taking more seriously.' Federighi cited leadership changes, including putting Vision Pro creator Mike Rockwell and his headset software leadership team in charge of Siri, as a driving force in improving the product. He said Rockwell and his group have 'supercharged' the company's work in the area. In his speech, Cook also pushed employees to move more quickly to weave AI into their work and future products. 'All of us are using AI in a significant way already, and we must use it as a company as well,' Cook said. 'To not do so would be to be left behind, and we can't do that.' Employees should push to deploy AI tools faster, and urge their managers and service and support teams to do the same, he said. Cook also addressed the company's retail strategy, stressing that the current plan is to focus on opening new stores in emerging markets and upping the investment in Apple's online store. The iPhone maker is opening outlets in India, the United Arab Emirates and China this year, and is preparing to add its first location in Saudi Arabia next year. 'We need to be in more countries, and you'll see us go into more emerging markets in particular,' Cook said. That doesn't mean Apple will ignore other places, he said, but a 'disproportionate amount of growth' will be in new areas. The CEO also shared his enthusiasm about upcoming products, though he didn't get specific. 'I have never felt so much excitement and so much energy before as right now,' he said. Bloomberg News has previously reported that Apple plans to launch its first foldable iPhone next year and is also working on a stream of smart home devices. New headset products, smart glasses, a push into robotics and a redesigned iPhone for the two-decade anniversary are also underway. 'The product pipeline, which I can't talk about: It's amazing, guys. It's amazing,' Cook said. 'Some of it you'll see soon, some of it will come later, but there's a lot to see.' More stories like this are available on

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store