By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Online Tech Guru
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release
Reading: Lovense was told its sex toy app leaked users’ emails and didn’t fix it
Best Deal
Font ResizerAa
Online Tech GuruOnline Tech Guru
  • News
  • Mobile
  • PC/Windows
  • Gaming
  • Apps
  • Gadgets
  • Accessories
Search
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release

iPhone 17 Lineup Could See Price Hikes Across the Board, Except for Standard Model

News Room News Room 31 July 2025
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow
  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Online Tech Guru > News > Lovense was told its sex toy app leaked users’ emails and didn’t fix it
News

Lovense was told its sex toy app leaked users’ emails and didn’t fix it

News Room
Last updated: 29 July 2025 23:21
By News Room 3 Min Read
Share
SHARE

Lovense, the maker of internet-connected sex toys, left user emails exposed for months — even after it became aware of the vulnerability. In a blog post spotted by TechCrunch and Bleeping Computer, security researcher BobDaHacker found that they could “turn any username into their email address,” which they could then use to take over someone’s account.

Though BobDaHacker initially disclosed this vulnerability to Lovense in March, the researcher claims Lovense waited months before fixing it, and still hasn’t fully addressed the issue. Lovense is behind a range of sex toys that users can connect to the internet and remotely control via its app, which came under fire for a “minor bug” in 2017 that recorded users’ sex sessions.

As outlined in BobDaHacker’s post, the security researcher noticed something strange in the app’s API response when muting someone: it presented their email address. BobDaHacker then figured out that they could take advantage of this vulnerability by sending a modified request to Lovense’s servers, tricking it into returning the target user’s email address.

BobDaHacker even developed a script that they say can convert someone’s username into an email address in less than a second. “This is especially bad for cam models who share their usernames publicly but obviously don’t want their personal emails exposed,” BobDaHacker writes. To make matters worse, BobDaHacker later discovered that they could take over a user’s account with their email address and an authentication token generated by Lovense.

BobDaHacker initially reported these vulnerabilities in partnership with the Internet of Dongs, a group that aims to make internet-connected sex toys more secure. However, the security researcher says Lovense didn’t immediately fix the issue. Instead, Lovense claimed that the account takeover bug was fixed in April, even though BobDaHacker said it wasn’t, and that a fix for the email leak issue would take 14 months to roll out.

“We also evaluated a faster, one-month fix. However, it would require forcing all users to upgrade immediately, which would disrupt support for legacy versions,” Lovense said, according to BobDaHacker. As noted by BobDaHacker, security researchers reported the same account takeover bug to Lovense in 2023, but the company appears to have closed the bug without actually fixing it.

In a statement to Bleeping Computer, Lovense says it has submitted an app update “addressing the latest vulnerabilities” to app stores. “The full update is expected to be pushed to all users within the next week,” Lovense says. “Once all users have updated to the new version and we disable older versions, this issue will be completely resolved.” Lovense didn’t immediately respond to The Verge’s request for comment.

Share This Article
Facebook Twitter Copy Link
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Uber Eats is adding AI to menus, food photos, and reviews

News Room News Room 31 July 2025
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow

Trending

One of Warhammer 40,000’s Great Unsolved Mysteries — The Terminus Decree — Is Now Officially Explained via a Short Passage in a New Codex, and Some Fans Really Wish It Had Been Left to the Imagination

It is one of the great unsolved mysteries of the Warhammer 40,000 universe — at…

31 July 2025

Amazon Great Freedom Festival 2025: Best Deals on TWS Earphones

Amazon's Great Freedom Festival 2025 kicked off at noon on July 31, with Amazon Prime…

31 July 2025

Samsung Galaxy Book 4 Edge Price (31 Jul 2025) Specification & Reviews । Samsung Laptops

Samsung Galaxy Book 4 Edge is a laptop with a 15.60-inch display that has a…

31 July 2025
News

Review: Asus Chromebook CX14

Like the mediocre quality of the display, the touchpad is also rather middling. I’ve used worse, but its plastic surface isn’t as smooth and responsive as glass ones. The click…

News Room 31 July 2025

Your may also like!

PC/Windows

Samsung Galaxy Book 4 Edge AI PC Launched in India With Snapdragon X Processor, Galaxy AI Features

News Room 31 July 2025
Mobile

Android 16-Based Nothing OS 4.0 Closed Beta for Phone 3 Begins: Eligibility Criteria, How to Apply

News Room 31 July 2025
News

Hey Microsoft, is it ‘Xbox PC’ or ‘Xbox on PC’?

News Room 31 July 2025
Gaming

Xbox content and services revenue up 13% year-on-year

News Room 31 July 2025

Our website stores cookies on your computer. They allow us to remember you and help personalize your experience with our site.

Read our privacy policy for more information.

Quick Links

  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
Advertise with us

Socials

Follow US
Welcome Back!

Sign in to your account

Lost your password?