Monday, 15 Jun 2026
Subscribe
logo logo
  • Global
  • Technology
  • Business
  • AI
  • Cloud
  • Edge Computing
  • Security
  • Investment
  • More
    • Sustainability
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
  • 🔥
  • data
  • revolutionizing
  • Stock
  • Investment
  • Future
  • Secures
  • Growth
  • Top
  • Funding
  • Power
  • Center
  • technology
Font ResizerAa
Silicon FlashSilicon Flash
Search
  • Global
  • Technology
  • Business
  • AI
  • Cloud
  • Edge Computing
  • Security
  • Investment
  • More
    • Sustainability
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Silicon Flash > Blog > Security > Exposed: Lovense’s Sex Toy App Security Breach Exposes Users’ Email Addresses
Security

Exposed: Lovense’s Sex Toy App Security Breach Exposes Users’ Email Addresses

Published July 29, 2025 By Juwan Chacko
Share
4 Min Read
Exposed: Lovense’s Sex Toy App Security Breach Exposes Users’ Email Addresses
SHARE
Lovense, a company known for its internet-connected adult toys, recently faced a security breach where user emails were left exposed for an extended period. Despite being made aware of the vulnerability by security researcher BobDaHacker, Lovense took months to address the issue, leaving user accounts at risk.

Lovense, the maker of internet-connected sex toys, left user emails exposed for months — even after it became aware of the vulnerability. In a blog post spotted by TechCrunch and Bleeping Computer, security researcher BobDaHacker found that they could “turn any username into their email address,” which they could then use to take over someone’s account.

Though BobDaHacker initially disclosed this vulnerability to Lovense in March, the researcher claims Lovense waited months before fixing it, and still hasn’t fully addressed the issue. Lovense is behind a range of sex toys that users can connect to the internet and remotely control via its app, which came under fire for a “minor bug” in 2017 that recorded users’ sex sessions.

As outlined in BobDaHacker’s post, the security researcher noticed something strange in the app’s API response when muting someone: it presented their email address. BobDaHacker then figured out that they could take advantage of this vulnerability by sending a modified request to Lovense’s servers, tricking it into returning the target user’s email address.

BobDaHacker even developed a script that they say can convert someone’s username into an email address in less than a second. “This is especially bad for cam models who share their usernames publicly but obviously don’t want their personal emails exposed,” BobDaHacker writes. To make matters worse, BobDaHacker later discovered that they could take over a user’s account with their email address and an authentication token generated by Lovense.

See also  Accelerating App Development with Polkadot: Will This Propel the DOT Token to New Heights?

BobDaHacker initially reported these vulnerabilities in partnership with the Internet of Dongs, a group that aims to make internet-connected sex toys more secure. However, the security researcher says Lovense didn’t immediately fix the issue. Instead, Lovense claimed that the account takeover bug was fixed in April, even though BobDaHacker said it wasn’t, and that a fix for the email leak issue would take 14 months to roll out.

“We also evaluated a faster, one-month fix. However, it would require forcing all users to upgrade immediately, which would disrupt support for legacy versions,” Lovense said, according to BobDaHacker. As noted by BobDaHacker, security researchers reported the same account takeover bug to Lovense in 2023, but the company appears to have closed the bug without actually fixing it.

In a statement to Bleeping Computer, Lovense says it has submitted an app update “addressing the latest vulnerabilities” to app stores. “The full update is expected to be pushed to all users within the next week,” Lovense says. “Once all users have updated to the new version and we disable older versions, this issue will be completely resolved.” Lovense didn’t immediately respond to The Verge’s request for comment.

TAGGED: Addresses, app, breach, Email, exposed, Exposes, Lovenses, security, Sex, Toy, users
Share This Article
Facebook LinkedIn Email Copy Link Print
Previous Article Navigating the Spotify Stock Plunge: Key Insights for Investors Navigating the Spotify Stock Plunge: Key Insights for Investors
Next Article Groq’s Rising Valuation: The Next Generation of AI Chips Groq’s Rising Valuation: The Next Generation of AI Chips
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
LinkedInFollow

Popular Posts

Sojo Industries Secures $40 Million in Funding

Summary: Sojo Industries, a Bristol-based industrial automation company, secured $40M in funding led by S2G…

June 15, 2025

Uncovering the Top Misconceptions: Social Security Rules You Need to Know

Summary: 1. Social Security mistakes are common due to confusing rules and overlooked details. 2.…

November 20, 2025

Navigating Bitcoin ETFs: Understanding Inflows, Outflows, and Price Fluctuations

Summary: 1. Understanding the impact of ETF inflows and outflows on investment returns. 2. Exploring…

September 11, 2025

Trump Takes Aim at Shareholder Rights, Backing CEOs in Corporate Power Struggle

Tesla (NASDAQ:TSLA) faces scrutiny as President Trump criticizes advisory firms over Elon Musk's $1 trillion…

January 10, 2026

Red Hat and AMD team up to boost AI capabilities in hybrid cloud environments

Red Hat and AMD Strengthen Collaboration for AI Workloads and Virtualised Infrastructure Red Hat and…

May 23, 2025

You Might Also Like

Could Texas Overtake North Virginia as the Data Center Capital?
Security

Could Texas Overtake North Virginia as the Data Center Capital?

Juwan Chacko
The Essential Step Every Retiree Must Take Before Claiming Social Security Benefits in 2026
Investments

The Essential Step Every Retiree Must Take Before Claiming Social Security Benefits in 2026

Juwan Chacko
Silicon Valley Giant Palo Alto Acquires Israeli Startup Koi for Advanced Agentic AI Security
Global Market

Silicon Valley Giant Palo Alto Acquires Israeli Startup Koi for Advanced Agentic AI Security

Juwan Chacko
Securing Success: The Importance of IT Bonuses and Unautomatable Security Skills
Global Market

Securing Success: The Importance of IT Bonuses and Unautomatable Security Skills

Juwan Chacko
logo logo
Facebook Linkedin Rss

About US

Silicon Flash: Stay informed with the latest Tech News, Innovations, Gadgets, AI, Data Center, and Industry trends from around the world—all in one place.

Top Categories
  • Technology
  • Business
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2025 – siliconflash.com – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?