Technology 4 min read

Bot-ridden Dating App Tinder Also Found to be Vulnerable to Hacking

ThomasDeco / Shutterstock.com

ThomasDeco / Shutterstock.com

Cybersecurity researchers just discovered that the popular dating app Tinder lacks the necessary encryption to keep your activities safe from prying eyes.

Welcome to the decade of mobile matchmaking and dating. For the lucky few, all you have to do is swipe right to find your special someone. This skin-deep evaluation of a potential partner cuts through all the red tape of a longwinded profile. You don’t have to tell your life story, you just have to have a nice picture.

Some call it soulless or superficial, but it’s an innovative way to find suitable partners. Just think: no more blind dates and no more awkward introductions during family gatherings.

If you’re feeling lonely, just install Tinder, one of today’s most popular dating apps, make that swipe, and find the perfect match.

Just, beware of bots.

Of course, there are other options like OKCupid and CoffeeMeetsBagel, yet Tinder is more handy and convenient, right? Honestly, it’s not as fancy as the other two when it comes to features. Yet, it can do the matchmaking job the way people today wanted it to: quick and easy.

Tinder is location-based and helps anyone find someone in the area where they want to chat or meet up.

@Checkmarx uncovered some @Tinder vulnerabilities that can compromise the privacy of users.Click To Tweet

The two main selling points of the app draw over 50 million users to it worldwide. They are: unrivaled convenience and utter simplicity. It can hook you up with a good match in the place of your choice with just a swipe of your finger.

When you get past all of the fake profiles and spam accounts looking to dupe you into a pornography subscription, it’s pretty awesome isn’t it? However, there may be trouble in paradise.

Reports of recently discovered encryption vulnerabilities might make you think twice before swiping on your phone.

Dating App Encryption Vulnerabilities

In a blog post on Wednesday, the Tel Aviv-based cybersecurity company Checkmarx explained the vulnerabilities its researchers found on Tinder. According to the company, the security flaws can be exploited by hackers to breach any Tinder user’s privacy.

The vulnerabilities affect both the iOS and Android versions of the application and make it possible for an attacker using the same network as the user to monitor the latter’s Tinder activity.

If that’s not scary enough, the privacy flaws also allow an attacker to “take control over the profile pictures the user sees, swapping them for inappropriate content, rogue advertising or other types of malicious content.” Apparently, these breaches could happen anytime because your favorite dating app lacks the basic HTTPS encryption to secure the application from possible hacking.

With news of hacking and cybersecurity crimes happening every day, its a wonder why a company worth $5 billion like Tinder would fail to have the BASIC encryption to protect its users.

In a demo posted on YouTube, Checkmarx researchers used a proof-of-concept app called TinderDrift. With it, they showed how a user’s Tinder session can be reconstructed by anyone sharing the same WiFi.

While swipes and matches are said to be HTTPS-encrypted, it is still possible for attackers to pinpoint encrypted commands. They do this by using specific byte patterns that represent a left or right swipe, a Super Like, and a match, the researchers said.

The researchers also emphasized that a combination of intercepted photos and monitored encrypted commands enable hackers to know all of a user’s info. What’s even more important is that certain Tinder information, like sexual preference, could be used by hackers to blackmail a user.

In its defense, Tinder sent a statement to The Verge and it reads:

“Like every other technology company, we are constantly improving our defenses in the battle against malicious hackers. For example, our desktop and mobile web platforms already encrypt profile images, and we are working towards encrypting images on our app experience as well.

However, we do not go into any further detail on the specific security tools we use or enhancements we may implement to avoid tipping off would-be hackers.”

Would you still use the dating app Tinder knowing that it could potentially compromise your private information? 

First AI Web Content Optimization Platform Just for Writers

Found this article interesting?

Let Chelle Fuertes know how much you appreciate this article by clicking the heart icon and by sharing this article on social media.


Profile Image

Chelle Fuertes

Chelle is the Product Management Lead at INK. She's an experienced SEO professional as well as UX researcher and designer. She enjoys traveling and spending time anywhere near the sea with her family and friends.

Comments (16)
Most Recent most recent
You
  1. Profile Image
    Eric Mark June 06 at 3:27 pm GMT

    Are you in need of WhatsApp account hack including 8 month ago conversations, images and deleted messages and it will be hacked remotely without the target knowledge, contact newworldhackers12@gmail.com you can also contact them for:
    Clearing of criminal records
    Boosting of credit scores
    Changing of school grades
    Hacking of other social media account like:
    Facebook
    Snapchat
    Instagram
    Twitter
    Text messages etc..
    Also text them on whatsapp: 79037124262

  2. Profile Image
    Laura Craig January 31 at 12:14 pm GMT

    Contact Leonardo today for any infidelity Issues.
    He helped me to get into my husband’s phone remotely and he helped me to gain justice to my husband’s infidelity activities. He is professional and nice hacker to work with …Contact him on his email for hire or to know more about his services

    Leonardomitnickhacking@gmail. com
    Or whatsapp him via 1 305 440 5462

  3. Profile Image
    Pamela Anderson Williams February 21 at 2:07 pm GMT

    This world is WICKED,i know their are many innocent victims passing through a lot of heartbreaks,cheating and molestation in marriages and also relationships.Honestly am using this opportunity to tell you how i was helped in my marriage by a HACKER I was fed up with wondering if i have being made a fool of by my unfaithful husband.As a faithful wife i was so eager to clear my curiosity on how to catch my cheating spouse,Even WHEN i don’t know much about computers, i never believed I could have TOTAL access to my husband’s iPhone, TEXT MESSAGES ,snapchat, call logs , INSTAGRAM ,FACEBOOK, Line and WHATS APP without having physical contact until i was recommendation by my best friend to a professional online*ENCRYPT HELP HACKER*. He only asked for little information and the phone number of my husband i never wanted to contact him at First because i was so scared but trust me it was worth the RISK because i was happy to get AUTHENTIC proof for my lawyer JAMES to file a divorce. (cyberghosthacker09@gmail.com)
    *Please tell that you were referred by me.

  4. Profile Image
    Hannah Armstrong October 16 at 10:46 am GMT

    Due to a lot of hardships and circumstances beyond my control, I had to try to know if my husband was cheating because he started to distance himself from us. I met this hacker named WIZARD JAMES, who helped me hack into my husband’s phone. He is a really great hacker, he hacked into my husband’s WhatsApp messages, Facebook messages, text messages, call logs and deleted text messages. My suspicions were right, something was really going on with my husband, he was seeing someone else. I confronted him and he apologized and swore to our kids never to do it again. I was impressed with his job and he brought me results in under 24 hours. Believe me he is real and his services are affordable. Contact him through wizardjamesrecovery@ usa . com for his great services.

  5. Profile Image
    Aalia Taylor October 24 at 9:52 pm GMT

    I never believe my husband could go out with another lady after all that we have been through with him. After I got a job and was making good money, I started buying some properties and since he was the love of my life, I decided to put all of these properties in his name. This was the greatest mistake I made and regretting my action now that he left me with nothing. I have been suffering with our 2 kids. He left us homeless and this made me run to my uncle for help. I talked to my uncle, told him all that was happening and that is when he introduced me to a hacker, WIZARD JAMES who will help me get back my property from him by hacking into his account and help me get back all my properties and everything that belongs to me. I asked my uncle if it was even possible for that to happen? Since I was scared and at the moment homeless with my kids, I decided to give it a try and I contacted him through his email. He asked for all the details about him and his phone number. After 2 days, he emailed me some documents from his email and the conversations that he had with the woman he was cheating on me with. With this information, it was a 100 percent guarantee I will get back my property once I take him to court. My uncle got me a hell heck of a lawyer that all my assets were returned to me after 13 days. Am very proud of myself and mostly grateful to WIZARD JAMES for saving my life and that of my children. Right now, he is trying to come back to me but I’ll never give him the chance. Instead I gave him a divorce. Women and men out there facing the same issue should contact him at his email address: (wizardjamesrecovery (@) usa (.) com) or text him on WhatsApp No: 4 4 7 4 1 8 3 6 7 2 0 4

  6. Profile Image
    Patricia Bylilly November 13 at 7:08 pm GMT

    I came across a review talking about a hacker, Wizard James Recovery and I was deeply in need of a hacker, so I decided to try him out. I have never met any hacker as discreet and fast like Wizard James. I mailed him at wizardjamesrecovery @usa. com to help me hack and provided me full access to my children’s phone calls, text messages and their social media accounts. That means I had to keep tabs on their daily activities and also be able to know when they are being influenced into doing bad things by anyone they try to mingle with so that they can be corrected immediately. I didn’t like the fact that am invading their privacy but I am happy I did this because my kids mean the world to me and ever since the death of their father, I vowed to always be there for them not only as a mother but also as a father so as to secure a bright future for them. You can get in touch with the hacker for any problems you have that relate to hacking. WhatsApp only at 4 4 7 418 367 204

  7. Profile Image
    Lori Koopman November 16 at 6:22 pm GMT

    BTC AND CRYPTO CAN BE RECOVERED WITH THE HELP OF SPYWEB CYBER SECURITY

    The most devastating thing happened to me a few weeks ago when I mistakenly lost access to my crypto funds containing the sum of 908,000 in Bitcoin and another 78,000 in Ethereum. I was broken down and traumatized until a close friend of mine told me about Spyweb Cyber Security Services, a reliable and secure crypto recovery company that offers the best professional service for crypto recovery. I’m truly grateful for the help of Spyweb Cyber Security in recovering my funds and giving me access to my lost crypto. I could have never imagined it was even possible to get it back until I came across Spyweb Cyber Security. You can reach out to them via their website or contact information below

    E Mail : SpyWeb @ CyberDude . Com

    What’s App : 1 3 2 3 9 0 4 8 8 2 4

  8. Profile Image
    Martha myers December 02 at 8:03 am GMT

    Can lost Bitcoin be Found or Retrieved?
    Generally speaking, whether lost bitcoin can be found or not depends on how it was lost. Considering the quantity of missing cryptocurrency out there, people have begun offering services to help recover lost bitcoin. These include data recovery specialists, but you need a professional recovery expert like Mr Tessy to help you get back your lost bitcoin.
    Contact them to recover lost bitcoin, bitcoin cash, as well as all other forms of cryptocurrency. And you can be sure that no matter how long it has been lost, you will still get your bitcoin worth.
    Contact their support team for further assistance:
    HQRECOVERY22 at G M A I L dot C O M
    You Can Whatsapp or Text: + 1 3 2 3 3 8 8 5 7 1 5
    NO UPFRONT PAYMENT!
    303 Second St., Suite 900 South Tower,
    San Francisco, CA 94107
    Thank me later.

  9. Profile Image
    Martha myers December 02 at 8:06 am GMT

    Can lost Bitcoin be Found or Retrieved?
    Generally speaking, whether lost bitcoin can be found or not depends on how it was lost. Considering the quantity of missing cryptocurrency out there, people have begun offering services to help recover lost bitcoin. These include data recovery specialists, but you need a professional recovery expert like Mr Tessy to help you get back your lost bitcoin.
    Contact them to recover lost bitcoin, bitcoin cash, as well as all other forms of cryptocurrency. And you can be sure that no matter how long it has been lost, you will still get your bitcoin worth.
    Contact their support team for further assistance:
    HQRECOVERY22 at G M A I L dot C O M

  10. Profile Image
    Axel Fitzgerald December 02 at 10:17 pm GMT

    I want to use this opportunity to appreciate and show my gratitude to Pro Wizard Web Recovery for their kind gesture, their support and dedication to help others. They put others first in all that they do. They make sure they go out of their way to make sure others are okay and have no problem or issues with what they do, am so grateful to know Pro Wizard Web Recovery and how they assist others, and how they help them to achieve what they want. Email Pro wizard Gilbert Recovery through: prowizardgilbertrecovery(@)engineer.com, & Signal username: +1 615-561-5816

  11. Profile Image
    Linda Anthony December 14 at 5:36 pm GMT

    GET RICH WITH BLANK ATM CARD, Whatsapp: +18033921735

    I want to testify about Dark Web blank atm cards which can withdraw money from any atm machines around the world. I was very poor before and have no job. I saw so many testimony about how Dark Web Online Hackers send them the atm blank card and use it to collect money in any atm machine and become rich I email them also and they sent me the blank atm card. I have use it to get 500,000 dollars. withdraw the maximum of 5,000 USD daily. Dark Web is giving out the card just to help the poor. Hack and take money directly from any atm machine vault with the use of atm programmed card which runs in automatic mode.

    You can also contact them for the service below

    * Western Union/MoneyGram Transfer

    * Bank Transfer

    * PayPal / Skrill Transfer

    * Crypto Mining

    * CashApp Transfer

    * Bitcoin Loans

    * Recover Stolen/Missing Crypto/Funds/Assets

    Email: darkwebonlinehackers @ gmail . com

    Telegram or Whats App: +18033921735

  12. Profile Image
    Valeria Esmeralda December 19 at 1:18 am GMT

    I just wanted to share this just incase anyone is in a situation where they don’t trust their partners anymore. There is no harm in wanting to know what your second half is into, it saves you from wasting more years of your life with people who do not deserve you. I will leave the hacker’s contacts below just incase anyone needs his services and assistance.
    Just a mail to remotespywise At g mil com

  13. Profile Image
    Charlie Stewart January 15 at 2:07 pm GMT

    My wife was always leaving the house late at night, and I was worried about what she was doing. I started calling detectives, but I kept getting scammed and almost gave up until I found a good private investigator (WIZARD JAMES RECOVERY/HACKING AGENCY) who did a good job of supplying the evidence I needed from her phone, which includes whatsApp, Facebook, Instagram, and other apps. I then filed for divorce using the evidence I had obtained. He also proceeded to retrieve a portion of the money I had provided to the other fictitious investigators; all the money I had spent on these assignments had been worthwhile. For more information in regards to their services contact them via email at: wizardjamesrecovery (at) usa (dot) com

  14. Profile Image
    CINDY GATTO February 10 at 10:13 pm GMT

    I’ ve got unlimited access to my husbands iPhone and PC and also have his activities in check thanks to this dude who is a Russian Hacker by his name Yuri I got introduced to from the UK who helped my friend boost her credit score. His assistance really meant a lot to me. I got access to my
    husband’s cell phone, WhatsApp calls, without his knowledge with just his cell phone number this badass did everything remotely, I don’t know.if it’s right to post his contact but I promised him referrals, alot of fake ass out here, also someone might need his help so welp. I’m grateful to Yuri.
    Email is spyhackpro9 @gmail com
    Good work always speak for itself, you should contact him!

  15. Profile Image
    CINDY GATTO February 12 at 10:40 pm GMT

    Before you hack into someone’s cell phone without a ethical hacking service, you have to make sure that the phone you want to hack is not protected with a passcode or other security setting. But if it is, then you have to hire a competent hacker to get into the mobile device using a sophisticated software which will definitely involve money to hack into the user cell phone to all information. you can reach out to ethical hacker via:spyhackpro9 @gmail com He help me spy on cheating spouse, he help me hack all his social media acconut, i can able to access his phone and the details that are need againt him. Thanks ethical hacker

  16. Profile Image
    Andrea Louis February 19 at 4:25 am GMT

    I dont see a reason why people should painstakingly look about for apps and at the end it wont work the way it ought to. Having been in a situation before where I felt I needed to get proof to show him that he had been cheating before he would allow himself to be removed from the house, basically i suspected that he uses the whatsapp app more and has a face recognition security attached to it. I did what I had to do to save myself. If you are in that situation, be confident that it can be done. You may need to use a private investigator to be sure, if you have the funds to do so. you can contact via email: hackrontech @gmail com.

share Scroll to top

Link Copied Successfully

Sign in

Sign in to access your personalized homepage, follow authors and topics you love, and clap for stories that matter to you.

Sign in with Google Sign in with Facebook

By using our site you agree to our privacy policy.