Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Trending Now

28 Years Later and every new movie you can now watch on streaming

Tesla to pay more than $200 million in damages after being found partly liable for fatal Autopilot crash Canada reviews

'DWTS' Pro Rylee Arnold Reveals Major Health Scare on a Flight: 'Never Done This to Myself'

An Emergency Services Trainer On £38,719

Three genre-blurring SummerWorks productions meditate on memory and loss

Hotel Burg Opens in Leesburg, Virginia

The complete guide to Toronto’s Mimico Village neighbourhood 

Facebook X (Twitter) Instagram
  • Privacy
  • Terms
  • Advertise
  • Contact us
Facebook X (Twitter) Instagram Pinterest Vimeo
Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Newsletter
Canadian ReviewsCanadian Reviews
You are at:Home » Lovense was told its sex toy app leaked users’ emails and didn’t fix it Canada reviews
Reviews

Lovense was told its sex toy app leaked users’ emails and didn’t fix it Canada reviews

29 July 20253 Mins Read

Lovense, the maker of internet-connected sex toys, left user emails exposed for months — even after it became aware of the vulnerability. In a blog post spotted by TechCrunch and Bleeping Computer, security researcher BobDaHacker found that they could “turn any username into their email address,” which they could then use to take over someone’s account.

Though BobDaHacker initially disclosed this vulnerability to Lovense in March, the researcher claims Lovense waited months before fixing it, and still hasn’t fully addressed the issue. Lovense is behind a range of sex toys that users can connect to the internet and remotely control via its app, which came under fire for a “minor bug” in 2017 that recorded users’ sex sessions.

As outlined in BobDaHacker’s post, the security researcher noticed something strange in the app’s API response when muting someone: it presented their email address. BobDaHacker then figured out that they could take advantage of this vulnerability by sending a modified request to Lovense’s servers, tricking it into returning the target user’s email address.

BobDaHacker even developed a script that they say can convert someone’s username into an email address in less than a second. “This is especially bad for cam models who share their usernames publicly but obviously don’t want their personal emails exposed,” BobDaHacker writes. To make matters worse, BobDaHacker later discovered that they could take over a user’s account with their email address and an authentication token generated by Lovense.

BobDaHacker initially reported these vulnerabilities in partnership with the Internet of Dongs, a group that aims to make internet-connected sex toys more secure. However, the security researcher says Lovense didn’t immediately fix the issue. Instead, Lovense claimed that the account takeover bug was fixed in April, even though BobDaHacker said it wasn’t, and that a fix for the email leak issue would take 14 months to roll out.

“We also evaluated a faster, one-month fix. However, it would require forcing all users to upgrade immediately, which would disrupt support for legacy versions,” Lovense said, according to BobDaHacker. As noted by BobDaHacker, security researchers reported the same account takeover bug to Lovense in 2023, but the company appears to have closed the bug without actually fixing it.

In a statement to Bleeping Computer, Lovense says it has submitted an app update “addressing the latest vulnerabilities” to app stores. “The full update is expected to be pushed to all users within the next week,” Lovense says. “Once all users have updated to the new version and we disable older versions, this issue will be completely resolved.” Lovense didn’t immediately respond to The Verge’s request for comment.

Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email

Related Articles

Tesla to pay more than $200 million in damages after being found partly liable for fatal Autopilot crash Canada reviews

Reviews 1 August 2025

Why Nintendo didn’t raise the price of the Switch 2 (yet) Canada reviews

Reviews 1 August 2025

Fujifilm is raising camera prices by up to $800 Canada reviews

Reviews 1 August 2025

Bose’s QuietComfort Headphones are $130 off for back-to-school season Canada reviews

Reviews 1 August 2025

The biggest fighting game tournament is a little smaller this year — but still exciting Canada reviews

Reviews 1 August 2025

Google backtracks on plans to deactivate shortened goo.gl links Canada reviews

Reviews 1 August 2025
Top Articles

OANDA Review – Low costs and no deposit requirements

28 April 2024341 Views

These Ontario employers were just ranked among best in Canada

17 July 2025246 Views

What Time Are the Tony Awards? How to Watch for Free

8 June 2025151 Views

Getting a taste of Maori culture in New Zealand’s overlooked Auckland | Canada Voices

12 July 2025130 Views
Demo
Don't Miss
Travel 1 August 2025

Hotel Burg Opens in Leesburg, Virginia

Image Credit Hotel Burg    Hotel Burg has opened a 39-room boutique hotel on King Street…

The complete guide to Toronto’s Mimico Village neighbourhood 

Why Nintendo didn’t raise the price of the Switch 2 (yet) Canada reviews

1st Aug: The Campaign (2012), 1hr 25m [R] – Streaming Again (6.05/10)

About Us
About Us

Canadian Reviews is your one-stop website for the latest Canadian trends and things to do, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

28 Years Later and every new movie you can now watch on streaming

Tesla to pay more than $200 million in damages after being found partly liable for fatal Autopilot crash Canada reviews

'DWTS' Pro Rylee Arnold Reveals Major Health Scare on a Flight: 'Never Done This to Myself'

Most Popular

Why You Should Consider Investing with IC Markets

28 April 202422 Views

OANDA Review – Low costs and no deposit requirements

28 April 2024341 Views

LearnToTrade: A Comprehensive Look at the Controversial Trading School

28 April 202448 Views
© 2025 ThemeSphere. Designed by ThemeSphere.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact us

Type above and press Enter to search. Press Esc to cancel.