PogoWasRight.org

Menu
  • About
  • Privacy
Menu

‘Panty Buster’ Toy Left Private Sex Lives Of 50,000 Exposed

Posted on February 1, 2018 by pogowasright.org

As a data leak, this belongs on DataBreaches.net. I will cross-post it there, but I do want readers of this site to remain cognizant that there is just so much risk to privacy and data these days. Thomas Fox-Brewster reports:

Valentine’s Day is just around the corner. Some might be considering the purchase of a special kind of pleasure-giving device for their partner as a gift. But they might want to rethink those plans: the quality of cybersecurity in newfangled, connected sex toys has been unsurprisingly shocking in recent years. And it doesn’t look to be getting much better, if research released by Austrian company SEC Consult on Thursday is anything to go by.

Probing Vibratissimo’s ‘Panty Buster’ sex toy for women, the researchers found the device and associated websites had multiple vulnerabilities. By far the most severe issue (and one that was thankfully immediately addressed by Vibratissimo’s owner, Amor Gummiwaren) allowed anyone to obtain a database of all customer information by simply grabbing a username and password from an open file on the vibratissimo.com website. And it was possible to grab passwords for the sex toy owner accounts, as they were left open in plain text. From there, a hacker could look at sensitive data, including explicit images, sexual orientation and home addresses, according an SEC blog post.

Read more on Forbes.

Category: BreachesBusiness

Post navigation

← Despite Protests, ISP Ordered To Hand Over Pirates’ Details to Police
A Poor Mother’s Right to Privacy →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • Privacy enforcement under Andrew Ferguson’s FTC
  • “We would be less confidential than Google” – Proton threatens to quit Switzerland over new surveillance law
  • CFPB Quietly Kills Rule to Shield Americans From Data Brokers
  • South Korea fines Temu for data protection violations
  • The BR Privacy & Security Download: May 2025
  • License Plate Reader Company Flock Is Building a Massive People Lookup Tool, Leak Shows
  • FTC dismisses privacy concerns in Google breakup

RSS Recent Posts on DataBreaches.net

  • Australian national known as “DR32” sentenced in U.S. federal court
  • Alabama Man Sentenced to 14 Months in Connection with Securities and Exchange Commission X Hack that Spiked Bitcoin Prices
  • Japan enacts new Active Cyberdefense Law allowing for offensive cyber operations
  • Breachforums Boss “Pompompurin” to Pay $700k in Healthcare Breach
  • HHS Office for Civil Rights Settles HIPAA Cybersecurity Investigation with Vision Upright MRI
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy