/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

← → days · ↑ ↓ browse · Enter similar · o open

A second security breach at women's safety app Tea exposes 1.1M+ user messages, dating from early 2023 up to last week, many containing sensitive information

A second, major security issue with women's dating safety app Tea has exposed much more user data than the first breach we first reported …

404 Media Emanuel Maiberg

Context & Ripple Effects

Tea’s rapid growth and safety-focused positioning put unusually sensitive identity and interpersonal data at the center of its service: coverage described roughly 4 million users and 900,000 new signups as it went viral, while users could anonymously flag local men. Tea’s rapid viral adoption raised the stakes of any security failure.

This follows a reported exposure of 72,000 images, including verification photos and government IDs, from an older database. The newly reported message exposure suggests the issue is not limited to historical verification material, even as Tea remained highly ranked in the US App Store. The earlier image and ID leak is the immediate backdrop.

First-order effects

  • People whose chats were exposed face loss of privacy around sensitive dating-safety discussions; Tea must respond to a breach affecting a far broader set of communications than the previously reported image database.
  • Tea’s core promise—helping women navigate dating safely—now conflicts directly with repeated exposure of the data users supplied to obtain that protection.

Second-order effects

  • The second incident is likely to increase pressure on Tea to demonstrate stronger controls over message data, retention, and access, rather than framing the earlier event as an isolated legacy-database problem.
  • Other dating and safety apps that collect identity checks, location-linked information, or user reports will face closer scrutiny of whether their privacy design matches the sensitivity of the data they solicit.

Third-order effects

  • If repeated breaches accompany rapid adoption of safety-oriented social apps, trust may increasingly depend on verifiable data-minimization and consent practices, not only on a platform’s stated protective mission.
  • The episode reinforces a broader tension in consumer safety products: features built on candid reports and identity verification can create concentrated stores of information whose compromise may undermine the safety they are meant to provide.

The trend: Consumer safety platforms are being forced to treat privacy and data retention as core product-safety requirements as their services collect more sensitive identity and interpersonal data.

Discussion

  • @evacide @evacide on bluesky
    There is a new Tea data breach and it includes private messages, because of course it does.  —  I also nearly dislocated an eyeball with my side-eye when I read that Tea requires users to upload a selfie to “prove they are a woman.”  —  www.404media.co/a-second-tea...
  • @josephcox Joseph Cox on bluesky
    We verified the Tea direct messages by taking usernames from the list and trying to make accounts on Tea with them.  This wasn't possible because the usernames already existed, meaning the data relates to real Tea users www.404media.co/a-second-tea...  [image]
  • @jasonkoebler Jason Koebler on bluesky
    It's very alarming that this is happening at all, but especially happening in the context of government-ordered ID checks to use vast swaths of the internet  —  www.404media.co/a-second-tea...
  • @ianbrown.tech @ianbrown.tech on bluesky
    Any non-#E2EE messaging at this point should be seen as directly negligent [embedded post]
  • @racheltobac Rachel Tobac on x
    2nd Tea App breach?! 1 million messages w/ sensitive cheating stories, details of ending pregnancies, contact details, real names — it could not be more serious. Here are actions to protect yourself and what to do next. I'll be on NBC News Now at 7 pm ET tomorrow discussing this.…
  • r/cybersecurity r on reddit
    A Second Tea Breach Reveals Users' DMs About Abortions and Cheating
  • r/AWDTSGisToxic r on reddit
    Tea App - Second Breach by a Researcher.  Millions of messages/DMs as recent as last week.
  • r/WomenInNews r on reddit
    A 2nd Breach from the Tea App Reveals Users' DMs About Abortions and Cheating
  • r/4bmovement r on reddit
    Please stop using the Tea app.  Its been hacked again.
  • r/technology r on reddit
    A Second Tea Breach Reveals Users' DMs About Abortions and Cheating