Tea, a dating discussion app that recently suffered a high-profile cybersecurity breach, announced that some direct messages also were accessed in the incident.
The app — designed to let women safely discuss men they date — rocketed to the top of the United States Apple App Store last week but then confirmed on July 25 that thousands of selfies and photo IDs of registered users were exposed in a digital security breach.
404 Media was the first to report on the second security issue, citing an independent security researcher who found it was possible for hackers to access messages between users discussing abortions, cheating partners and phone numbers.
In a statement posted on its social media accounts, Tea said it “recently learned that some direct messages (DMs) were accessed as part of the initial incident.”
“Out of an abundance of caution, we have taken the affected system offline,” the app said. “At this time, we have found no evidence of access to other parts of our environment.”
Tea has said about 72,000 images were leaked online in the initial incident, including 13,000 images of selfies or selfies featuring a photo identification that users submitted during account verification. Another 59,000 images publicly viewable in the app from posts, comments and direct messages also were accessed without authorization, a spokesperson said last week.