Whisper app exposes intimate secrets of nearly a billion users

(Image credit: Shutterstock)

Whisper is a social media platform and app that’s core focus is to allow its users to anonymously share secrets, often intimate in nature, and chat to people with shared interests.

An investigation by The Washington Post, however, has revealed that Whisper left the information of nearly 900 million users exposed to anyone that wanted to view it, located in a database that wasn’t password protected and was accessible by the public.

The database contained a variety of compromising user details that are tied to each ‘whisper’ (the platform’s name for a post), including sexual orientation, gender, age, ethnicity, nickname, place of work and the location data for the user’s last post.

While the database didn’t contain the real names of any users, the researchers that uncovered it were concerned that the amount of information included could have lead to individuals being uncovered, and even blackmailed given the private nature of the platform.

Obviously this is concerning for any user, but it’s especially troubling considering Whisper allows any user over the age of 13 to sign up. A reporter with the Post found 1.3 million results when searching the database for users that had listed their age as being 15.

Immediately after the researchers had alerted both the company and law enforcement to the database, access to it was blocked. In response, a representative of Whisper told the Post that the extra data tied to posts was “a consumer facing feature of the application which users can choose to share or not share”.

After being found to collect location data on its users in 2014, even if they’d opted out, Whisper stated that it doesn’t follow or track its users and that its database isn’t accessible to the public. The app first launched in 2012 but it’s unclear exactly how many years this database has been exposed to the public for.

Harry Domanski
Harry is an Australian Journalist for TechRadar with an ear to the ground for future tech, and the other in front of a vintage amplifier. He likes stories told in charming ways, and content consumed through massive screens. He also likes to get his hands dirty with the ethics of the tech.
Latest in Cyber Crime
A person scanning a QR code on a smartphone
Quishing is the new QR code scam you need to watch out for – here's how to stay safe
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Text Phishing Scams
Do not fall for this dangerous Amazon shopping scam
Cyber-security
Safeguarding against next-gen cyber risks
The North Face jacket
Thousands of North Face customers accounts hacked, personal data stolen
Smartphone hacked with data flow in the background
9 signs your phone has been hacked
Latest in News
Google Chromecast 2
Chromecasts are still broken – but Google tells fuming owners not to factory reset their devices
Garmin Instinct 3 next to the Apple Watch Ultra 2
New figures claim the smartwatch market just shrunk for the first time ever, and the Apple Watch Ultra 3 is to blame
Hitman: World of Assassination on PSVR 2.
Hitman: World of Assassination hits PSVR 2 soon, finally giving you a reason to dust off your headset
Hector Ayala sitting on a bed as he wears his White Tiger costume in Daredevil: Born Again season 1
Daredevil: Born Again episode 3's shocking final scene is a big misdirect, and I've got the evidence to back it up
A stressed employee looking over some graphs
UK workers are spending more than one day per week tracking down information
Vision Pro Metallica
Apple Vision Pro goes off to never never land with Metallica concert footage