A notorious hacking group called ShinyHunters has claimed responsibility for two major dating app data breaches affecting Hinge, OkCupid, Match.com, and Bumble. The attacks have put millions of users at risk.

Dating Apps Impacted by Data Breaches
ShinyHunters posted on its dark web leak site claiming to hold over 10 million records from Hinge, OkCupid, and Match.com. All three are owned by Match Group, the same company behind Tinder and Plenty of Fish.
Researchers who analyzed the stolen samples found the following exposed details:
- User IDs and full names
- Transaction records showing payments for premium features
- IP addresses and geographic locations
- Dating profile text, bios, and match histories
- Phone numbers and authentication tokens
- Internal corporate documents and employee emails
The hackers suggest they accessed this information through AppsFlyer, a third-party mobile marketing analytics platform. AppsFlyer has denied any involvement, calling those claims “misleading and inaccurate.”
Match Group confirmed a security incident took place and says no login credentials, financial records, or private messages were accessed.

TROYPOINT Tip: Protect your identity and personal info from a data breach by using Aura Identity Theft Protection which is TROYPOINT’s recommended identity theft protection.
Aura Identity Theft Protection Review
Bumble Also Targeted
Days later, ShinyHunters added Bumble to its victim list. The group claims to have stolen 30GB of internal files from the company’s Google Drive and Slack channels after phishing a contractor’s account.
Hide Your Digital Fingerprint
Bumble confirmed the breach but says its security team shut down access quickly. According to the company, no member profiles, direct messages, or account databases were compromised.
Researchers did find session IDs and cookies within the leaked samples, which could allow attackers to hijack active sessions.

If you use any of the affected apps, we suggest changing your passwords and enabling two-factor authentication on every dating profile. Also log out of all active sessions to invalidate old tokens, and watch for targeted phishing emails that reference your dating activity.
Final Thoughts
These dating app data breaches remind us that even major platforms with hundreds of millions of users aren’t immune to attacks.
Dating profiles contain some of the most sensitive information people share online, and criminals can weaponize it for blackmail, fraud, and identity theft.
For more details on this story, refer to the reports from Cybernews.
We want to know your thoughts. What do you think about this story? Let us know in the comment section below!
Be sure to stay up-to-date with the latest streaming news, reviews, tips, and more by following the TROYPOINT Advisor with updates weekly.
This page includes affiliate links where TROYPOINT may receive a commission at no extra cost to you. Many times, visitors will receive a discount due to the special arrangements made for our fans. Learn more on my Affiliate Disclaimer page.




