An app for anonymously reporting individuals accused of speaking ill against conservative Charlie Kirk leaked personal data about its users.

  • Ganbat@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    60
    ·
    edit-2
    5 days ago

    Not releasing the data or maliciously deleting every account on the site is a good practice.

    This is a doxxing site designed to target political enemies. It didn’t need good practices.

  • merdaverse@lemmy.zip
    link
    fedilink
    English
    arrow-up
    29
    ·
    5 days ago

    SAN reached out to a user listed in the leaked data and confirmed that they had in fact downloaded the app. The user, who asked to remain anonymous over fears of retribution, expressed concerns that Cancel the Hate might be a “scam” after receiving an influx of donation requests to their email.

    Sounds like they got conned. I hope some noble soul releases the data to doxx these morons.

  • fullsquare
    link
    fedilink
    English
    arrow-up
    21
    ·
    5 days ago

    once is happenstance, twice is coincidence, three times is enemy action. were all these apps vibecoded?

    • zd9@lemmy.world
      link
      fedilink
      English
      arrow-up
      26
      ·
      5 days ago

      I guarantee it had at least 25% of AI generated code. These shitty right wing grifts are all the same. They’re just executing the perfect Russian influence campaigns to further split the country apart, and Putin couldn’t be happier.

    • NuXCOM_90Percent@lemmy.zip
      link
      fedilink
      English
      arrow-up
      9
      ·
      5 days ago

      Unlikely. But even if they were, these apps basically have off the shelf software packages.

      The problem is when you make a service that needs a lot of thought for OPSEC and configuration and paint the biggest target imaginable on it.

  • EtherWhack@lemmy.world
    link
    fedilink
    English
    arrow-up
    10
    ·
    5 days ago

    Now there’s an idea…

    Have a dozen+ of these apps on the app stores, except only the reporter gets doxed (maybe given to the reported, if possible) and the reported’s info just gets sent to /null.