Web Hosting & Remote IT Support Cybernews found an unescured MongoDB instance belonging to Headero The database contained millions of records and PII It has since been locked down, but users should still be on their guard Security researchers from Cybernews have reported uncovering a massive MongoDB instance belonging to a dating and hookup app called Headero. The database contained more than 350,000 user records, more than three million chat records, and more than a million chat room records. Among the exposed data are names, email addresses, social login IDs, JWT tokens, profile pictures, device tokens, sexual preferences, STD status, and - extra worryingly - exact GPS locations. However, Headero's developer, a company called TheThotExperiment, says Cybernews' information is not precise: "Our investigation—under way in cooperation with the Office of the Privacy Commissioner of Canada—has already established several verified facts," the company told...