An exposed Firebase database compromised two niche dating platforms operated by the same organization, leaking sensitive user data from Senior Dating and ladies.com. The Senior Dating breach affected about 766,000 users, while ladies.com affected roughly 119,000 users. Exposed records included email addresses, photos, gender, dates of birth, and precise geolocation data; the ladies.com breach also exposed sexual orientation, and Senior Dating records included Facebook account links.
The operator acknowledged the incidents in December 2024 and shut down both services, with ladies.com going offline in mid-2024 and Senior Dating later discontinued alongside it. Both breaches were listed by Have I Been Pwned as sensitive, meaning they are not publicly searchable, reflecting the highly personal nature of the exposed information and the risk posed by the disclosure of intimate profile details and exact latitude and longitude coordinates.

See attribution, scope, and your downstream exposure.
3 events from the most recent confirmed update back to the earliest known activity.
In December 2024, the site operator acknowledged the data breach affecting Senior Dating and later acknowledged the ladies.com breach as well. The disclosures confirmed the incidents and their connection to the same organization.
The operator shut down ladies.com in mid-2024, and the Senior Dating reference indicates Senior Dating was also later shut down following the breach. Both services were ultimately taken offline in connection with the incidents.
In 2024, exposed Firebase databases led to breaches of two dating sites run by the same organization: Senior Dating and ladies.com. The incidents exposed sensitive user data including email addresses, photos, profile details, dates of birth, and precise location coordinates.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.