the tech buzz

SUBSCRIBE
AIEnterpriseDealsSecurityCrypto
Newsletter

the tech buzz

Your premier source for technology news, insights, and analysis. Covering the latest in AI, startups, cybersecurity, and innovation.

FOLLOW US

THE DAILY

Get the latest technology updates delivered straight to your inbox.

Company

  • About Us
  • Editorial Team
  • Write For Usnew
  • Contact Us
  • Advertisenew

Legal

  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Disclaimer
  • EULA
  • AI Code of Conduct

Resources

  • Newsletters
  • RSS Feeds
  • Subscribe
  • Pricing & Packages
  • Sitemap
  • Archives
  • TechBuzz Pressnew

PUBLISH WITH US

Reach 1.1M+ subscribers via TechBuzz Press.

TechBuzz Press

HAVE A TIP?

Send us a tip using our anonymous form.

Send a tip

HAVE QUESTIONS?

Reach out to us on any subject.

Ask Now

Browse by Category

AIBlockchainCloudSecurityDataDealsInvestmentsEnterpriseVenturesIoTMobileRoboticsSoftwareStartupsAppleMetaMicrosoftOpenAiGoogleTesla

© 2026 The Tech Buzz. All rights reserved.

the tech buzz

Doxxing App Backfires, Exposes Own Users in Security Breach

ArticlesNewsletters
ArticlesNewsletters
cybersecurity

Doxxing App Backfires, Exposes Own Users in Security Breach

Cancel the Hate app designed to expose Charlie Kirk critics leaks user data instead

by The Tech Buzz

PUBLISHED: Sat, Sep 27, 2025, 3:04 PM UTC | UPDATED: Fri, Sep 4, 2026, 2:26 PM UTC

Add as a preferred source on Google
Doxxing App Backfires, Exposes Own Users in Security Breach

A doxxing app created to target critics of slain activist Charlie Kirk has spectacularly backfired, exposing its own users' personal information through basic security flaws. The ironic twist highlights the dangerous intersection of political extremism and poor cybersecurity practices as digital vigilantism spreads online.

The doxxing app Cancel the Hate has become the latest cautionary tale about digital vigilantism gone wrong. Created in response to Charlie Kirk's September 10 assassination, the app was designed to crowdsource personal information about critics of the right-wing activist and others deemed to be "supporting political violence." But this week, the platform suspended operations after security researcher BobDaHacker revealed that the app was leaking its own users' data - the very people it had recruited to expose others.

The security flaws were almost comically basic. Despite offering privacy settings, the app's website publicly exposed users' email addresses and phone numbers even when accounts were set to private. BobDaHacker demonstrated to Straight Arrow News that the researcher could access all user information and even delete accounts at will. It's the kind of elementary security failure that underscores how quickly political anger can outpace technical competence.

The app's homepage featured Kirk's photo and was founded by a supporter who cited the activist's death as motivation. Users were encouraged to collect employment details and other personal information about targets, creating what essentially amounted to a crowdsourced surveillance network. But the platform's own surveillance capabilities proved embarrassingly porous.

After the security holes were exposed, Cancel the Hate quietly took down its reporting features and posted a message about moving to a "new service provider." Tellingly, the page selling $23 T-shirts remains fully operational - apparently e-commerce security was prioritized over user privacy.

Advertisement

This incident reflects broader security disasters plaguing politically-motivated platforms. The rush to capitalize on outrage often means basic cybersecurity gets overlooked, leaving users vulnerable to the exact tactics they're trying to deploy against others.

Meanwhile, Microsoft made headlines this week for pulling some cloud services from Israeli military operations following revelations about Palestinian surveillance. The tech giant's president Brad Smith said the company had decided to "cease and disable" specific cloud storage and AI services after an investigation found Israeli Unit 8200 was using Microsoft Azure to store massive amounts of intercepted Palestinian phone call data.

The surveillance system could collect over "a million calls an hour" and had amassed 8,000 terabytes of data before being exposed by The Guardian and other publications in August. Microsoft's action follows employee protests over the company's ties to Israeli military operations in Gaza.

Advertisement

In another disturbing cybersecurity development, ransomware groups have sunk to targeting preschools. The BBC reports that hackers stole personal information and photos of approximately 8,000 children from the Kido preschool chain, threatening to leak the data unless ransom demands are met. The criminals have gone so far as to contact parents directly and post sample information about 10 children on dark web sites.

The call-recording app Neon also faced security scrutiny this week after racing up iPhone app charts. The startup pays users up to $30 daily for phone call recordings it sells to AI training companies, but TechCrunch discovered that security flaws allowed anyone to access other users' phone numbers, recordings, and transcripts. Founder Alex Kiam temporarily paused operations, citing the need for "extra layers of security."

These incidents underscore how quickly digital platforms can become security nightmares when growth outpaces proper safeguards. Whether it's political doxxing apps, military surveillance systems, or AI training platforms, the pattern remains consistent: collect first, secure later often leads to spectacular failures that expose the very people these systems claim to protect.

The Cancel the Hate debacle perfectly illustrates how digital vigilantism can backfire when basic security practices are ignored. As political tensions drive more crowdsourced surveillance efforts, the gap between activist fervor and technical competency creates dangerous vulnerabilities. Meanwhile, major tech companies face growing pressure to audit how their cloud services enable surveillance operations, suggesting we'll see more Microsoft-style pullbacks in the coming months. The week's security failures serve as a stark reminder that in the rush to weaponize data, everyone eventually becomes a target.

Advertisement

Advertisement

Trending Now

1

GoPro CEO Vows Cameras Stay Core After Starman Deal

2

Judge Splits Ruling in X vs. Twitter Rival Fight

3

Tim Cook Steps Down, Ternus Takes Apple's Helm

4

Google's Lyria 3.5 Brings AI Music to Gemini

5

Google Translate Gets Listening Mode, Live Background Mode

People Also Ask

Cancel the Hate was a doxxing app created to expose Charlie Kirk critics by collecting their personal information. It suspended operations after security researcher BobDaHacker revealed the app was leaking its own users' email addresses and phone numbers through basic security flaws.

Despite offering privacy settings, the app's website publicly exposed users' email addresses and phone numbers even when accounts were set to private. Security researcher BobDaHacker could access all user information and delete accounts at will through these basic flaws.

Microsoft ceased specific cloud storage and AI services after discovering Israeli Unit 8200 used Microsoft Azure to store massive amounts of intercepted Palestinian phone call data, collecting over one million calls per hour totaling 8,000 terabytes of surveillance data.

Ransomware groups stole personal information and photos of approximately 8,000 children from the Kido preschool chain, threatening to leak the data unless ransom demands are met. Criminals contacted parents directly and posted sample information about 10 children online.

The Neon app pays users up to $30 daily for phone call recordings, which it then sells to AI training companies. However, security flaws allowed anyone to access other users' phone numbers, recordings, and transcripts before operations were paused.

Political doxxing apps often suffer from basic security failures because activist fervor outpaces technical competency. The rush to capitalize on political outrage means cybersecurity gets overlooked, leaving users vulnerable to the exact tactics they're deploying against others.

More in cybersecurity

How To Prevent Account Takeover?

How To Prevent Account Takeover?

Coupang CEO Resigns After 34M Customer Data Breach

Coupang CEO Resigns After 34M Customer Data Breach

Petco Data Breach Exposes SSNs, Driver's Licenses in Major Leak

Petco Data Breach Exposes SSNs, Driver's Licenses in Major Leak

Petco Data Breach Exposes Customer Info in App Config Error

Petco Data Breach Exposes Customer Info in App Config Error

Marquis Ransomware Attack Hits 400K+ Bank Customers

Marquis Ransomware Attack Hits 400K+ Bank Customers

Okta beats Q3 earnings as AI agent push drives growth

Okta beats Q3 earnings as AI agent push drives growth

More Articles

Mixpanel Data Breach Exposes Millions, OpenAI Cuts Ties

Mixpanel Data Breach Exposes Millions, OpenAI Cuts Ties

Dec 2

Coupang Data Breach Hits 34M Users in Months-Long Attack

Coupang Data Breach Hits 34M Users in Months-Long Attack

Dec 1

London Councils Hit by Major Cyberattack, Emergency Plans Activated

London Councils Hit by Major Cyberattack, Emergency Plans Activated

Nov 26

Tyler Technologies jury system bug exposed juror data across US

Tyler Technologies jury system bug exposed juror data across US

Nov 26

Major Banks Assess Data Theft After SitusAMC Breach

Major Banks Assess Data Theft After SitusAMC Breach

Nov 24

Corporate America ditches passwords as 92% of CISOs go passwordless

Corporate America ditches passwords as 92% of CISOs go passwordless

Nov 23