Badoo Faces Another Data Breach: What Founders Must Learn

Badoo's alleged breach of 51M accounts highlights security risks. Founders must prioritize robust data protection to prevent user exposure and trust loss.

Bill AlenaFounder & CEO, High Intent Media
3 min readUpdated July 20, 2026
Badoo Faces Another Data Breach: What Founders Must Learn
Badoo Faces Another Data Breach: What Founders Must Learn

A threat actor has put up for sale a large dataset allegedly containing information from more than 51 million Badoo user accounts. The hacker claims the package includes a wide range of sensitive personal information, though the authenticity of the data remains unconfirmed. This incident raises serious concerns for users of one of the world's largest dating platforms.

Scope of the Alleged Data Breach

The hacker claims the package includes email addresses, passwords, full names, genders, dates of birth, locations, phone numbers, photos, profile details, interests, membership status, and IP addresses. The authenticity and recency of the data have not been independently verified, and it may include previously leaked information or data obtained through scraping. Security experts caution that such datasets often contain a mix of legitimate breach data and publicly available information.

Cybersecurity concept showing data breach
Cybersecurity concept showing data breach

Badoo, one of the oldest and largest dating platforms, has accumulated nearly 500 million accounts since its launch and reports around 30 million monthly active users. A breach of this scale would expose users to risks including phishing, identity theft, credential stuffing attacks, and potential extortion related to their dating activity. The sensitive nature of dating platform data makes such breaches particularly troubling for affected users.

A breach of this scale would expose users to risks including phishing, identity theft, credential stuffing attacks, and potential extortion related to their dating activity.

Badoo's History with Security Incidents

This is not the first security incident for Badoo. In 2013, the platform suffered a major breach affecting over 127 million records from approximately 112 million unique users. The incident remained undisclosed until 2016, when the data appeared for sale on a dark web marketplace.

Dating app on smartphone screen
Dating app on smartphone screen

The passwords were protected with MD5 hashing, which allowed attackers to crack many of them. Independent verification later confirmed the data's legitimacy. The delay in disclosure raised serious questions about transparency and user notification practices within the dating platform industry.

Broader Industry Security Concerns

This latest event adds to a pattern of data exposure in the industry. Similar breaches have affected other major dating services in recent years, with each one raising questions about security standards across dating platforms. The constant cybersecurity arms race involved in most online industries is one that dating platforms are also tangled up in, although so far this leak could still be partial or even fabricated.

Data privacy and security protection concept
Data privacy and security protection concept
The constant cybersecurity arms race involved in most online industries is one that dating platforms are also tangled up in, although so far this leak could still be partial or even fabricated.

Dating platforms hold particularly sensitive information about users' personal lives, preferences, and locations, making them high-value targets for cybercriminals. The combination of personal identifiers with intimate details creates unique risks that extend beyond typical data breaches. Users of these platforms should remain vigilant about potential fraudulent communications and consider changing passwords as a precautionary measure.

  • Users of Badoo and similar dating platforms should immediately change their passwords and enable two-factor authentication where available to protect their accounts
  • Dating platform users should remain alert for phishing attempts and suspicious communications that may leverage personal information from this or previous breaches
  • The pattern of security incidents across the dating industry highlights the need for stronger encryption standards and more transparent breach disclosure practices
Loading the conversation…
Talk to the newsroom

Have a tip, a correction, or a pitch?

We're the people who write and edit this newsroom. Write to us directly, we reply within one business day.

Sources are protected. We reply personally.

The Editorial

The weekly editorial for operators in the dating industry.

Long form opinion from people who have built and sold dating businesses. Read past editions.