'White Hat Hacker' Exposes Serious Security Flaw in Venmo

'White Hat Hacker' Exposes Serious Security Flaw in Venmo

CYBERSPACE — A “white hat hacker” exposed a serious security weakness in popular payment platform Venmo and urged all users, especially those in privacy-sensitive industries like adult, to urgently set their Venmo payments to “private.”

Currently, “public” is the default setting for Venmo payments, and many users still neglect to set it to “private.” Venmo is owned by online payments giant PayPal.

The white hat hacker — the tech world’s term for someone who breaks into supposedly secure computer systems but only to warn companies and the public about the potential for harm — is computer science student Dan Salmon.

According to a TechCrunch report, Salmon “scraped seven million Venmo transactions to prove that users’ public activity can still be easily obtained, a year after a privacy researcher downloaded hundreds of millions of Venmo transactions in a similar feat.”

Salmon claims he “scraped the transactions during a cumulative six months to raise awareness and warn users to set their Venmo payments to private.”

“Using that data, anyone can look at an entire user’s public transaction history, who they shared money with, when, and in some cases for what reason — including illicit goods and substances,” explained TechCrunch’s Zach Whittaker.

In 2018, PayPal reached a settlement over security and pricacy issues with the Federal Trade Commission (FTC).

Related:  

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

FTC Weighs Reboot of 'Click to Cancel' Rulemaking Process

The Federal Trade Commission has invited public comments on a petition to renew trade regulation rulemaking concerning negative option plans, after a federal court previously vacated a “click-to-cancel” rule aimed at making it easier for consumers to cancel online subscriptions.

VRPorn.com Releases 2025 'Annual Report'

VRPorn.com has released its Annual Report, highlighting its audience favorites from throughout 2025.

MrPornGeek Launches 'Visibility Boost' System

MrPornGeek has launched a new visibility boost system.

New Federal Bills Aim to Repeal Section 230

Members of Congress this week introduced two bills calling for the repeal of Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

RM11 Joins Pineapple Support as Supporter-Level Sponsor

RM11 has joined the ranks of over 70 adult businesses and organizations committing funds and resources to Pineapple Support.

Mark Spiegler Named XBIZ Talk Guest for 2026 LA Conference

XBIZ is pleased to announce that famed talent agent Mark Spiegler, impresario of the Spiegler Girls agency, will join an exclusive talk session at XBIZ 2026, the latest edition of North America’s largest adult industry conference, set to take place Jan. 12-15 at the Kimpton Everly Hotel in Hollywood.

Gataca Introduces Passkey Integration

Spain-based age verification provider Gataca has debuted its new passkey integration.

GloryPay Announces New Financial App

European fintech company GloryPay has announced the launch of its financial app for industry members.

Creator of Hentaied, Parasited Launches New Site 'MonsterPorn'

Romero Mr. Alien, the creator of Parasited and Hentaied, has launched new paysite MonsterPorn.com.

House of Lords Approves UK Plan to Outlaw 'Choking' Content

The House of Lords, the U.K.’s upper house of Parliament, has agreed to amendments to the pending Crime and Policing Bill that would make depicting “choking” in pornography illegal and designate it a “priority offense” under the Online Safety Act.

Show More