Home / Technology / Mental Health Apps Leak Sensitive User Data
Mental Health Apps Leak Sensitive User Data
25 Feb
Summary
- Researchers discovered over 1,500 vulnerabilities in 10 mental health apps.
- Sensitive data including therapy transcripts and mood logs were exposed.
- Exploited therapy records can fetch over $1,000 on the dark web.

Security researchers have identified a significant number of vulnerabilities in 10 mental health applications, which have been downloaded over 14 million times. A total of 1,500 vulnerabilities were found, with 54 classified as high severity.
These applications collect extremely sensitive personal data, including therapy session transcripts, mood logs, and medication schedules. The discovered vulnerabilities could allow malicious actors to access this data, intercept login credentials, or even track user locations.
Some apps exhibited poor security practices, such as storing configuration data in plaintext and using insecure random number generators. The lack of frequent updates for many of these apps further exacerbates security risks, as therapy records can be highly valuable on the black market, fetching prices exceeding $1,000.




