×
Lovense was told its sex toy app leaked users’ emails and didn’t fix it

Lovense was told its sex toy app leaked users’ emails and didn’t fix it

Lovense, the maker of internet-connected sex toys, left user emails exposed for months — even after it became aware of the vulnerability. In a blog post spotted by TechCrunch and Bleeping Computer, security researcher BobDaHacker found that they could “turn any username into their email address,” which they could then use to take over someone’s account.

Though BobDaHacker initially disclosed this vulnerability to Lovense in March, the researcher claims Lovense waited months before fixing it, and still hasn’t fully addressed the issue. Lovense is behind a range of sex toys that users can connect to the internet and remotely control via its app, which came under fire for a “minor bug” in 2017 that recorded users’ sex sessions.

As outlined in BobDaHacker’s post, the security researcher noticed something strange in the app’s API response when muting someone: it presented their email address. BobDaHacker then figured out that they could take advantage of this vulnerability by sending a modified request to Lovense’s servers, tricking it into returning the target user’s email address.

BobDaHacker even developed a script that they say can convert someone’s username into an email address in less than a second. “This is especially bad for cam models who share their usernames publicly but obviously don’t want their personal emails exposed,” BobDaHacker writes. To make matters worse, BobDaHacker later discovered that they could take over a user’s account with their email address and an authentication token generated by Lovense.

BobDaHacker initially reported these vulnerabilities in partnership with the Internet of Dongs, a group that aims to make internet-connected sex toys more secure. However, the security researcher says Lovense didn’t immediately fix the issue. Instead, Lovense claimed that the account takeover bug was fixed in April, even though BobDaHacker said it wasn’t, and that a fix for the email leak issue would take 14 months to roll out.

“We also evaluated a faster, one-month fix. However, it would require forcing all users to upgrade immediately, which would disrupt support for legacy versions,” Lovense said, according to BobDaHacker. As noted by BobDaHacker, security researchers reported the same account takeover bug to Lovense in 2023, but the company appears to have closed the bug without actually fixing it.

In a statement to Bleeping Computer, Lovense says it has submitted an app update “addressing the latest vulnerabilities” to app stores. “The full update is expected to be pushed to all users within the next week,” Lovense says. “Once all users have updated to the new version and we disable older versions, this issue will be completely resolved.” Lovense didn’t immediately respond to The Verge’s request for comment.

Source link
#Lovense #told #sex #toy #app #leaked #users #emails #didnt #fix

For months, AI giants have devised special vetted programs and strict guardrails to limit the use of their models by malicious hackers. But these limits are now hindering the work of legitimate network defenders, as well as that of offensive cybersecurity researchers. 

In June, the U.S. government slapped export control restrictions on Anthropic’s much-hyped AI models Mythos and Fable. The move was prompted at least in part by a report that claimed it was possible to bypass the models’ guardrails designed to prevent users from using them to build and execute malicious cyberattacks.

Regardless of whether the incident was really motivated by fears of a jailbreak, the fact is that Anthropic has repeatedly marketed Mythos as some kind of doomsday cybermachine that can only be given to carefully vetted users, and even then with strict guardrails in place. (The export controls on Fable 5 and Mythos 5 have since been lifted. Fable 5 returned to general access on July 1; Mythos 5 has been reintroduced only to vetted U.S. organizations as part of the government’s review process.)

That kind of gatekeeping isn’t unique to Mythos. Both Anthropic, with its other models, and OpenAI offer cybersecurity researchers programs they can apply to get vetted and — if approved — access models with fewer cybersecurity restrictions: OpenAI’s Trusted Access for Cyber program and Anthropic’s Cyber Verification Program

These guardrails have been widely criticized, particularly by researchers whose job is to find unknown vulnerabilities in systems and devise ways to exploit them before criminals do.

During a recent appearance on a cybersecurity podcast, Mark Dowd, a well-known security researcher, said that, “it’s not really comfortable to me that these random large companies are making arbitrary decisions about what is safe in security and what’s not.”

Dowd has spent decades finding and selling “zero-days” — previously unknown software flaws and the exploits that take advantage of them — to Western governments, rather than reporting them to the software makers so they get patched. Governments pay a premium for vulnerabilities precisely because they stay open, which is useful for intelligence operations.

Dowd admitted his work may make him biased, but he isn’t alone. Several people who work in offensive cybersecurity — they proactively probe systems for weaknesses — described to TechCrunch how they use AI tools and deal with their guardrails. 

Chris Anley, the chief scientist at security consulting giant NCC Group, said that asking an AI model to try to exploit a bug is a key step in confirming it’s a real vulnerability worth fixing. But if a guardrail prompts the model to refuse to answer the question outright, the guardrail hurts defenders, he said.

“This is where the whole offensive versus defensive and guardrails part comes in, because ‘fix this code’ as a prompt is both an essential mechanism for defense but also a roadmap for finding critical vulnerabilities in the code base,” said Anley. “So at the same time, the same tool is both an offensive tool and a defensive tool, and the two can’t really be unpicked.”

It’s “like a hammer,” he continued. “You can’t build a house without a hammer. It’s definitely a tool but it’s also irreducibly a weapon as well.”

When he and his colleagues run into such a roadblock, they sometimes fall back on open source AI models that come with no guardrails at all.

Paolo Stagno, the chief technology officer at Crowdfense, a well-known company that develops, acquires, and sells unknown vulnerabilities to government agencies, agreed with Dowd, saying AI companies “essentially treat customers like children who need babysitting” with their vetted programs and guardrails. 

Stagno said he and his colleagues do use frontier models — but only for reverse engineering. They avoid using AI to help find vulnerabilities or build exploits, he said, because feeding that work into a cloud-based model risks leaking sensitive vulnerability data or having it absorbed into future training runs. For that step, he said, they use open source models run locally, as they do not rely on sharing data outside of the model. 

Giuseppe Cali, a security researcher who finds zero-days and develops exploits, said guardrails are not impeding his work. That’s because he doesn’t use AI for offensive work; instead, he uses it for initial reverse engineering, to understand the code he’s analyzing, and to build supporting tools. For that, he said, AI tools can speed up the process and allow him to focus on discovering vulnerabilities. 

“I still want to own the actual bug discovery and weaponization myself and that wouldn’t change if all guardrails were lifted tomorrow,” said Cali. “I am jealous of my bugs, and I like this game too much to let models play it for me.”

One researcher at a smartphone-component manufacturer, who spoke on condition of anonymity because he isn’t authorized to talk to the press, said his employer isn’t part of Anthropic’s CVP program and as a result, its tools are barely useful for finding vulnerabilities because the guardrails are too strict.

“If it catches wind we’re doing anything security related, it just stops and isn’t usable,” the person said. 

Chris Thompson — chief executive of cybersecurity firm RemoteThreat and founder of Offensive AI Con, an offensive security and AI-focused event — said that in his experience using the frontier AI models, the guardrails can be inconsistent and work differently every day. That’s true even inside the looser boundaries of Anthropic’s and OpenAI’s vetted programs. 

“I think the practical impact is you spend a lot of time negotiating with the model instead of working on the core security program,” said Thompson. “Instead of analyzing a vulnerability and reasoning through the exploitability, you’re trying to find why you’re getting inconsistent results or why are models over-sanitizing the output.” 

Consequently, researchers rely on or get pushed toward Chinese open source models like GLM — freely downloadable models that can be run locally with no vetting or usage restrictions — said Thompson.

“You have these responsible researchers that are being pushed away from U.S.-governed systems to foreign-owned systems,” he said. “I think it’s more harmful than good to have these guardrails in place.”

Rather than tightening restrictions further, Thompson called for the AI frontier labs to open up their programs, provide responsible access, and hold those who abuse their tools accountable. Otherwise, he argued, defenders will lose the AI race.

“There’s this big storm coming. There’s this big wave of attacks that are going to happen at speed and scale like never before,” said Thompson. “But the same security consulting firms and legit researchers that are trying to make a difference are being stifled right now.”

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#guardrails #impeding #work #offensive #cybersecurity #researchers #TechCrunchcybersecurity,Zero-days">How AI guardrails are impeding the work of offensive cybersecurity researchers | TechCrunch
For months, AI giants have devised special vetted programs and strict guardrails to limit the use of their models by malicious hackers. But these limits are now hindering the work of legitimate network defenders, as well as that of offensive cybersecurity researchers. 

In June, the U.S. government slapped export control restrictions on Anthropic’s much-hyped AI models Mythos and Fable. The move was prompted at least in part by a report that claimed it was possible to bypass the models’ guardrails designed to prevent users from using them to build and execute malicious cyberattacks.







Regardless of whether the incident was really motivated by fears of a jailbreak, the fact is that Anthropic has repeatedly marketed Mythos as some kind of doomsday cybermachine that can only be given to carefully vetted users, and even then with strict guardrails in place. (The export controls on Fable 5 and Mythos 5 have since been lifted. Fable 5 returned to general access on July 1; Mythos 5 has been reintroduced only to vetted U.S. organizations as part of the government’s review process.)

That kind of gatekeeping isn’t unique to Mythos. Both Anthropic, with its other models, and OpenAI offer cybersecurity researchers programs they can apply to get vetted and — if approved — access models with fewer cybersecurity restrictions: OpenAI’s Trusted Access for Cyber program and Anthropic’s Cyber Verification Program. 

These guardrails have been widely criticized, particularly by researchers whose job is to find unknown vulnerabilities in systems and devise ways to exploit them before criminals do.

During a recent appearance on a cybersecurity podcast, Mark Dowd, a well-known security researcher, said that, “it’s not really comfortable to me that these random large companies are making arbitrary decisions about what is safe in security and what’s not.”

Dowd has spent decades finding and selling “zero-days” — previously unknown software flaws and the exploits that take advantage of them — to Western governments, rather than reporting them to the software makers so they get patched. Governments pay a premium for vulnerabilities precisely because they stay open, which is useful for intelligence operations.


Dowd admitted his work may make him biased, but he isn’t alone. Several people who work in offensive cybersecurity — they proactively probe systems for weaknesses  — described to TechCrunch how they use AI tools and deal with their guardrails. 

Chris Anley, the chief scientist at security consulting giant NCC Group, said that asking an AI model to try to exploit a bug is a key step in confirming it’s a real vulnerability worth fixing. But if a guardrail prompts the model to refuse to answer the question outright, the guardrail hurts defenders, he said. 

“This is where the whole offensive versus defensive and guardrails part comes in, because ‘fix this code’ as a prompt is both an essential mechanism for defense but also a roadmap for finding critical vulnerabilities in the code base,” said Anley. “So at the same time, the same tool is both an offensive tool and a defensive tool, and the two can’t really be unpicked.” 







It’s “like a hammer,” he continued. “You can’t build a house without a hammer. It’s definitely a tool but it’s also irreducibly a weapon as well.”

When he and his colleagues run into such a roadblock, they sometimes fall back on open source AI models that come with no guardrails at all.

Paolo Stagno, the chief technology officer at Crowdfense, a well-known company that develops, acquires, and sells unknown vulnerabilities to government agencies, agreed with Dowd, saying AI companies “essentially treat customers like children who need babysitting” with their vetted programs and guardrails. 

Stagno said he and his colleagues do use frontier models — but only for reverse engineering. They avoid using AI to help find vulnerabilities or build exploits, he said, because feeding that work into a cloud-based model risks leaking sensitive vulnerability data or having it absorbed into future training runs. For that step, he said, they use open source models run locally, as they do not rely on sharing data outside of the model. 

Giuseppe Cali, a security researcher who finds zero-days and develops exploits, said guardrails are not impeding his work. That’s because he doesn’t use AI for offensive work; instead, he uses it for initial reverse engineering, to understand the code he’s analyzing, and to build supporting tools. For that, he said, AI tools can speed up the process and allow him to focus on discovering vulnerabilities. 

“I still want to own the actual bug discovery and weaponization myself and that wouldn’t change if all guardrails were lifted tomorrow,” said Cali. “I am jealous of my bugs, and I like this game too much to let models play it for me.”

One researcher at a smartphone-component manufacturer, who spoke on condition of anonymity because he isn’t authorized to talk to the press, said his employer isn’t part of Anthropic’s CVP program and as a result, its tools are barely useful for finding vulnerabilities because the guardrails are too strict.

“If it catches wind we’re doing anything security related, it just stops and isn’t usable,” the person said. 







Chris Thompson — chief executive of cybersecurity firm RemoteThreat and founder of Offensive AI Con, an offensive security and AI-focused event — said that in his experience using the frontier AI models, the guardrails can be inconsistent and work differently every day. That’s true even inside the looser boundaries of Anthropic’s and OpenAI’s vetted programs. 

“I think the practical impact is you spend a lot of time negotiating with the model instead of working on the core security program,” said Thompson. “Instead of analyzing a vulnerability and reasoning through the exploitability, you’re trying to find why you’re getting inconsistent results or why are models over-sanitizing the output.” 

Consequently, researchers rely on or get pushed toward Chinese open source models like GLM — freely downloadable models that can be run locally with no vetting or usage restrictions — said Thompson.

“You have these responsible researchers that are being pushed away from U.S.-governed systems to foreign-owned systems,” he said. “I think it’s more harmful than good to have these guardrails in place.”

Rather than tightening restrictions further, Thompson called for the AI frontier labs to open up their programs, provide responsible access, and hold those who abuse their tools accountable. Otherwise, he argued, defenders will lose the AI race.

“There’s this big storm coming. There’s this big wave of attacks that are going to happen at speed and scale like never before,” said Thompson. “But the same security consulting firms and legit researchers that are trying to make a difference are being stifled right now.”


When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.#guardrails #impeding #work #offensive #cybersecurity #researchers #TechCrunchcybersecurity,Zero-days

slapped export control restrictions on Anthropic’s much-hyped AI models Mythos and Fable. The move was prompted at least in part by a report that claimed it was possible to bypass the models’ guardrails designed to prevent users from using them to build and execute malicious cyberattacks.

Regardless of whether the incident was really motivated by fears of a jailbreak, the fact is that Anthropic has repeatedly marketed Mythos as some kind of doomsday cybermachine that can only be given to carefully vetted users, and even then with strict guardrails in place. (The export controls on Fable 5 and Mythos 5 have since been lifted. Fable 5 returned to general access on July 1; Mythos 5 has been reintroduced only to vetted U.S. organizations as part of the government’s review process.)

That kind of gatekeeping isn’t unique to Mythos. Both Anthropic, with its other models, and OpenAI offer cybersecurity researchers programs they can apply to get vetted and — if approved — access models with fewer cybersecurity restrictions: OpenAI’s Trusted Access for Cyber program and Anthropic’s Cyber Verification Program

These guardrails have been widely criticized, particularly by researchers whose job is to find unknown vulnerabilities in systems and devise ways to exploit them before criminals do.

During a recent appearance on a cybersecurity podcast, Mark Dowd, a well-known security researcher, said that, “it’s not really comfortable to me that these random large companies are making arbitrary decisions about what is safe in security and what’s not.”

Dowd has spent decades finding and selling “zero-days” — previously unknown software flaws and the exploits that take advantage of them — to Western governments, rather than reporting them to the software makers so they get patched. Governments pay a premium for vulnerabilities precisely because they stay open, which is useful for intelligence operations.

Dowd admitted his work may make him biased, but he isn’t alone. Several people who work in offensive cybersecurity — they proactively probe systems for weaknesses — described to TechCrunch how they use AI tools and deal with their guardrails. 

Chris Anley, the chief scientist at security consulting giant NCC Group, said that asking an AI model to try to exploit a bug is a key step in confirming it’s a real vulnerability worth fixing. But if a guardrail prompts the model to refuse to answer the question outright, the guardrail hurts defenders, he said.

“This is where the whole offensive versus defensive and guardrails part comes in, because ‘fix this code’ as a prompt is both an essential mechanism for defense but also a roadmap for finding critical vulnerabilities in the code base,” said Anley. “So at the same time, the same tool is both an offensive tool and a defensive tool, and the two can’t really be unpicked.”

It’s “like a hammer,” he continued. “You can’t build a house without a hammer. It’s definitely a tool but it’s also irreducibly a weapon as well.”

When he and his colleagues run into such a roadblock, they sometimes fall back on open source AI models that come with no guardrails at all.

Paolo Stagno, the chief technology officer at Crowdfense, a well-known company that develops, acquires, and sells unknown vulnerabilities to government agencies, agreed with Dowd, saying AI companies “essentially treat customers like children who need babysitting” with their vetted programs and guardrails. 

Stagno said he and his colleagues do use frontier models — but only for reverse engineering. They avoid using AI to help find vulnerabilities or build exploits, he said, because feeding that work into a cloud-based model risks leaking sensitive vulnerability data or having it absorbed into future training runs. For that step, he said, they use open source models run locally, as they do not rely on sharing data outside of the model. 

Giuseppe Cali, a security researcher who finds zero-days and develops exploits, said guardrails are not impeding his work. That’s because he doesn’t use AI for offensive work; instead, he uses it for initial reverse engineering, to understand the code he’s analyzing, and to build supporting tools. For that, he said, AI tools can speed up the process and allow him to focus on discovering vulnerabilities. 

“I still want to own the actual bug discovery and weaponization myself and that wouldn’t change if all guardrails were lifted tomorrow,” said Cali. “I am jealous of my bugs, and I like this game too much to let models play it for me.”

One researcher at a smartphone-component manufacturer, who spoke on condition of anonymity because he isn’t authorized to talk to the press, said his employer isn’t part of Anthropic’s CVP program and as a result, its tools are barely useful for finding vulnerabilities because the guardrails are too strict.

“If it catches wind we’re doing anything security related, it just stops and isn’t usable,” the person said. 

Chris Thompson — chief executive of cybersecurity firm RemoteThreat and founder of Offensive AI Con, an offensive security and AI-focused event — said that in his experience using the frontier AI models, the guardrails can be inconsistent and work differently every day. That’s true even inside the looser boundaries of Anthropic’s and OpenAI’s vetted programs. 

“I think the practical impact is you spend a lot of time negotiating with the model instead of working on the core security program,” said Thompson. “Instead of analyzing a vulnerability and reasoning through the exploitability, you’re trying to find why you’re getting inconsistent results or why are models over-sanitizing the output.” 

Consequently, researchers rely on or get pushed toward Chinese open source models like GLM — freely downloadable models that can be run locally with no vetting or usage restrictions — said Thompson.

“You have these responsible researchers that are being pushed away from U.S.-governed systems to foreign-owned systems,” he said. “I think it’s more harmful than good to have these guardrails in place.”

Rather than tightening restrictions further, Thompson called for the AI frontier labs to open up their programs, provide responsible access, and hold those who abuse their tools accountable. Otherwise, he argued, defenders will lose the AI race.

“There’s this big storm coming. There’s this big wave of attacks that are going to happen at speed and scale like never before,” said Thompson. “But the same security consulting firms and legit researchers that are trying to make a difference are being stifled right now.”

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#guardrails #impeding #work #offensive #cybersecurity #researchers #TechCrunchcybersecurity,Zero-days">How AI guardrails are impeding the work of offensive cybersecurity researchers | TechCrunch

For months, AI giants have devised special vetted programs and strict guardrails to limit the use of their models by malicious hackers. But these limits are now hindering the work of legitimate network defenders, as well as that of offensive cybersecurity researchers. 

In June, the U.S. government slapped export control restrictions on Anthropic’s much-hyped AI models Mythos and Fable. The move was prompted at least in part by a report that claimed it was possible to bypass the models’ guardrails designed to prevent users from using them to build and execute malicious cyberattacks.

Regardless of whether the incident was really motivated by fears of a jailbreak, the fact is that Anthropic has repeatedly marketed Mythos as some kind of doomsday cybermachine that can only be given to carefully vetted users, and even then with strict guardrails in place. (The export controls on Fable 5 and Mythos 5 have since been lifted. Fable 5 returned to general access on July 1; Mythos 5 has been reintroduced only to vetted U.S. organizations as part of the government’s review process.)

That kind of gatekeeping isn’t unique to Mythos. Both Anthropic, with its other models, and OpenAI offer cybersecurity researchers programs they can apply to get vetted and — if approved — access models with fewer cybersecurity restrictions: OpenAI’s Trusted Access for Cyber program and Anthropic’s Cyber Verification Program

These guardrails have been widely criticized, particularly by researchers whose job is to find unknown vulnerabilities in systems and devise ways to exploit them before criminals do.

During a recent appearance on a cybersecurity podcast, Mark Dowd, a well-known security researcher, said that, “it’s not really comfortable to me that these random large companies are making arbitrary decisions about what is safe in security and what’s not.”

Dowd has spent decades finding and selling “zero-days” — previously unknown software flaws and the exploits that take advantage of them — to Western governments, rather than reporting them to the software makers so they get patched. Governments pay a premium for vulnerabilities precisely because they stay open, which is useful for intelligence operations.

Dowd admitted his work may make him biased, but he isn’t alone. Several people who work in offensive cybersecurity — they proactively probe systems for weaknesses — described to TechCrunch how they use AI tools and deal with their guardrails. 

Chris Anley, the chief scientist at security consulting giant NCC Group, said that asking an AI model to try to exploit a bug is a key step in confirming it’s a real vulnerability worth fixing. But if a guardrail prompts the model to refuse to answer the question outright, the guardrail hurts defenders, he said.

“This is where the whole offensive versus defensive and guardrails part comes in, because ‘fix this code’ as a prompt is both an essential mechanism for defense but also a roadmap for finding critical vulnerabilities in the code base,” said Anley. “So at the same time, the same tool is both an offensive tool and a defensive tool, and the two can’t really be unpicked.”

It’s “like a hammer,” he continued. “You can’t build a house without a hammer. It’s definitely a tool but it’s also irreducibly a weapon as well.”

When he and his colleagues run into such a roadblock, they sometimes fall back on open source AI models that come with no guardrails at all.

Paolo Stagno, the chief technology officer at Crowdfense, a well-known company that develops, acquires, and sells unknown vulnerabilities to government agencies, agreed with Dowd, saying AI companies “essentially treat customers like children who need babysitting” with their vetted programs and guardrails. 

Stagno said he and his colleagues do use frontier models — but only for reverse engineering. They avoid using AI to help find vulnerabilities or build exploits, he said, because feeding that work into a cloud-based model risks leaking sensitive vulnerability data or having it absorbed into future training runs. For that step, he said, they use open source models run locally, as they do not rely on sharing data outside of the model. 

Giuseppe Cali, a security researcher who finds zero-days and develops exploits, said guardrails are not impeding his work. That’s because he doesn’t use AI for offensive work; instead, he uses it for initial reverse engineering, to understand the code he’s analyzing, and to build supporting tools. For that, he said, AI tools can speed up the process and allow him to focus on discovering vulnerabilities. 

“I still want to own the actual bug discovery and weaponization myself and that wouldn’t change if all guardrails were lifted tomorrow,” said Cali. “I am jealous of my bugs, and I like this game too much to let models play it for me.”

One researcher at a smartphone-component manufacturer, who spoke on condition of anonymity because he isn’t authorized to talk to the press, said his employer isn’t part of Anthropic’s CVP program and as a result, its tools are barely useful for finding vulnerabilities because the guardrails are too strict.

“If it catches wind we’re doing anything security related, it just stops and isn’t usable,” the person said. 

Chris Thompson — chief executive of cybersecurity firm RemoteThreat and founder of Offensive AI Con, an offensive security and AI-focused event — said that in his experience using the frontier AI models, the guardrails can be inconsistent and work differently every day. That’s true even inside the looser boundaries of Anthropic’s and OpenAI’s vetted programs. 

“I think the practical impact is you spend a lot of time negotiating with the model instead of working on the core security program,” said Thompson. “Instead of analyzing a vulnerability and reasoning through the exploitability, you’re trying to find why you’re getting inconsistent results or why are models over-sanitizing the output.” 

Consequently, researchers rely on or get pushed toward Chinese open source models like GLM — freely downloadable models that can be run locally with no vetting or usage restrictions — said Thompson.

“You have these responsible researchers that are being pushed away from U.S.-governed systems to foreign-owned systems,” he said. “I think it’s more harmful than good to have these guardrails in place.”

Rather than tightening restrictions further, Thompson called for the AI frontier labs to open up their programs, provide responsible access, and hold those who abuse their tools accountable. Otherwise, he argued, defenders will lose the AI race.

“There’s this big storm coming. There’s this big wave of attacks that are going to happen at speed and scale like never before,” said Thompson. “But the same security consulting firms and legit researchers that are trying to make a difference are being stifled right now.”

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#guardrails #impeding #work #offensive #cybersecurity #researchers #TechCrunchcybersecurity,Zero-days
BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).

While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.

BGMI International Cup Returns This October

BGMI International Cup Returns To Mumbai & KRAFTON Announces New BMSD Tournament for India
	
After wrapping up the super exciting BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).



While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.



BGMI International Cup Returns This October







The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.



Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.



BGMI Showdown Schedule:




Week 1 (Promotion & Relegation): September 22–24



Week 2 (Promotion & Relegation): September 25–27



Week 3 (Promotion & Relegation): September 28–30



Upper Bracket Survival: October 1–3



Lower Bracket Survival: October 4–6



Semi Finals: October 8–11



Last Chance: October 12–13



LAN Grand Finals: October 16–18




Speaking about the announcement, Karan Pathak, Associate Director:




Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.






#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI

The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.

Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.

BGMI Showdown Schedule:

  • Week 1 (Promotion & Relegation): September 22–24
  • Week 2 (Promotion & Relegation): September 25–27
  • Week 3 (Promotion & Relegation): September 28–30
  • Upper Bracket Survival: October 1–3
  • Lower Bracket Survival: October 4–6
  • Semi Finals: October 8–11
  • Last Chance: October 12–13
  • LAN Grand Finals: October 16–18

Speaking about the announcement, Karan Pathak, Associate Director:

Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.

#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI">BGMI International Cup Returns To Mumbai & KRAFTON Announces New BMSD Tournament for India
	
After wrapping up the super exciting BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).



While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.



BGMI International Cup Returns This October







The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.



Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.



BGMI Showdown Schedule:




Week 1 (Promotion & Relegation): September 22–24



Week 2 (Promotion & Relegation): September 25–27



Week 3 (Promotion & Relegation): September 28–30



Upper Bracket Survival: October 1–3



Lower Bracket Survival: October 4–6



Semi Finals: October 8–11



Last Chance: October 12–13



LAN Grand Finals: October 16–18




Speaking about the announcement, Karan Pathak, Associate Director:




Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.






#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI

2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).

While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.

BGMI International Cup Returns This October

BGMI International Cup Returns To Mumbai & KRAFTON Announces New BMSD Tournament for India
	
After wrapping up the super exciting BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).



While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.



BGMI International Cup Returns This October







The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.



Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.



BGMI Showdown Schedule:




Week 1 (Promotion & Relegation): September 22–24



Week 2 (Promotion & Relegation): September 25–27



Week 3 (Promotion & Relegation): September 28–30



Upper Bracket Survival: October 1–3



Lower Bracket Survival: October 4–6



Semi Finals: October 8–11



Last Chance: October 12–13



LAN Grand Finals: October 16–18




Speaking about the announcement, Karan Pathak, Associate Director:




Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.






#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI

The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.

Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.

BGMI Showdown Schedule:

  • Week 1 (Promotion & Relegation): September 22–24
  • Week 2 (Promotion & Relegation): September 25–27
  • Week 3 (Promotion & Relegation): September 28–30
  • Upper Bracket Survival: October 1–3
  • Lower Bracket Survival: October 4–6
  • Semi Finals: October 8–11
  • Last Chance: October 12–13
  • LAN Grand Finals: October 16–18

Speaking about the announcement, Karan Pathak, Associate Director:

Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.

#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI">BGMI International Cup Returns To Mumbai & KRAFTON Announces New BMSD Tournament for India

After wrapping up the super exciting BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).

While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.

BGMI International Cup Returns This October

BGMI International Cup Returns To Mumbai & KRAFTON Announces New BMSD Tournament for India
	
After wrapping up the super exciting BGMI Pro Series (BMPS) 2026 a month back, KRAFTON India has revealed what’s next for the country’s competitive BGMI scene. There will be two major tournaments for the second half of the year: the return of the BGMI International Cup (BMIC) and an all-new BGMI Showdown (BMSD).



While BMIC will once again pit India’s best teams against top squads from across Asia, the newly introduced BGMI Showdown is an invite-only championship reserved for the country’s highest-performing teams. Both tournaments will feature a ₹1 crore prize pool.



BGMI International Cup Returns This October







The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.



Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.



BGMI Showdown Schedule:




Week 1 (Promotion & Relegation): September 22–24



Week 2 (Promotion & Relegation): September 25–27



Week 3 (Promotion & Relegation): September 28–30



Upper Bracket Survival: October 1–3



Lower Bracket Survival: October 4–6



Semi Finals: October 8–11



Last Chance: October 12–13



LAN Grand Finals: October 16–18




Speaking about the announcement, Karan Pathak, Associate Director:




Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.






#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI

The second edition of the BGMI International Cup (BMIC) is scheduled to take place from October 30 to November 1 at the Dome, SVP Indoor Stadium in Mumbai. The tournament will feature 16 teams, including six from India, five from South Korea, and five from Japan. They’ll compete for a ₹1 crore prize pool, with the event bringing some of Asia’s strongest BGMI teams to India for the first time. For Indian fans, BMIC will be one of the rare opportunities to watch domestic teams take on international opponents on home soil in front of a live audience.

Alongside BMIC, KRAFTON has also announced the BGMI Showdown (BMSD), a brand-new tournament focused entirely on India’s top-performing teams. Unlike BGIS or BMPS, there won’t be any open qualifiers. Instead, the tournament will feature 48 invited teams, selected based on their performances across the KIE Leaderboard, BGIS, and BMPS. The competition begins on September 22 and will progress through Promotion & Relegation rounds, Survival stages, Semi-Finals, and a Last Chance stage before culminating in the LAN Grand Finals.

BGMI Showdown Schedule:

  • Week 1 (Promotion & Relegation): September 22–24
  • Week 2 (Promotion & Relegation): September 25–27
  • Week 3 (Promotion & Relegation): September 28–30
  • Upper Bracket Survival: October 1–3
  • Lower Bracket Survival: October 4–6
  • Semi Finals: October 8–11
  • Last Chance: October 12–13
  • LAN Grand Finals: October 16–18

Speaking about the announcement, Karan Pathak, Associate Director:

Every season should feel bigger than the last- not just in scale, but in the quality of competition it delivers. That’s what we’ve set out to achieve with this year’s H2 calendar. The BGMI International Cup brings some of Asia’s strongest teams to Mumbai, while the BGMI Showdown rewards the teams that have consistently proved themselves across the season.

#BGMI #International #Cup #Returns #Mumbai #KRAFTON #Announces #BMSD #Tournament #IndiaBGMI

Post Comment