Dropbox says about 5,000 accounts compromised in August hack
Hackers viewed and downloaded files in fewer than a third of the affected accounts, and Dropbox said it removed Lenovo ID links and tightened sign-in rules.
- On Tuesday, Dropbox confirmed that around 5,000 accounts were compromised last month through a security flaw in its single sign-on integration with Lenovo IDs, with hackers viewing and downloading stored content.
- An issue with Lenovo's email verification process allowed unauthorized parties to register Lenovo IDs using victims' email addresses, which Lenovo identified as a 'legacy integration' that 'could be used to improperly authenticate certain Dropbox accounts.'
- Company spokesperson Tim Rathschmidt noted that compromised accounts lacked multi-factor authentication, and hackers accessed files in fewer than a third of the affected accounts.
- Dropbox removed links between Lenovo IDs and accounts, expired all sessions previously 'authenticated' through the integration, and reported the incident to data protection regulators.
- Shares of Dropbox fell around 2.4 per cent in extended trading on Tuesday, though Lenovo stated its own customers were not affected by the incident.
17 Articles
17 Articles
About 5,000 accounts were compromised due to a security flaw in another company's system, Dropbox Inc. said. The post Hackers hacked into thousands of Dropbox accounts, downloaded user files appeared first on in.gr.
Dropbox says about 5,000 accounts compromised in August hack
Dropbox user accounts breached by hackers who accessed data
About 5,000 Dropbox accounts were compromised by the hackers. Read more at straitstimes.com.
Dropbox User Accounts Breached by Hackers, Some Data Accessed
Hackers broke into thousands of Dropbox Inc. accounts last month, viewing and downloading material users kept on the cloud-storage platform, according to a company statement and records seen by Bloomberg News.
Dropbox breach seemingly caused by egregious authentication failure
Multiple Dropbox users have been emailed by the cloud storage company to advise them that a security breach saw unauthorised access to their account. The root cause appears to be a lack of authentication by Dropbox when attackers created a single sign-on option through a third-party company … more…
This is another wild story. Dropbox currently informs several users via email about unauthorized access to their accounts. The period between...To post: Dropbox: Security incident caused by a vulnerability in Lenovo's SSO login Where you can follow us: Facebook, Reddit, Google News, X, Threads Stay up to date? Adds us to Google as a preferred source!
Coverage Details
Bias Distribution
- 40% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium





















