logo

Dropbox Breach Exposes Customer Credentials, Authentication Data

ID: 6a80503a-d34b-5399-90fa-bbe7da972865

STIX ID: report--6a80503a-d34b-5399-90fa-bbe7da972865

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2024-05-02

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Dropbox Sign experienced a production-environment breach after a threat actor compromised an automated system configuration service account. The actor accessed the customer database and exposed user emails, usernames, phone numbers, hashed passwords, API keys, OAuth tokens, and MFA details; Dropbox says document contents and payment information were not accessed. Dropbox has reset user passwords, logged out sessions, and is rotating API keys and tokens while notifying affected users and advising password changes and MFA use.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.