iTnews
  • Home
  • News
  • Technology
  • Security

Dropbox investigates possible email address breach

By Darren Pauli
Marcos Colon
Jul 23 2012 1:11PM
Follow google news

Enlists third party to investigate spam complaints.

Cloud storage service Dropbox has enlisted third-party security experts to investigate why users were receiving spam to unused email accounts.

Dropbox investigates possible email address breach

Users flocked to Dropbox's forums last week to complain that spam was hitting their dormant Dropbox email accounts.

“We continue to investigate and our security team is working hard on this,” Dropbox engineer Joe Gross posted to the forum on Wednesday.

“We've also brought in a team of outside experts to make sure we leave no stone unturned.

"While we haven’t had any reports of unauthorised activity on Dropbox accounts, we’ve taken a number of precautionary steps and continue to work around the clock to make sure your information is safe."

According to forum posts, the unsolicited messages were coming from dodgy online casinos, with many of the messages coming from a spammer called “Euro Dice Exchange”.

Victims of the attack were primarily located in Germany, the Netherlands and Britain.

Some users said that the email accounts being attacked were solely created for the purpose of using Dropbox, indicating that the spam may be related to a possible email address leak.

Ron Gula, CEO and CTO of Tenable Network Security described how users created email accounts designated for Dropbox as a smart strategy,

“Common passwords and even common user accounts, which are based on an email, [are] a very weak link exploited by attacks when they compromise any given cloud service,” Gula said.

Eric Chiu, president and founder of virtualization and security company HyTrust, said the incident should serve as a wake-up call to enterprises looking to establish policies for managing employee use of cloud services.

“Companies across the board have to take control of applications like Dropbox that are coming into the enterprise and aren't being controlled,” Chiu said.

“They can't turn a blind eye to these systems anymore.”

Dropbox experienced a 30-minute web outage on Tuesday. According to Gross it was “incidental and not caused by any external factor or third party”.

This article originally appeared at scmagazineus.com

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:
cloudcloudcoverdropboxsecurityspam

Related Articles

  • Perth Airport to deploy 70 IT, OT systems for new terminal Perth Airport to deploy 70 IT, OT systems for new terminal
  • In Pictures: iTnews Cloud Covered Breakfast Summit - Sydney In Pictures: iTnews Cloud Covered Breakfast Summit - Sydney
  • Apple bumps up security in fresh operating system releases Apple bumps up security in fresh operating system releases
  • Meta accuses NSO Group of violating court order by WhatsApp spear phishing Meta accuses NSO Group of violating court order by WhatsApp spear phishing
Join our WhatsApp Channel

Partner Content

Agile isn’t the problem: why projects still fail, and what’s missing
Partner Content Agile isn’t the problem: why projects still fail, and what’s missing
Thomas Peer Solutions unveils data cloud platform and executive leadership forum for 2026
Partner Content Thomas Peer Solutions unveils data cloud platform and executive leadership forum for 2026
Intelligence × Trust: the equation that will decide Australia's AI winners
Promoted Content Intelligence × Trust: the equation that will decide Australia's AI winners
The hidden economics of AI: Why token usage matters more than you think
Partner Content The hidden economics of AI: Why token usage matters more than you think

Sponsored Whitepapers

Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
1 in 3 companies lose SaaS data. Here’s how to prevent it
1 in 3 companies lose SaaS data. Here’s how to prevent it

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Anthropic opens Claude Mythos Preview AI program to Australia

Anthropic opens Claude Mythos Preview AI program to Australia

Defence says Palantir is "sandboxed" in its environment

Defence says Palantir is "sandboxed" in its environment

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Microsoft backs down on legal threats against 0day disclosing researchers

Microsoft backs down on legal threats against 0day disclosing researchers

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.