Dropbox Confirms 2012 Breach Bigger Than Previously Known

Advertisement
By Jordan Robertson, Bloomberg | Updated: 1 September 2016 10:33 IST
Highlights
  • Dropbox in August asked users to reset their passwords
  • Dropbox acknowledged a 2012 data breach compromising 69 million accounts
  • However, the company says Dropbox accounts have not been misused

Dropbox confirmed Wednesday that a data breach discovered and disclosed in 2012 was bigger than previously known and according to one report could involve almost 69 million accounts.

The cloud-storage company said it reset the passwords last week of all affected users - people who signed up for accounts before the middle of 2012 and hadn't changed their passwords since then. The company confirmed that more than 60 million accounts were affected. Vice's Motherboard website earlier reported the figure.

"This is not a new security incident, and there is no indication that Dropbox user accounts have been improperly accessed," Patrick Heim, head of trust and security at Dropbox, said in a statement. "We can confirm that the scope of the password reset we completed last week did protect all impacted users. Even if these passwords are cracked, the password reset means they can't be used to access Dropbox accounts."

Advertisement

While Dropbox sought to reassure users their accounts were safe, the incident was just the latest example of a technology company resetting only passwords of accounts they know for sure are compromised while leaving everyone else's unchanged. Even highly sophisticated companies often don't have a full accounting of what's taken from them during a breach and their responses are often based on information hackers are selling online.

Advertisement

There's no uniform approach to responding to hacking attacks, and companies have struggled with the legal and user-experience implications of resetting lots of people's passwords at once.

eBay took an unusual tack after learning about a breach in 2014, when it e-mailed users suggesting they change their passwords, an approach that opened its more than 145 million active buyers worldwide up to phishing and other hacking attacks.

Advertisement

LinkedIn bungled its response to a breach the job-search site disclosed in 2012, when the company only reset the passwords of 6.5 million users whose information showed up on a hacker site, only later to have to disable the passwords of other users who might have been affected. In May, LinkedIn said it was re-opening its investigation of the breach, which might have been even bigger than the company thought, involving potentially as many as 117 million accounts.

© 2016 Bloomberg L.P.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Oppo Find X9 Series Price in India Leaked Again Ahead of Debut
  2. Redmi 15C 5G Chipset Details Leaked, Could Launch in India at This Price
  3. Here's When the Nothing Phone 3a Lite Will Launch in India
  4. Poco F8 Series Will Be Launched Globally on This Date
  5. Vivo X300 and Teleconverter Kit India Prices Tipped Ahead of Launch
  6. OnePlus Ace 6T Launch Timeline Revealed; Will Sport This Snapdragon Chip
  7. Xiaomi 17 and Xiaomi 17 Pro First Impressions
  8. Samsung Galaxy Buds 4 Pro Leak Hints at New Design, Head Gestures Support
  9. Here's When Apple's iPhone 18 Pro Models and Foldable Phone Might Launch
  10. Indian Enterprises Increasingly Adopting AI for Internal Workflows: EY
  1. Steak ‘n Shake Expands to El Salvador as Bitcoin Strategy Gains Momentum
  2. Samsung Galaxy Buds 4 Pro Leak Hints at Refreshed Design, Head Gestures Feature
  3. Redmi 15C 5G Price in India, Key Specifications Leaked Ahead of Launch: Here’s How Much it Might Cost
  4. India Begins AI Adoption: 47 Percent of Enterprises Use AI for Multiple Use Cases, Says EY
  5. Nothing Phone 3a Lite India Launch Date Confirmed: Expected Specifications, Features
  6. Call of Duty: Black Ops 7 Draws Flak Over Alleged GenAI Use as Steam Player Count Underwhelms
  7. Apple Ordered to Pay Masimo $634 Million in Apple Watch Patent Dispute
  8. OnePlus Ace 6T Launch Timeline Confirmed; Will Debut This Month With Snapdragon 8 Gen 5 SoC
  9. Bitcoin Hovers Near $95,000 as Bearish Sentiment Dominates Crypto Market
  10. Poco F8 Series Global Launch Date Officially Confirmed, Tipped to Feature Snapdragon 8 Elite Series Chipsets
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.