Dropbox Confirms 2012 Breach Bigger Than Previously Known

Advertisement
By Jordan Robertson, Bloomberg | Updated: 1 September 2016 10:33 IST
Highlights
  • Dropbox in August asked users to reset their passwords
  • Dropbox acknowledged a 2012 data breach compromising 69 million accounts
  • However, the company says Dropbox accounts have not been misused

Dropbox confirmed Wednesday that a data breach discovered and disclosed in 2012 was bigger than previously known and according to one report could involve almost 69 million accounts.

The cloud-storage company said it reset the passwords last week of all affected users - people who signed up for accounts before the middle of 2012 and hadn't changed their passwords since then. The company confirmed that more than 60 million accounts were affected. Vice's Motherboard website earlier reported the figure.

Advertisement

"This is not a new security incident, and there is no indication that Dropbox user accounts have been improperly accessed," Patrick Heim, head of trust and security at Dropbox, said in a statement. "We can confirm that the scope of the password reset we completed last week did protect all impacted users. Even if these passwords are cracked, the password reset means they can't be used to access Dropbox accounts."

While Dropbox sought to reassure users their accounts were safe, the incident was just the latest example of a technology company resetting only passwords of accounts they know for sure are compromised while leaving everyone else's unchanged. Even highly sophisticated companies often don't have a full accounting of what's taken from them during a breach and their responses are often based on information hackers are selling online.

Advertisement

There's no uniform approach to responding to hacking attacks, and companies have struggled with the legal and user-experience implications of resetting lots of people's passwords at once.

eBay took an unusual tack after learning about a breach in 2014, when it e-mailed users suggesting they change their passwords, an approach that opened its more than 145 million active buyers worldwide up to phishing and other hacking attacks.

Advertisement

LinkedIn bungled its response to a breach the job-search site disclosed in 2012, when the company only reset the passwords of 6.5 million users whose information showed up on a hacker site, only later to have to disable the passwords of other users who might have been affected. In May, LinkedIn said it was re-opening its investigation of the breach, which might have been even bigger than the company thought, involving potentially as many as 117 million accounts.

© 2016 Bloomberg L.P.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Dell 15 Refreshed With Up to Intel Core Ultra 7, 15.6-Inch Display
  2. Google Could Team Up With Marvell to Develop New AI Chips for Inference
  3. OnePlus Nord CE 6, Nord CE 6 Lite Will Launch in India on This Date
  4. BAFTA Games Awards 2026 Winners Announced: See Full List
  5. AI-Driven Global Memory Shortage Might Not End Until 2030
  1. Toshiba Z670SP MiniLED TV Series Launched in India With Up to 100-Inch 144Hz Screens: Price, Specifications
  2. Resident Evil Requiem Could Get Mercenaries Arcade Mode in May, Leak Suggests
  3. Global Memory Shortage Could Persist Until 2030 as Suppliers Prioritise AI Data Centres: Report
  4. Dell 15 (2026) Launched in India With Up to Intel Core Ultra 7 and 15.6-Inch Display: Price, Features
  5. OnePlus Nord CE 6, Nord CE 6 Lite India Launch Date Announced; Snapdragon 7s Gen 4 Chip Confirmed
  6. Xiaomi 18 Pro Max Specifications Leak; Might Feature Snapdragon 8 Elite Gen 6 Pro Chip, 6.9-Inch Display
  7. OnePlus Ace 6 Ultra Launch Date Announced; New OnePlus-Branded Gaming Controller Will Tag Along
  8. Huawei Pura 90, Pura 90 Pro and Pura 90 Pro Max Key Specifications Leaked Ahead of China Launch
  9. Google Reportedly Exploring AI Inference Chip Partnership With Marvell Technology
  10. Clair Obscur: Expedition 33 Crowned Best Game at BAFTA Games Awards 2026: Full List of Winners
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.