{"id":280124,"date":"2024-05-03T06:42:00","date_gmt":"2024-05-03T13:42:00","guid":{"rendered":"https:\/\/sftarticles.wpenginepowered.com\/es\/?p=331605"},"modified":"2025-07-01T16:35:05","modified_gmt":"2025-07-01T23:35:05","slug":"dropbox-suffered-a-serious-hack-that-exposed-sensitive-data-from-its-users","status":"publish","type":"post","link":"https:\/\/cms-articles.softonic.io\/en\/dropbox-suffered-a-serious-hack-that-exposed-sensitive-data-from-its-users\/","title":{"rendered":"Dropbox suffered a serious hack that exposed sensitive data from its users"},"content":{"rendered":"\n<p><strong>Dropbox<\/strong>, the well-known cloud storage service, has <a href=\"https:\/\/www.sec.gov\/Archives\/edgar\/data\/1467623\/000146762324000024\/may2024exhibit991.htm\" target=\"_blank\" rel=\"noopener nofollow\" title=\"\">revealed<\/a> that a hacker breached its computer systems on April 24, resulting in the <strong>leakage of confidential information<\/strong>, including passwords and authentication data. The unauthorized access occurred in <strong>Dropbox Sign<\/strong>, formerly known as HelloSign, a company acquired by Dropbox in 2019 that allows for <strong>digital document signing<\/strong>.<\/p>\n\n\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" alt=\"Dropbox\" src=\"https:\/\/images.sftcdn.net\/images\/t_app-icon-s\/p\/b1b649d8-96d8-11e6-a62d-00163ed833e7\/244422730\/dropbox-logo.png\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">Dropbox<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/dropbox.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">DOWNLOAD<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--0\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"0\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\"><\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/dropbox.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n\n\n\n<p>The hack <strong>compromised the information of all Dropbox Sign users<\/strong>, including account settings, names, email addresses, and in some cases, phone numbers, hashed passwords, API keys, and OAuth tokens. However, <strong>there is currently no evidence that the content of user accounts or payment data has been accessed<\/strong>.<\/p>\n\n\n\n<p>The company ensures that the incident was limited to the Dropbox Sign infrastructure and <strong>did not affect other Dropbox products<\/strong>. It also states that it has hired forensic investigators and has notified regulatory authorities. Although Dropbox does not anticipate a &#8220;material&#8221; impact on its operations or financial situation, <strong>the company expects potential litigation and changes in customer behavior<\/strong> due to the incident.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1349\" height=\"720\" src=\"https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/3\/2024\/05\/dropbox.jpg\" alt=\"\" class=\"wp-image-280127\" srcset=\"https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/3\/2024\/05\/dropbox.jpg 1349w, https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/3\/2024\/05\/dropbox-300x160.jpg 300w, https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/3\/2024\/05\/dropbox-1024x547.jpg 1024w, https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/3\/2024\/05\/dropbox-768x410.jpg 768w\" sizes=\"auto, (max-width: 1349px) 100vw, 1349px\" \/><\/figure>\n<\/div>\n\n\n<p>API clients of Dropbox Sign will need to generate new access keys, and <strong>will have certain functions temporarily restricted<\/strong>. &#8220;Only signature requests and signing capabilities will remain operational for the continuity of your business. Once you rotate your API keys, the restrictions will be lifted and the product will continue to function normally,&#8221; says Dropbox.<\/p>\n\n\n\n<p>The company is in the process of notifying affected users and will provide assistance in this regard. This incident adds to previous security issues with Dropbox, such as a phishing campaign in 2022 that <a href=\"https:\/\/dropbox.tech\/security\/a-recent-phishing-campaign-targeting-dropbox\" target=\"_blank\" rel=\"noopener nofollow\" title=\"\">allowed a group of hackers to access the company&#8217;s GitHub accounts<\/a>, obtaining confidential information.<\/p>\n\n\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" alt=\"Dropbox\" src=\"https:\/\/images.sftcdn.net\/images\/t_app-icon-s\/p\/b1b649d8-96d8-11e6-a62d-00163ed833e7\/244422730\/dropbox-logo.png\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">Dropbox<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/dropbox.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">DOWNLOAD<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--0\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"0\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\"><\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/dropbox.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Dropbox, the well-known cloud storage service, has revealed that a hacker breached its computer systems on April 24, resulting in the leakage of confidential information, including passwords and authentication data. The unauthorized access occurred in Dropbox Sign, formerly known as HelloSign, a company acquired by Dropbox in 2019 that allows for digital document signing. The &hellip; <a href=\"https:\/\/cms-articles.softonic.io\/en\/dropbox-suffered-a-serious-hack-that-exposed-sensitive-data-from-its-users\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Dropbox suffered a serious hack that exposed sensitive data from its users&#8221;<\/span><\/a><\/p>\n","protected":false},"author":9256,"featured_media":280126,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wpcf-pageviews":1},"categories":[1015],"tags":[2659],"usertag":[],"vertical":[],"content-category":[],"class_list":["post-280124","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-app-subdomain-redirectiondropbox"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/280124","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/users\/9256"}],"replies":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/comments?post=280124"}],"version-history":[{"count":1,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/280124\/revisions"}],"predecessor-version":[{"id":313408,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/280124\/revisions\/313408"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media\/280126"}],"wp:attachment":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media?parent=280124"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/categories?post=280124"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/tags?post=280124"},{"taxonomy":"usertag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/usertag?post=280124"},{"taxonomy":"vertical","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/vertical?post=280124"},{"taxonomy":"content-category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/content-category?post=280124"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}