manchesterwired
Technology
Dropbox details security breach that caused spam attack
Published: 1st Aug 2012 14:33:57
Online storage service Dropbox has given details of a security breach that led to many of its members receiving unsolicited emails.
A stolen password had been used to access an employee's accounts allowing a "project document" containing user emails addresses to be copied, it said.
The US company added that usernames and passwords stolen from other sites had also been used to sign in to some of its members' accounts.
It has adopted new security measures.
These include automated systems to spot suspicious activity and a new page allowing users to examine earlier log-ins to their account.
It has also advised users to create a unique password for each internet site and service they sign up to, and is offering its members the option to use two-factor authentication - which could involve using both a password and a code texted to their phone to gain access.
The problem came to light last month after hundreds of its users complained they had received unsolicited email via the addresses they had registered their Dropbox account to.
The firm said at the time that it had called in a third-party to investigate.
Dropbox declined to reveal how many of the accounts had been compromised. Its site says it has more than 50 million users and is installed onto 250 million devices.
The security company Sophos branded the breach "a mixture of poor practice both inside and outside the organisation".
Several of the storage site's users also expressed concern. Some questioned why their details had been stored in an insecure location.
"What was a staff member doing with user's email addresses in such a way?" asked one user on the comments section of Dropbox's blog.
"If you had any regard for the privacy of your users you keep those addresses where they belong: locked away in a database," wrote another.
The problem comes at a challenging time for the firm. Google recently launched Drive - its own online storage service offering more "free" space to new sign-ups who only apply for a basic service.
Amazon's Cloud Drive also offers US customers 5GB of free storage, compared with Dropbox's 2GB, although the latter's members can boost their capacity by referring friends.
Microsoft is promoting its rival Skydrive service by integrating it into its new Outlook.com webmail product. Apple has introduced iCloud storage to Mac owners who have downloaded its latest system. And other start-ups, including SpaceMonkey and Owncloud, are offering storage solutions that avoid risks involved with uploading material to external cloud servers.
"The fact that this isn't the first time that Dropbox has been stung by a security breach is a cause for concern for both its corporate and consumer customers," Chris Green, principal technology analyst at Davies Murphy Group Europe told the BBC.
"The online storage market has become much more competitive since it launched in 2008.
"What Dropbox has in its favour is its size and - despite the breaches - it retains a lot of goodwill. But this is yet another example that cloud storage is still not trustworthy enough for critical and sensitive information."
Harvard Citation
BBC News, 2012. Dropbox details security breach that caused spam attack. [Online] (Updated 01 Aug 2012)Available at: http://www.manchesterwired.co.uk/news.php/1443939-Dropbox-details-security-breach-that-caused-spam-attack [Accessed 18th June 2013]
Latest News
-
At 23:10:41 in Other
Teenager charged with man's murder in Bolton
A youth of 17 has been charged with the murder of a man who was found with head injuries in a Bolton street.... -
At 21:01:55 in Other
Bradford National Media Museum 'will not be closed'
Bradford's National Media Museum will not close, MPs say they have been told.... -
At 17:02:26 in Other
Greater Manchester protest charge PC formally cleared
A police officer accused of making false statements against a protester has been formally cleared.... -
At 16:41:51 in Other
Man arrested over travel agent robberies
A man suspected of carrying out a string of robberies since the end of April has been arrested by police.... -
At 13:55:50 in Other
Down's syndrome girl, 12, assaulted in Bolton park
A 12-year-old girl with Down's syndrome is in hospital with a serious head injury after being assaulted by a group of girls in a Bolton... -
At 12:21:36 in Other
Rox jewellery heist: Elliot Jorgensen and Anthony Boyd jailed
Two men involved in a £730,000 armed robbery at an Edinburgh jewellers have been jailed.... -
At 11:52:52 in Other
Moors Murderer Ian Brady appears at tribunal
Moors Murderer Ian Brady has appeared in public for the first time in decades at a hearing considering his sanity as part of a bid to take h... -
At 11:52:32 in Other
Stuart Hall used BBC status to sexually abuse girls
Stuart Hall abused his position as a BBC broadcaster to sexually abuse under age girls, Preston Crown Court heard.... -
At 10:30:17 in Other
Woman dies after fall at Stone Roses gig at Glasgow Green
A 24-year-old woman has died in hospital after falling at the Stone Roses concert in Glasgow on Saturday.... -
At 17:44:32 in Other
Two dozen arrests at Stone Roses gig at Glasgow Green
Police made 24 arrests during and after the Stone Roses concert in Glasgow....
News In Other Categories
-
Nadine Dorries: I'd fancy a go at Strictly Come Dancing
Nadine Dorries has said she would like to appear on Strictly Come Dancing despite getting in trouble for her exploits on another TV show las... -
Alcohol in pregnancy confusion warning from Public Health Wales
Confusing messages about how much alcohol is safe to drink in pregnancy is making it difficult for the NHS to tackle substance misuse, exper... -
Nadine Dorries: I'd fancy a go at Strictly Come Dancing
Nadine Dorries has said she would like to appear on Strictly Come Dancing despite getting in trouble for her exploits on another TV show las... -
Herschel telescope switched off
The billion-euro Herschel space telescope has been switched off.... -
Lightburn Hospital ward closed after bug outbreak
A Glasgow hospital has shut one of its wards to new admissions after an outbreak of streptococcal infection.... -
Teenager charged with man's murder in Bolton
A youth of 17 has been charged with the murder of a man who was found with head injuries in a Bolton street....



