Dropbox phishing: someone is interested in your corporate files

I wrote before about the Target Malware. Now I can also write about Phishing. Here is one for Dropbox:     What is wrong with this email ? the contact me by extracting the user part in the email address (smustaca) The “Verify your email” goes directly to a phishing website. The text is rather unusual, as Dropbox will never send anything like this. Dropbox adds some personalized links at the end of the emails. Emails from Dropbox come from “Dropboxmail.com” and not from “dropbox.com”     Why would anyone phish Dropbox? In order to get your files!   Why…

Dropbox was breached in 2012, the data is now online – a quote in SecurityWeek

68 Million Exposed in Old Dropbox Hack By Ionut Arghire on August 31, 2016 In an email response to a SecurityWeek inquiry, IT security expert Sorin Mustaca said that the surprising fact is that the 2012 hack of Dropbox didn’t emerge earlier, along with the other mega-breaches. He also notes that the use of the SHA1 hashing algorithm with salting improves the security of these passwords. “Fortunately, Dropbox was using the SHA 1 hashing algorithm (today this is not considered “strong” anymore) and it was using salting even in 2012 – an operation that many other services don’t do even…

No Picture

Dropbox hacked?

You probably have read on news portals that Dropbox was hacked and that some user accounts were compromised. Here is the alleged list of leaked user information. Dropbox is saying that the data is not valid. Apparently, Dropbox was not hacked. The company is clearly stating this on their blog. Recent news articles claiming that Dropbox was hacked aren’t true. Your stuff is safe. The usernames and passwords referenced in these articles were stolen from unrelated services, not Dropbox. Attackers then used these stolen credentials to try to log in to sites across the internet, including Dropbox. We have measures…

No Picture

How to exhaust the space on any online backup system

Check the other article I wrote about Dropbox. While playing with the mklink, I made a mistake of trying something new: mklink /D S t:S Remember that the Dropbox folder was located in T:S. So, basically I created a circular reference… and this is what happened:   This is what was transferred until when I stopped the Dropbox program after receiving errors that I run of space: Apparently, Dropbox doesn’t have any kind of loop detection. I will let them know that…  

No Picture

Dropbox: How to backup other folders than the default Dropbox

I recently tested a couple of online backup solutions and one of them was Dropbox. If you know the system, you know also that Dropbox requires the user to choose a folder which will be synchronized in the cloud. That folder is called “Dropbox” and can’t be changed. I wanted to backup a couple of folders which I have on my Truecrypt partition but I didn’t want to move them in the Dropbox folder in order to be synchronized with the cloud. For that, I created symlinks with the “mklink” command: cd t:SDropbox mklink /D name directory_source   My Truecrypt…

No Picture

About Cloud Computing in Darkreading.com

When Consumers Go To The Cloud, Businesses Should Watch Out Companies should take a look at what cloud services their employees are using following last week’s authentication bug at Dropbox Dropbox encrypts data on the servers, but not to individual accounts, notes Sorin Mustaca, a product manager with security firm Avira. Anyone with admin access to the server can read all of its data. In addition, data on the servers of external services have lesser legal protections, Mustaca says. “I always advise our users to be very, very careful what they put online because if they put anything online, then…

By continuing to use the site, you agree to the use of cookies. more information

The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.