

Third-party services can have the same usernames/passwords as the more-secure apps they’re built around, thus for all purposes they often serve as open windows into an otherwise locked house.


They can be, in other words, very easy targets. They also know that third-party apps, such as the one from which these Dropbox logins were originally stolen, are often written by amateur developers and can have weak security. They’re too short and/or use leetspeak to swap characters in a manner that password crackers know all too well and/or seriously?! That’s a well-known American rock band, for crying out loud.Ĭrooks of course know that internet users often reuse passwords. Let’s take a look at some of the passwords that one Reddit user said worked: Well, just because the passwords were reset doesn’t mean that people didn’t resort to the utterly, depressingly common habit of reusing passwords. The Register checked the Bitcoin account that had been set up to milk the gullible and found that exactly zero people fell for the ruse, making this an utter #FAIL of a fleecing.īut what about the Reddit users who reportedly tested some of the leaked logins and confirmed that at least some of them work? All other remaining passwords have been expired as well. We’d previously detected these attacks and the vast majority of the passwords posted have been expired for some time now. These usernames and passwords were unfortunately stolen from other services and used in attempts to log in to Dropbox accounts. Rather, they were stolen from third-party services in previous attacks that happened “some time” ago, the company said.ĭropbox told users to change their passwords after detecting suspicious activity and told The Next Web that this all went down months ago.ĭropbox has not been hacked. In fact, the passwords and usernames had been wiggled out, but not from Dropbox. To see plenty more, just search on for the term Dropbox hack.Ĭalumny, slander, lies, Dropbox said: all those details were expired, past their sell-by date, yesterday’s fish, pushing up daisies. Here is another batch of Hacked Dropbox accounts from the massive hack of 7,000,000 accounts Millions and millions of Dropbox logins have not been stolen – well, not recently, anyway – the company said on Monday.Ī Reddit thread emerged on Monday containing hundreds of Dropbox account usernames and passwords in plain text.Ī Pastebin guest also posted documents with about 400 login details that he claimed were a subset of a monster master list of 7,000,000 accounts, promising “more to come” for trusting souls who cough up Bitcoin payments to “keep showing your support”.
