ESPNWhich extension-eligible NFL players could be big factors next offseason?Daily MaverickFOOD BASKET: SRD grant R498 short of food poverty line as August basket remains unaffordableוואלהנתניהו מברך על האיחוד בין סמוטריץ' לפייגלין: "אסור לבזבז אף קול בימין"The Jerusalem Post'Israel needs its supporters to be here': Paraguay’s ambassador seeks lasting tiesBollywood HungamaAjay Devgn begins shooting for untitled horror thriller; reunites with Shaitaan makers Panorama StudiosUN News‘Fight for humanity’: Avoiding a climate catastrophe means acting nowIl Fatto QuotidianoBoom di acquisti di farmaci dimagranti, l’allarme degli esperti: “Non sono una scorciatoia estetica, hanno effetti molto potenti ecco cosa si rischia ad usarli senza una diagnosi”01netUn « incident informatique » touche plusieurs sites du gouvernement françaisVilaWebL’Esquerra Independentista crida a celebrar una Diada centrada en la catalanitat popular, diversa i antiracistaCBS NewsEdouard weakens to depression as heavy rain hits southeastern TexasChannel News AsiaNepal-Tibet disaster: Police seek DNA samples from families of missing SingaporeansInquirer EntertainmentMartin Nieverra, Jed Madela admit ‘fear’ in performing Ryan Cayabyab’s songs
The Daily Newsstand · Free, Always
Wednesday, September 2, 2026

Dropbox breach compromises 5,000 accounts through Lenovo ID loophole

Translate
Hackers got into 5,000 Dropbox accounts after Lenovo ID loophole exploited. — Unsplash pic

Hackers got into 5,000 Dropbox accounts after Lenovo ID loophole exploited. — Unsplash pic

By Malay Mail

First Published: Wednesday, 02 Sep 2026 12:26 PM MYT

SAN FRANCISCO, Sept 2 — Online file storage and sharing service Dropbox accounts were compromised last month after hackers exploited a flaw involving Lenovo’s account authentication system, with files accessed in some cases.

Dropbox said hackers viewed and downloaded files from roughly 5,000 accounts during unauthorised access between August 4 and August 21, international newswires Reuters and Bloomberg reported today.

The company said the affected accounts were not protected by multi-factor authentication and were linked to Lenovo IDs, which can be used to access Dropbox accounts.

Hackers exploited an issue with Lenovo’s email verification process to create Lenovo IDs using the email addresses of Dropbox users who had not signed up for the service, according to notification emails sent to affected users and seen by Bloomberg News.

Dropbox said it has since terminated all sessions authenticated through Lenovo ID, removed the links between the two services and changed its systems to require users to enter their Dropbox password when accessing an account through Lenovo.

A Dropbox spokesman told Bloomberg that the company moved to secure affected accounts after discovering the breach and has notified regulators and affected users.

Lenovo said it recently identified a “legacy integration” with Dropbox that “could be used to improperly authenticate certain Dropbox accounts”.

The company said its own customers were not affected and that it was working with Dropbox to mitigate the risk while its investigation continues.

View the original on Malay Mail

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.