Skip to content
Dropbox ยท Apps and SaaSFiled May 1, 2024

Dropbox discloses a material cybersecurity incident

Material cybersecurity incidentSecurityUpdated 38h ago
Disclosed
May 1, 2024
Records
Not stated
Industry
Software and IT services
Filings
1
Data involved
Phone numbersPasswords or credentials
SEC filing

What the filing says

On April 24, 2024, Dropbox, Inc. (" Dropbox " or " we ") became aware of unauthorized access to the Dropbox Sign (formerly HelloSign) production environment. We immediately activated our cybersecurity incident response process to investigate, contain, and remediate the incident. Upon further investigation, we discovered that the threat actor had accessed data related to all users of Dropbox Sign, such as emails and usernames, in addition to general account settings.

More from Dropbox

Sources: vendors' own status pages, published postmortems and SEC 8-K Item 1.05 filings, read daily. Times as reported. Logos via logo.dev; trademarks belong to their owners.

Outages by email

Saturday mornings: the week's major outages, new postmortems and disclosed breaches, only in weeks that had some.

Double opt-in. Unsubscribe any time.