You might see that the Dropbox Community team have been busy working on some major updates to the Community itself! So, here is some info on what’s changed, what’s staying the same and what you can expect from the Dropbox Community overall.

Forum Discussion

LPJTech's avatar
LPJTech
New member | Level 1
3 hours ago

Dropbox account take over by bad actor

An unauthorized person hijacked our basic Dropbox account and sent an email invite to an undisclosed number of recipients.  The content of the email invite may have malicious content/link to a .pdf file.

We noticed the unusual behavior as the owner of the Dropbox account was overseas (unaware) and the recipients tried to contact the Dropbox owner to see if it was legit or not.

We reset the password and set the 2-factor authentication.

However, today a ‘Reminder’ email notification was sent out by the same account to an unknown number of recipients.

Questions:

  1. How do you determine (who) the email addresses the initial invitation email was sent to and the number of recipients? We want to send an email blast to warn them not to click on the link in the invite.
  2. How do you disable the reminder email notification of the original invitation?
  3. Any other advice? Shall we delete this account? 

Thank you in advance for any advise or recommendations.

LPJ

 

No RepliesBe the first to reply

About Security and Permissions

Start a discussion in the Dropbox Community forum to get help with your account security and permissions. Find support from Community members.

Need more support

If you need more help you can view your support options (expected response time for an email or ticket is 24 hours), or contact us on X or Facebook.

For more info on available support options for your Dropbox plan, see this article.

If you found the answer to your question in this Community thread, please 'like' the post to say thanks and to let us know it was useful!