Dropbox is warning some users that an unauthorized party accessed their accounts by exploiting a flaw in Lenovo's email verification process to register fraudulent Lenovo IDs.

Attackers reportedly registered Lenovo IDs using victims’ email addresses, allowing them to sign into existing Dropbox accounts without their passwords.

La violazione sicurezza Dropbox ha coinvolto circa 5000 account, accesso senza password grazie a un difetto di autenticazione Lenovo ID.