Wire · technology
Dropbox Data Breach: 5,000 Accounts Hit Via Lenovo ID Flaw
◆ Sectors
◆ Source
◆ Verified
Fusion42 · 4 September 2026 · Fusion42 review
A vulnerability in Lenovo's email verification process allowed attackers to access approximately 5,000 Dropbox accounts by registering Lenovo IDs with email addresses they did not control, exploiting Dropbox's acceptance of Lenovo ID for login without additional password verification.
This Wire brief sits within Fusion42's coverage of Cybersecurity.
◆ ◆ The Wire takeaway
Your identity federation integrations are as weak as your weakest partner. Drop reliance on legacy single sign-on links that skip passwords or two-factor checks before attackers turn them into a front door.
◆ Coverage
1 source · 3 Sep 2026
◆ Related on Wire
◆ Topics