Dropbox adds two-factor authentication following hack
One-time pass code available for users demanding more security in wake of this month's password hack.


Dropbox has rolled out two-factor authentication to protect users from having their account details stolen by hackers.
The cloud storage firm's file sharing service is one of the most popular on the internet.
Earlier this month, the company suffered a breach of its infrastructure when account holders reported receiving unwanted messages in email accounts used only for Dropbox communications.
The one-time passcode should increase security as they are much harder to intercept and expire quickly.
A security code can either be text to a mobile phone or generated by a mobile authenticator app.
Dropbox supports a number of different authenticator apps, including Google Authenticator for Android, iPhone, and BlackBerry; Amazon AWS MFA for Android and Authenticator for Windows Phone 7.
We're working on automated mechanisms to identify suspicious activity.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
User will also need to upgrade their client to version 1.5.12. The settings can be activated via Dropbox's "Security" tab.
"Two-step verification is one of several steps that we're taking to enhance the security of your Dropbox," said Dan Wheeler on the company's blog.
The company has also created a way for users to view all active logins to their account using the Security tab. "We're working on automated mechanisms to identify suspicious activity," added Wheeler.
But early users of the system have complained the new security features are not quite ready.
One user, David W, said on the company's forum: "Someone didn't think this through. If my phone is lost, and I've lost my emergency backup code, there is currently NO WAY to recover your dropbox account. There really needs to be another method to recover the account."
Rene Millman is a freelance writer and broadcaster who covers cybersecurity, AI, IoT, and the cloud. He also works as a contributing analyst at GigaOm and has previously worked as an analyst for Gartner covering the infrastructure market. He has made numerous television appearances to give his views and expertise on technology trends and companies that affect and shape our lives. You can follow Rene Millman on Twitter.
-
Cleo attack victim list grows as Hertz confirms customer data stolen – and security experts say it won't be the last
News Hertz has confirmed it suffered a data breach as a result of the Cleo zero-day vulnerability in late 2024, with the car rental giant warning that customer data was stolen.
-
The Pirate Bay is back, but for how long?
News Notorious file-sharing site reappears online, but claims suggest FBI is logging IPs
-
Megaupload lawyers move to kill US piracy charges
News The file-sharing site's legal team claim case is invalid because the company's based in Hong Kong.
-
Hollywood wins piracy case against Newzbin
News But the Usenet site thinks it's all a waste of time, as the pirated content is all still online.
-
Pirate Party unveils its election manifesto
News File sharing isn't the only issue at stake for the newly formed party.
-
Mandelson wants more copyright power
News Business Secretary Peter Mandelson is looking to create what one blogger has described as the 'office of Pirate-Finder General'.
-
Queen's speech introduces file sharing plans
News The Queen introduced the Digital Economy Bill today, which includes the government's plans to cut of illegal file sharers.
-
Mandelson unveils file sharing disconnection plan
News Business Secretary Peter Mandelson has said illegal file sharers will be cut off, using a similar system to that of France.