Dropbox has begun investigating complaints that users are receiving spam to email addresses only associated with their accounts at the file-sharing service. The spam, sent to addresses only used for Dropbox accounts, advertises a particular gambling website, according to users on Dropbox's forum. The behaviour has sparked …


    I vote for 3rd Party

    Having a custom email address for my account, I have yet to receive any spam to this address. Oh, I have never signed up for any 3rd party apps either. But if it is a 3rd party then there is almost no way to track down which one, or whether your files have been compromised.

      Re: I vote for 3rd Party

      I don't use any 3rd party apps. just the standard desktop client.

      and i received spam to my unique dropbox address.

      i think you have read too much in to the fact that haven't received any spam.

        Re: I vote for 3rd Party

        Same here, no 3rd party apps, dedicated address, but getting spam.

    On my unique dropbox address, in the form, I recieved 2 spam emails from EuroDice.

      Strangely I had the same two Euro Dice e-mails, but both had two of my 'special' addresses in the "To:" field, my dropbox address, and an address I used to sign up to Viewster.

        re: Strangely I had

        that may be more to do with the taxonomy of the bulgarian spammers rather than the source of your two addresses.

    They're the same emails as the linkedin/lastfm ones and it only went to my dropbox forwarder.

    DropBox has a security problem?

    Say it ain't so!

    Same here

    I had four emails last night to our two dropbox email addresses. Again, these addresses were not given to any other organisation.

    Reminds me of the headline in a local UK market town rag...

    "Joint raid on crack house"

    I always assumed the authorities were going to be disappointed.

    Spam Account

    I have a free web based email. Whenever I sign up for online services I use that account. Then I go there, get whatever info I need (They usually send an email with a confirmation link), and log off.

    I get between 200-350 spam mails a week on that account. I go in at the end of each month, select all and delete. There is simply too much marketing BS going on today with push emails. My personal email address is for my use and no one else.

    It'd be interesting to see the mail headers for some of these; the last time I saw this happen (Moonpig), it turned out that someone had broken into their account with their mailing list provider and started sending out spam.

    Anybody care to post a pastebin link to the full source for some of the messages?

      Full content including headers posted to pastebin


    One possibility

    If your Dropbox-specific address is of the form dropbox@<name> then it's not a hard guess. (Mine is like that but I have found Google Apps spam filters to be pretty good.)

      Re: One possibility

      That probably explains why I haven't received anything (yet).

      I do get spam, average 15/day over six different addresses, but nothing about gambling at this point.

      Re: One possibility

      Getting spam on my only used for Dropbox email address. No one would guess it. Even more annoying is I installed Dropbox and never used it for more than a quick play. Grrr...

