Dropbox Sign experienced a security breach on April 24, with unauthorized access to its production environment leading to the theft of sensitive customer information, such as names, email addresses. Dropbox responded by resetting passwords, API keys, and OAuth tokens, reassuring users that their account contents were not accessed; the company remains committed to strengthening its security measures and collaborating with law enforcement to prevent future incidents. ```

Attackers stolen Dropbox's API keys & hashed passwords