
Villeneuve said that APT gangs could soon be trending toward involving cloud-based services such as Dropbox as part of their attacks. The attackers retrieve the information, analyze it, and if the target is worthy, a second stage backdoor is delivered called Bubblewrap, a much more traditional backdoor that is used for remote control and stealing data. This first stage of the attack runs a number of commands on the infected computer and sends the output to the Dropbox account, said FireEye principal threat analyst Nart Villeneuve. Once executed, a backdoor called Lowball is dropped onto the compromised machine which then connects to a legitimate Dropbox account belonging to the attackers.
US DROPBOX USER IN CHINA WINDOWS
Three attachments accompanied each phishing email, all of which were exploits for a patched Microsoft Office vulnerability, CVE-2012, 0158, a buffer overflow in the Windows Common Control Library patched in early 2012. In this case, researchers at FireEye said that this is one of the first instances this group has used phishing lures written in Chinese against targets.

The group targeting Hong Kong media outlets is called and is known to researchers for using publicly available remote access Trojans such as Poison Ivy to attack government and financial firms specializing in global economic policy. The group targeted the email accounts of investigative journalists looking into alleged corruption involving then-Chinese premier Wen Jiabao. In January 2013, hackers, allegedly connected to the Chinese government, were blamed by Mandiant for a breach at the New York Times. This is not the first time China has targeted media outlets, especially in Hong Kong, in particular seeking out journalists’ sources and attempting to stay ahead of a news cycle. And we’re giving you the ability to customize the design with a background and logo that will appear when recipients view your transfers.ĭropbox Transfer is live now for all customers, learn more about the feature here.An APT gang linked to China and alleged to be responsible for targeted attacks against foreign governments and ministries, has now pointed its focus inward at China’s autonomous territory Hong Kong.Īn August attack against several media companies in Hong Kong was carried out shortly after a high-profile controversy over an appointment at the prestigious Hong Kong University. Plus, you can access transfers that others send to you through our iOS app.

You can now start a transfer from the Dropbox desktop and iOS apps in addition to. Further, users can customize backgrounds that others see when viewing shared content.
US DROPBOX USER IN CHINA FULL
US DROPBOX USER IN CHINA PASSWORD
When sharing, you can password protect files and more. We’re excited to help everyone easily deliver files, so today we’re rolling Transfer out to all Dropbox users, along with new features.ĭropbox touts that Transfer allows customers to “send up 100 GB of files in just a few clicks.” You can also select files from your computer’s hard drive to share in addition to what’s saved on Dropbox. Transfer is designed for times when you need to turn over large collections of final files to clients and other people outside your company. Now Dropbox has announced that the feature is available for users on all plans of its service (with varying limits).


The handy feature allows for sharing of very large files up to 100GB in size.ĭropbox Transfer rolled out to a limited group of users last summer. Dropbox Transfer has left beta and is now available for all customers.
