CuraSec

tag: Saas · 2 items

2026-09-02 · BleepingComputer · source ↗ #third-party-breach#identity#saas
  • Engineer — Plan: The flaw is on Lenovo’s side, not patchable by your team, but audit all corporate Dropbox accounts for unauthorized access and disable any Lenovo-linked authentication integrations in your Dropbox admin console.
  • SOC/IR — Act: Dropbox accounts are actively compromised — review Dropbox audit logs for anomalous sign-ins tied to Lenovo ID authentication since the earliest affected date and sweep for any corporate accounts flagged by Dropbox’s warning.
  • Leader — Act: Confirm this week whether your organization uses Dropbox accounts linked to Lenovo credentials, request Dropbox’s breach notification details, and assess whether customer or regulatory disclosure obligations are triggered.
2026-08-14 · BleepingComputer · source ↗ #data-breach#third-party-risk#saas
  • Engineer — Skip
  • SOC/IR — Learn: ShinyHunters claimed this breach in July; no IOCs or TTPs published yet, so no detection action is possible — file for actor-tracking context.
  • Leader — Act: If RingCentral is in your vendor stack, confirm scope with your account rep, request their incident report, and assess whether affected data triggers customer or regulatory notification obligations.