Looking Inside Dropbox – whitepaper

Hi there folks. We all know that dropbox is made in python. It’s website is made with pyramid and it’s desktop applications are made with python. The existing Python bytecode reversing techniques are not enough for reversing hardened applications like Dropbox.

Recently I came accross a whitepaper written by Dhiru Kholia and Przemysław Wegrzyn. This paper presents new and generic techniques, to reverse engineer frozen Python applications, which are not limited to just the Dropbox world. It describes a method to bypass Dropbox’s two factor authentication and hijack Dropbox accounts.

Additionally, generic techniques to intercept SSL data using code injection techniques and monkey patching are presented. The methods presented in this whitepaper are not limited to dropbox.

You can download this whitepaper from usenix website.

Do share your views after reading this whitepaper and don’t hesitate following us in order to get regular updates.



If you liked what you read then I am sure you will enjoy a newsletter of the content I create. I send it out every other month. It contains new stuff that I make, links I find interesting on the web, and occasional discount coupons for my book. Join the 5000+ other people who receive my newsletter:

I send out the newsletter once every other month. No spam, I promise + you can unsubscribe at anytime

✍️ Comments

Be the first to leave a comment! 🎉

Say something

Send me an email when someone comments on this post.

Thank you!

Your comment has been submitted and will be published once it has been approved. 😊