DropBox, besides neglecting to encrypt your files before storing them remotely, has had a history of malware behavior.
Their macOS client directly modified macOS's 'privacy database' (TCC.db) to bypass the user prompt for 'accessibility' rights – allowing them to interact with system UIs, other applications, and even intercept key events (i.e. keylogging).
Apple has since used SIP to block an application from modifying that file.