Current:Home > ScamsXfinity hack affects nearly 36 million customers. Here's what to know. -SovereignWealth
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-17 08:23:42
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (15276)
Related
- Newly elected West Virginia lawmaker arrested and accused of making terroristic threats
- Horoscopes Today, January 17, 2024
- Virginia Senate panel defeats bill that aimed to expand use of murder charge against drug dealers
- Prosecutor probing TV studio attack in Ecuador is shot dead in Guayaquil
- Warm inflation data keep S&P 500, Dow, Nasdaq under wraps before Fed meeting next week
- 2024 Emmy Awards red carpet highlights: Celebrity fashion, quotes and standout moments
- Overdraft fees would drop to as little as $3 under Biden proposal
- The Best Plus Size Workwear That’s Comfy and Cute— Nordstrom Rack, Amazon, Boohoo, SKIMS, and More
- Bodycam footage shows high
- Turkmenistan’s president fires chief prosecutor for failure to fulfill his duties, state media say
Ranking
- How to watch the 'Blue Bloods' Season 14 finale: Final episode premiere date, cast
- US Justice Department to release report on halting police response to Uvalde school massacre
- Nearly $1 billion upgrade planned at the airport in Omaha, Nebraska
- Ocean explorers discover 4 new species of deep-sea octopus, scientists say
- 2025 'Doomsday Clock': This is how close we are to self
- Man, 20, charged in shooting that critically wounded Pennsylvania police officer
- Man, 20, charged in shooting that critically wounded Pennsylvania police officer
- South Dakota House passes bill that would make the animal sedative xylazine a controlled substance
Recommendation
IRS recovers $4.7 billion in back taxes and braces for cuts with Trump and GOP in power
Aldi eliminates plastic shopping bags in all 2,300 US grocery stores
Houthis continue attacks in Red Sea even after series of U.S. military strikes
'Had to do underwater pics': Halle Bailey gives fans first look into private pregnancy
Federal hiring is about to get the Trump treatment
Former Team USA gymnast Maggie Nichols chronicles her journey from NCAA champion to Athlete A in new memoir
A federal official says the part that blew off a jetliner was made in Malaysia by a Boeing supplier
Overdraft fees would drop to as little as $3 under Biden proposal