Current:Home > ScamsXfinity hack affects nearly 36 million customers. Here's what to know. -AssetLink
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-16 21:35:23
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (68183)
Related
- Pressure on a veteran and senator shows what’s next for those who oppose Trump
- Watch live: NASA, Intuitive Machines share updates on Odysseus moon lander
- See Bill Skarsgård’s Bone-Chilling Transformation for Role in The Crow
- See Bill Skarsgård’s Bone-Chilling Transformation for Role in The Crow
- Who are the most valuable sports franchises? Forbes releases new list of top 50 teams
- Family that wanted to build world’s tallest flagpole to pay $250K fine for cabins
- Medicaid expansion proposal advances through Republican-led Mississippi House, will go to Senate
- Zach Wilson landing spots: Three teams that make sense for Jets QB
- As Trump Enters Office, a Ripe Oil and Gas Target Appears: An Alabama National Forest
- Ryan Gosling Set to Bring the Kenergy With 2024 Oscars Performance
Ranking
- Nearly half of US teens are online ‘constantly,’ Pew report finds
- Woman files lawsuit against Tyreek Hill for 'violently' charging at her, per report
- Kate Middleton's Rep Speaks Out Amid Her Recovery From Abdominal Surgery
- We may be living in the golden age of older filmmakers. This year’s Oscars are evidence
- Angelina Jolie nearly fainted making Maria Callas movie: 'My body wasn’t strong enough'
- 7 California residents cash in multi-million dollar lottery tickets on the same day
- Juventus midfielder Paul Pogba banned for four years for doping
- Owners of St. Louis nursing home that closed abruptly face federal fine of more than $55,000
Recommendation
Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
'Who TF Did I Marry': How Reesa Teesa's viral story on ex-husband turned into online fame
Cristiano Ronaldo suspended for one match over alleged offensive gesture in Saudi league game
Kia, Hyundai car owners can claim piece of $145M theft settlement next week, law firm says
The FTC says 'gamified' online job scams by WhatsApp and text on the rise. What to know.
What is leap day? Is 2024 a leap year? Everything you need to know about Feb. 29
2024 NFL draft: Notre Dame's Joe Alt leads top 5 offensive tackle prospect list
Reparations experts say San Francisco’s apology to black residents is a start, but not enough