Current:Home > ScamsXfinity hack affects nearly 36 million customers. Here's what to know. -Secure Growth Academy
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-13 06:55:18
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (554)
Related
- The 401(k) millionaires club keeps growing. We'll tell you how to join.
- Fall in Love With These Under $100 Designer Michael Kors Handbags With an Extra 20% off Luxury Styles
- A man charged in the killing of a Georgia nursing student faces hearing as trial looms
- Watch these 15 scary TV shows for Halloween, from 'Teacup' to 'Hellbound'
- Small twin
- Abortion has passed inflation as the top election issue for women under 30, survey finds
- Trump seizes on one block of a Colorado city to warn of migrant crime threat, even as crime dips
- Polling Shows Pennsylvania Voters Are Divided on Fracking
- Federal court filings allege official committed perjury in lawsuit tied to Louisiana grain terminal
- Climate change gave significant boost to Milton’s destructive rain, winds, scientists say
Ranking
- Highlights from Trump’s interview with Time magazine
- Polling Shows Pennsylvania Voters Are Divided on Fracking
- Alaska US Rep. Peltola and Republican opponent Begich face off in wide-ranging debate
- Teen charged in connection with a Wisconsin prison counselor’s death pleads not guilty
- Louvre will undergo expansion and restoration project, Macron says
- 10 players to buy low and sell high: Fantasy football Week 6
- US House control teeters on the unlikely battleground of heavily Democratic California
- Chase Bank security guard accused of helping plan a robbery at the same bank, police say
Recommendation
North Carolina trustees approve Bill Belichick’s deal ahead of introductory news conference
Donald Trump’s Daughter Tiffany Trump Is Pregnant, Expecting First Baby With Michael Boulos
Teen charged in connection with a Wisconsin prison counselor’s death pleads not guilty
Sister Wives' Christine Brown and Janelle Brown Reveal Where Their Kids Stand With Robyn Brown’s Kids
House passes bill to add 66 new federal judgeships, but prospects murky after Biden veto threat
BrucePac recalls 10 million pounds of ready-to-eat meat: See list of 75 products affected
Bestselling author Brendan DuBois indicted for possession of child sexual abuse materials
Hurricane Leslie tracker: Storm downgraded from Category 2 to Category 1