Current:Home > ScamsXfinity hack affects nearly 36 million customers. Here's what to know. -CapitalSource
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-16 06:54:28
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (61)
Related
- Meet the volunteers risking their lives to deliver Christmas gifts to children in Haiti
- Warming Trends: Couples Disconnected in Their Climate Concerns Can Learn About Global Warming Over 200 Years or in 18 Holes
- Take 42% Off a Bissell Cordless Floor Cleaner That Replaces a Mop, Bucket, Broom, and Vacuum
- Congress tightens U.S. manufacturing rules after battery technology ends up in China
- New data highlights 'achievement gap' for students in the US
- Warming Trends: Best-Smelling Vegan Burgers, the Benefits of Short Buildings and Better Habitats for Pollinators
- Saying goodbye to Pikachu and Ash, plus how Pokémon changed media forever
- The IPCC Understated the Need to Cut Emissions From Methane and Other Short-Lived Climate Pollutants, Climate Experts Say
- Highlights from Trump’s interview with Time magazine
- Lottery scams to watch out for as Powerball, Mega Millions jackpots soars
Ranking
- Who's hosting 'Saturday Night Live' tonight? Musical guest, how to watch Dec. 14 episode
- Zoom is the latest tech firm to announce layoffs, and its CEO will take a 98% pay cut
- 50-pound rabid beaver attacks girl swimming in Georgia lake; father beats animal to death
- Blackjewel’s Bankruptcy Filing Is a Harbinger of Trouble Ahead for the Plummeting Coal Industry
- 'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
- 14 Gifts For the Never Have I Ever Fan In Your Life
- A Personal Recession Toolkit
- Kesha Shares She Almost Died After Freezing Her Eggs
Recommendation
Megan Fox's ex Brian Austin Green tells Machine Gun Kelly to 'grow up'
4.9 million Fabuloso bottles are recalled over the risk of bacteria contamination
Manufacturer recalls eyedrops after possible link to bacterial infections
14 Gifts For the Never Have I Ever Fan In Your Life
Behind on your annual reading goal? Books under 200 pages to read before 2024 ends
This doctor wants to prescribe a cure for homelessness
The First Native American Cabinet Secretary Visits the Land of Her Ancestors and Sees Firsthand the Obstacles to Compromise
The return of Chinese tourism?