Current:Home > StocksXfinity hack affects nearly 36 million customers. Here's what to know. -ThriveEdge Finance
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-12 01:06:21
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (5)
Related
- Louvre will undergo expansion and restoration project, Macron says
- Bill to undo Memphis’ traffic stop reforms after Tyre Nichols death headed to governor’s desk
- With rising rents, some school districts are trying to find teachers affordable housing
- From Asteroids to Guitar Hero, World Video Game Hall of Fame finalists draw from 4 decades
- Paris Hilton, Nicole Richie return for an 'Encore,' reminisce about 'The Simple Life'
- Georgia school voucher bill narrowly clears longtime obstacle with state House passage
- North Carolina labor chief rejects infectious disease rule petitions for workplaces
- Elizabeth Smart Shares Message on Miracles 21 Years After Being Rescued From Kidnappers
- Trump suggestion that Egypt, Jordan absorb Palestinians from Gaza draws rejections, confusion
- 'Keep watching': Four-time Pro Bowl RB Derrick Henry pushes back on doubters after Ravens deal
Ranking
- Rams vs. 49ers highlights: LA wins rainy defensive struggle in key divisional game
- Oklahoma State men's basketball coach Mike Boynton fired after seven seasons with Cowboys
- 'Love is Blind' reunion spills all the tea: Here's who secretly dated and who left the set
- JPMorgan fined almost $350M for issues with trade surveillance program
- Angelina Jolie nearly fainted making Maria Callas movie: 'My body wasn’t strong enough'
- Want to coach your alma mater in women's college basketball? That'll be $10 million
- San Diego Padres acquire Chicago White Sox ace Dylan Cease
- Elon Musk abruptly scraps X partnership with former CNN anchor Don Lemon
Recommendation
Nearly 400 USAID contract employees laid off in wake of Trump's 'stop work' order
San Diego Padres acquire Chicago White Sox ace Dylan Cease
It’s Your Lucky Day! Get Up to 80% off at Anthropologie, With Deals Starting at Under $20
Terrified residents of San Francisco’s Tenderloin district sue for streets free of drugs, tents
Juan Soto to be introduced by Mets at Citi Field after striking record $765 million, 15
Christie Brinkley reveals skin cancer scare: 'We caught the basal-cell carcinoma early'
SpaceX’s mega rocket blasts off on a third test flight from Texas
Ally of late Russian opposition leader Alexey Navalny attacked in Lithuania