Current:Home > NewsXfinity hack affects nearly 36 million customers. Here's what to know. -Ascend Finance Compass
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-11 21:51:19
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (5)
Related
- Average rate on 30
- Tyreek Hill’s traffic stop shows interactions with police can be about survival for Black men
- Tyreek Hill detainment: What we know, what we don't about incident with police
- Beyoncé Offers Rare Glimpse Into Family Life With Her and Jay-Z’s 3 Kids
- South Korean president's party divided over defiant martial law speech
- DNC meets Olympics: Ella Emhoff, Mindy Kaling, Suni Lee sit front row at Tory Burch NYFW show
- 15-year-old North Dakota runaway shot, killed in Las Vegas while suspect FaceTimed girl
- The White Stripes sue Donald Trump for copyright infringement over 'Seven Nation Army'
- US appeals court rejects Nasdaq’s diversity rules for company boards
- Amber Alert issued in North Carolina for 3-year-old Khloe Marlow: Have you seen her?
Ranking
- Spooky or not? Some Choa Chu Kang residents say community garden resembles cemetery
- Will Travis Kelce attend the VMAs to support Taylor Swift? Here's what to know
- Chiefs fan wins $1.6M on Vegas poker game after Kansas City beat Baltimore
- Airbnb allows fans of 'The Vampire Diaries' to experience life in Mystic Falls
- A Mississippi company is sentenced for mislabeling cheap seafood as premium local fish
- Maryland Supreme Court hears arguments on child sex abuse lawsuits
- ‘Appalling Figures’: At Least Three Environmental Defenders Killed Per Week in 2023
- A Boeing strike is looking more likely. The union president expects workers to reject contract offer
Recommendation
2 killed, 3 injured in shooting at makeshift club in Houston
Huddle Up to Learn How Olivia Culpo and Christian McCaffrey Became Supportive Teammates
Fourth death linked to Legionnaires’ disease cluster at New York assisted living facility
Powerball winning numbers for September 9: Jackpot rises to $121 million
FACT FOCUS: Inspector general’s Jan. 6 report misrepresented as proof of FBI setup
49ers vs. Jets Monday Night Football live updates: Odds, predictions, how to watch
What James Earl Jones had to say about love, respect and his extraordinary career
McDonald's Crocs Happy Meals with mini keychains coming to US