Current:Home > reviewsXfinity hack affects nearly 36 million customers. Here's what to know. -MoneyStream
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-14 18:54:12
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (23)
Related
- Charges tied to China weigh on GM in Q4, but profit and revenue top expectations
- The New US Climate Law Will Reduce Carbon Emissions and Make Electricity Less Expensive, Economists Say
- Senate Votes to Ratify the Kigali Amendment, Joining 137 Nations in an Effort to Curb Global Warming
- When AI works in HR
- 2025 'Doomsday Clock': This is how close we are to self
- Amid Punishing Drought, California Is Set to Adopt Rules to Reduce Water Leaks. The Process has Lagged
- This Leakproof Water Bottle With 56,000+ Perfect Amazon Ratings Will Become Your Next Travel Essential
- Scholastic wanted to license her children's book — if she cut a part about 'racism'
- What to know about Tuesday’s US House primaries to replace Matt Gaetz and Mike Waltz
- Boohoo Drops a Size-Inclusive Barbie Collab—and Yes, It's Fantastic
Ranking
- Federal Spending Freeze Could Have Widespread Impact on Environment, Emergency Management
- 25 hospitalized after patio deck collapses during event at Montana country club
- Kim Cattrall Reveals One Demand She Had for Her And Just Like That Surprise Appearance
- Pete Davidson Admits His Mom Defended Him on Twitter From Burner Account
- Why members of two of EPA's influential science advisory committees were let go
- Will There Be a Barbie Movie Sequel? Margot Robbie Says...
- Laredo Confronts Drought and Water Shortage Without a Wealth of Options
- Ocean Warming Doubles Odds for Extreme Atlantic Hurricane Seasons
Recommendation
Behind on your annual reading goal? Books under 200 pages to read before 2024 ends
'We're just at a breaking point': Hollywood writers vote to authorize strike
Frustrated airline travelers contend with summer season of flight disruptions
Olivia Rodrigo Makes a Bloody Good Return to Music With New Song Vampire
Nearly 400 USAID contract employees laid off in wake of Trump's 'stop work' order
State Tensions Rise As Water Cuts Deepen On The Colorado River
Banks are spooked and getting stingy about loans – and small businesses are suffering
Kelsea Ballerini Struck in the Face By Object While Performing Onstage in Idaho