Current:Home > reviewsXfinity hack affects nearly 36 million customers. Here's what to know. -Wealth Evolution Experts
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-17 21:33:55
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (88)
Related
- Paris Hilton, Nicole Richie return for an 'Encore,' reminisce about 'The Simple Life'
- Hasty Pudding honors ‘Saltburn’ actor Barry Keoghan as its Man of the Year
- Boston-area teachers reach tentative contract agreement after 11-day strike
- After hospital shooting, New Hampshire lawmakers consider bills to restrict, expand access to guns
- Video shows dog chewing cellphone battery pack, igniting fire in Oklahoma home
- Arkansas police chief accused of beating, stranding suspect in rural area, faces kidnapping charge
- Justin Timberlake's apology to 'nobody', Britney Spears' Instagram post fuel a fan frenzy
- Tesla recalls nearly 2.2M vehicles for software update to fix warning lights
- 'Most Whopper
- Dave Ramsey, a 22-year-old named Emma and what not to say to parents
Ranking
- Elon Musk's skyrocketing net worth: He's the first person with over $400 billion
- Gary Payton rips California's Lincoln University, where he is men's basketball coach
- Could Biden shut down the border now? What to know about the latest immigration debate
- Supreme Court allows West Point to continue using race as a factor in admissions, for now
- Residents worried after ceiling cracks appear following reroofing works at Jalan Tenaga HDB blocks
- NPR's Student Podcast Challenge is back – with a fourth-grade edition!
- NASA tracked a stadium-size asteroid that passed by Earth but was not a threat: See a video
- Target pulls Black History Month product after video points out misidentified icons
Recommendation
What to watch: O Jolie night
Adrian Beltré to have Rangers logo on baseball Hall of Fame plaque. No team emblem for Jim Leyland
General Hospital Star Tyler Christopher's Autopsy Report Reveals New Details on Cause of Death
Congressional Democrats tell Biden to do more on abortion after Ohio woman's arrest
Pressure on a veteran and senator shows what’s next for those who oppose Trump
How Sherri Shepherd Avoids Being Overwhelmed by Health Care Trends Like Ozempic
Federal authorities investigate suspected arson at offices of 3 conservative groups in Minnesota
Fani Willis' court filing confirms romantic relationship with lawyer on Trump case but denies any conflict