Current:Home > ContactXfinity hack affects nearly 36 million customers. Here's what to know. -Edge Finance Strategies
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-12 16:00:06
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (1)
Related
- Can Bill Belichick turn North Carolina into a winner? At 72, he's chasing one last high
- 2023 Coachella & Stagecoach Packing Guide: Necklaces, Rings, Body Chains, & More to Complete Your Outfit
- Jockey Dean Holland dies after falling off horse during race in Australia
- Next Bachelorette Revealed: Find Out the Leading Lady From Zach Shallcross' Bachelor Season
- Intel's stock did something it hasn't done since 2022
- These $20-And-Under Amazon Sleep Masks Have Thousands Of 5-Star Reviews
- 2 Sudan generals are at war with each other. Here's what to know.
- Mexico seizes 10 tigers, 5 lions in cartel-dominated area
- NHL in ASL returns, delivering American Sign Language analysis for Deaf community at Winter Classic
- Sephora 24-Hour Flash Sale: Take 50% Off Korres, Nudestix, Belif, and More
Ranking
- Senate begins final push to expand Social Security benefits for millions of people
- Cheryl Burke Reveals Her Thoughts on Dating Again After Matthew Lawrence Split
- Kelly Clarkson Shares Her Kids’ Heartbreaking Reaction to Brandon Blackstock Divorce
- Harrowing image of pregnant Ukraine woman mortally wounded in Russian strike wins World Press Photo of the Year award
- Small twin
- The Secrets of Stephen Curry and Wife Ayesha Curry's Enviable Love Story
- Facebook, YouTube and Twitter remove disinformation targeting Ukraine
- Irma Olguin: Why we should bring tech economies to underdog cities
Recommendation
See you latte: Starbucks plans to cut 30% of its menu
Ashley Graham Addresses Awkward Interview With Hugh Grant at Oscars 2023
Kevin Roose: How can we stay relevant in an increasingly automated workforce?
RHONJ's Melissa Gorga Accuses Luis Ruelas of Manipulating Teresa Giudice
Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
5G cleared for takeoff near more airports, but some regional jets might be grounded
Watch these robotic fish swim to the beat of human heart cells
Sister of slain security officer sues Facebook over killing tied to Boogaloo movement