Current:Home > MyRoku says 576,000 streaming accounts compromised in recent security breach -Edge Finance Strategies
Roku says 576,000 streaming accounts compromised in recent security breach
View
Date:2025-04-16 16:15:42
Just weeks after a security hack exposed more than 15,000 Roku accounts, the company said Friday that a second security breach impacted more than 576,000 accounts.
In a statement on its website, the company said it found no evidence that it was the source of the account credentials used in either of the attacks or that Roku's systems were compromised. Instead, the company said, login credentials used in the hacks were likely stolen from another source for which the affected users may have used the same username and password. This type of cyberattack is known as "credential stuffing."
Roku said in fewer than 400 cases, the "malicious actors logged in and made unauthorized purchases of streaming service subscriptions and Roku hardware producing using the payment store in these accounts, but they did not gain access to any sensitive information, including full credit card numbers or other full payment information."
The company said it reset the passwords for all affected accounts and notified those customers directly about the incident. It is refunding or reversing charges in the accounts that purchases made by unauthorized actors.
In addition, the company also enabled two-factor authentication for all Roku accounts, even those that have not been impacted by either security incident They said account holders should be aware that the next time they log into the Roku account online, a verification link will be sent to the associated email.
"While the overall number of affected accounts represents a small fraction of Roku's more than 80 (million) active accounts, we are implementing a number of controls and countermeasures to detect and deter future credential stuffing incidents," the company said.
Roku encouraged users to create a "strong, unique password" for their account and also advised them to "remain vigilant," being alert to any "suspicious communications appearing to come from Roku, such as requests to update your payment details, share your username or password, or click on suspicious links."
"We sincerely regret that these incidents occurred and any disruption they may have caused," the company said. "Your account security is a top priority, and we are committed to protecting your Roku account."
This is the second Roku breach in recent months. In March, Roku said hackers accessed more than 15,000 user accounts.
- In:
- Technology
- Cyberattack
Lucia Suarez Sang is an associate managing editor at cbsnews.com. Previously, Lucia was the director of digital content at FOX61 News in Connecticut and has previously written for outlets including FoxNews.com, Fox News Latino and the Rutland Herald.
TwitterveryGood! (75)
Related
- Skins Game to make return to Thanksgiving week with a modern look
- Appeals court halts order barring Biden administration communications with social media companies
- Indoor Pollutant Concentrations Are Significantly Lower in Homes Without a Gas Stove, Nonprofit Finds
- These 14 Prime Day Teeth Whitening Deals Will Make You Smile Nonstop
- Meta donates $1 million to Trump’s inauguration fund
- Supersonic Aviation Program Could Cause ‘Climate Debacle,’ Environmentalists Warn
- New Study Reveals Arctic Ice, Tracked Both Above and Below, Is Freezing Later
- One State Generates Much, Much More Renewable Energy Than Any Other—and It’s Not California
- Military service academies see drop in reported sexual assaults after alarming surge
- Louisiana Regulators Are Not Keeping Up With LNG Boom, Environmentalists Say
Ranking
- Opinion: Gianni Infantino, FIFA sell souls and 2034 World Cup for Saudi Arabia's billions
- The Best Portable Grill Deals from Amazon Prime Day 2023: Coleman, Cuisinart, and Ninja Starting at $20
- Pennsylvania Environmental Officials Took 9 Days to Inspect a Gas Plant Outside Pittsburgh That Caught Fire on Christmas Day
- 2023 ESPYS Winners: See the Complete List
- Nearly 400 USAID contract employees laid off in wake of Trump's 'stop work' order
- After Cutting Off Water to a Neighboring Community, Scottsdale Proposes a Solution
- Imagining a World Without Fossil Fuels
- Road Salts Wash Into Mississippi River, Damaging Ecosystems and Pipes
Recommendation
IRS recovers $4.7 billion in back taxes and braces for cuts with Trump and GOP in power
At CERAWeek, Big Oil Executives Call for ‘Energy Security’ and Longevity for Fossil Fuels
Fracking Wastewater Causes Lasting Harm to Key Freshwater Species
Jamie Foxx addresses hospitalization for the first time: I went to hell and back
Tarte Shape Tape Concealer Sells Once Every 4 Seconds: Get 50% Off Before It's Gone
Chipotle testing a robot, dubbed Autocado, that makes guacamole
Outdated EPA Standards Allow Oil Refineries to Pollute Waterways
Ray Liotta Receives Posthumous 2023 Emmy Nomination Over a Year After His Death