Current:Home > StocksXfinity hack affects nearly 36 million customers. Here's what to know. -WealthMindset Learning
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-15 12:00:18
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (9)
Related
- 'Survivor' 47 finale, part one recap: 2 players were sent home. Who's left in the game?
- Opponents gave input on ballot language for abortion-rights measure, Ohio elections chief says
- Dow jumps 520 points as investors cheer inflation slowdown
- Where to watch National Lampoon's 'Christmas Vacation': Streaming info, TV airtimes, cast
- Breaking debut in Olympics raises question: Are breakers artists or athletes?
- AP Exclusive: America’s Black attorneys general discuss race, politics and the justice system
- Israeli survivors of the Oct. 7 music festival attack seek to cope with trauma at a Cyprus retreat
- Flu is on the rise while RSV infections may be peaking, US health officials say
- 'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
- Putin orders the Russian military to add 170,000 troops for a total of 1.32 million
Ranking
- Hidden Home Gems From Kohl's That Will Give Your Space a Stylish Refresh for Less
- Israel intensifies its assault on southern Gaza, causing renewed concern about civilian deaths
- Jury orders egg suppliers to pay $17.7 million in damages for price gouging in 2000s
- New California mental health court sees more than 100 petitions in first two months
- Federal appeals court upholds $14.25 million fine against Exxon for pollution in Texas
- New York could see more legal pot shops after state settles cases that halted market
- Amazon’s 41 Best Holiday Gift Deals Include 70% Discounts on the Most Popular Presents of 2023
- Ford says new UAW contract will add $8.8B to labor costs
Recommendation
'Survivor' 47 finale, part one recap: 2 players were sent home. Who's left in the game?
Avoid cantaloupe unless you know its origins, CDC warns amid salmonella outbreak
A bit of Christmas magic: Here's how you can get a letter from Santa this year
Candle Day sale at Bath & Body Works is here: The $9.95 candle deal you don't want to miss
NCAA President Charlie Baker would be 'shocked' if women's tournament revenue units isn't passed
20 years ago, George W. Bush launched AIDS relief and saved lives. US needs to lead again.
LeBron James' business partner, Maverick Carter, bet on NBA games with illegal bookie, per report
2 Nevada State Troopers killed in hit-and-run while helping motorist on Las Vegas freeway, authorities say