Current:Home > InvestXfinity hack affects nearly 36 million customers. Here's what to know. -Capitatum
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-15 10:02:45
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (98734)
Related
- Boy who wandered away from his 5th birthday party found dead in canal, police say
- Suit challenges required minority appointments to Louisiana medical licensing board
- Ex-Ohio lawmaker is sentenced to probation for domestic violence
- Alabama man accused of stripping, jumping naked into Bass Pro Shop aquarium: Reports
- FBI: California woman brought sword, whip and other weapons into Capitol during Jan. 6 riot
- Former energy minister quits Britain’s Conservatives over approval of new oil drilling
- US fugitive accused of faking his death to avoid rape charge in Utah is extradited from Scotland
- Top 1-and-done NBA prospects have made a big impact in the AP Top 25 college basketball poll
- John Galliano out at Maison Margiela, capping year of fashion designer musical chairs
- J.Crew Outerwear, Sweaters & Boots Are an Extra 70% off & It's the Sale I've Been Dreaming About
Ranking
- Head of the Federal Aviation Administration to resign, allowing Trump to pick his successor
- Trump should be barred from New York real estate industry, fined $370 million, New York Attorney General Letitia James says
- This week on Sunday Morning (January 7)
- Golden Bachelor's Theresa Nist Shakes Off Wardrobe Malfunction During Wedding to Gerry Turner
- Bet365 ordered to refund $519K to customers who it paid less than they were entitled on sports bets
- Baltimore celebrates historic 20% drop in homicides even as gun violence remains high
- Russia approves 2 candidates for ballot against Putin in March election
- Will there really be more Bills fans than Dolphins fans in Miami on Sunday Night Football?
Recommendation
Most popular books of the week: See what topped USA TODAY's bestselling books list
Oscar Pistorius Released From Prison on Parole 11 Years After Killing Girlfriend Reeva Steenkamp
Massachusetts voters become latest to try and keep Trump off ballot over Jan. 6 attack
Alaska's snow crab season canceled for second year in a row as population fails to rebound
A South Texas lawmaker’s 15
In Texas case, federal appeals panel says emergency care abortions not required by 1986 law
Danielle Brooks on 'emotional' reunion with classmate Corey Hawkins in 'The Color Purple'
Cher is denied an immediate conservatorship over son’s money, but the issue isn’t done