Current:Home > FinanceXfinity hack affects nearly 36 million customers. Here's what to know. -WealthFlow Academy
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-14 04:49:12
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (6)
Related
- The FTC says 'gamified' online job scams by WhatsApp and text on the rise. What to know.
- Traveling to Las Vegas? Here Are the Best Black Friday Hotel Deals
- Outgoing North Carolina governor grants 2 pardons, 6 commutations
- Smithfield agrees to pay $2 million to resolve child labor allegations at Minnesota meat plant
- Friday the 13th luck? 13 past Mega Millions jackpot wins in December. See top 10 lottery prizes
- Falling scaffolding plank narrowly misses pedestrians at Boston’s South Station
- Joan says 'Yes!' to 'Golden Bachelorette' finale fantasy beach proposal. Who did she pick?
- Businesses at struggling corner where George Floyd was killed sue Minneapolis
- Finally, good retirement news! Southwest pilots' plan is a bright spot, experts say
- After years of unrest, Commanders have reinvented their culture and shattered expectations
Ranking
- Have Dry, Sensitive Skin? You Need To Add These Gentle Skincare Products to Your Routine
- Man who stole and laundered roughly $1B in bitcoin is sentenced to 5 years in prison
- Fighting conspiracy theories with comedy? That’s what the Onion hopes after its purchase of Infowars
- 4 arrested in California car insurance scam: 'Clearly a human in a bear suit'
- NHL in ASL returns, delivering American Sign Language analysis for Deaf community at Winter Classic
- Lost luggage? This new Apple feature will let you tell the airline exactly where it is.
- Bohannan requests a recount in Iowa’s close congressional race as GOP wins control of House
- Channing Tatum Drops Shirtless Selfie After Zoë Kravitz Breakup
Recommendation
How to watch new prequel series 'Dexter: Original Sin': Premiere date, cast, streaming
Opinion: NFL began season with no Black offensive coordinators, first time since the 1980s
Advance Auto Parts is closing hundreds of stores in an effort to turn its business around
Justice Department says jail conditions in Georgia’s Fulton County violate detainee rights
Taylor Swift Eras Archive site launches on singer's 35th birthday. What is it?
US wholesale inflation picks up slightly in sign that some price pressures remain elevated
Nelly will not face charges after St. Louis casino arrest for drug possession
Kentucky governor says investigators will determine what caused deadly Louisville factory explosion