Current:Home > StocksXfinity hack affects nearly 36 million customers. Here's what to know. -FinanceMind
Xfinity hack affects nearly 36 million customers. Here's what to know.
Surpassing View
Date:2025-04-08 01:16:35
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (3)
Related
- Paige Bueckers vs. Hannah Hidalgo highlights women's basketball games to watch
- Vanderpump Rules Star Lala Kent Shares Pregnancy-Safe Skincare, Mom Hacks, Prime Day Deals & More
- Why are the Texas Rangers the only MLB team without a Pride Night?
- Ford recalls more than 550,000 F-150 pickups over faulty transmission
- Taylor Swift makes surprise visit to Kansas City children’s hospital
- Where tech, politics & giving meet: CEO Nicole Taylor considers Silicon Valley’s busy intersection
- Walmart's Fourth of July Sale Includes Up to 81% Off Home Essentials From Shark, Roku, Waterpik & More
- Toyota recalls 145,000 Toyota, Lexus SUVs due to an airbag problem: See affected models
- What to know about Tuesday’s US House primaries to replace Matt Gaetz and Mike Waltz
- Judge blocks Michigan’s abortion waiting period, 2 years after voters approved abortion rights
Ranking
- 'Malcolm in the Middle’ to return with new episodes featuring Frankie Muniz
- Burning off toxins wasn't needed after East Palestine train derailment, NTSB says
- 'Bridgerton' author Julia Quinn addresses 'disappointment' over gender-swapped character
- Closing arguments starting in class-action lawsuit against NFL by ‘Sunday Ticket’ subscribers
- San Francisco names street for Associated Press photographer who captured the iconic Iwo Jima photo
- Illinois man accused in mass shooting at Fourth of July parade expected to change not-guilty plea
- Judge blocks Michigan’s abortion waiting period, 2 years after voters approved abortion rights
- Ulta’s Summer Beauty Sale Is Here—Score Redken, Estée Lauder, Sun Bum & More Beauty Faves up to 45% Off
Recommendation
'Survivor' 47 finale, part one recap: 2 players were sent home. Who's left in the game?
World War II POW from Louisiana accounted for 82 years after Bataan Death March
Ulta’s Summer Beauty Sale Is Here—Score Redken, Estée Lauder, Sun Bum & More Beauty Faves up to 45% Off
Mom of Texas teen murdered in 2001 says killer's execution will be 'joyful occasion'
Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
New York judge lifts parts of Trump gag order, allowing him to comment on jury and witnesses
Bill to ensure access to contraception advances in Pennsylvania, aided by dozens of GOP House votes
Man who diverted national park river to ease boat access to Lake Michigan is put on probation