Current:Home > MyXfinity hack affects nearly 36 million customers. Here's what to know. -FundSphere
Xfinity hack affects nearly 36 million customers. Here's what to know.
Benjamin Ashford View
Date:2025-04-10 22:17:26
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (31696)
Related
- John Galliano out at Maison Margiela, capping year of fashion designer musical chairs
- Why did Bucks fire coach Adrian Griffin? They didn't believe he could lead team to title
- Tropical low off northeast Australia reaches cyclone strength
- Cease-fire efforts for Israel-Hamas war gain steam. But an agreement still appears elusive
- New Orleans mayor’s former bodyguard making first court appearance after July indictment
- Baseball Hall of Fame 2024 results: Adrián Beltré, Joe Mauer and Todd Helton voted in
- Biden vetoes GOP measure that aimed to block White House policy on foreign content in EV chargers
- Biden sending senior West Wing aides Mike Donilon, Jennifer O'Malley Dillon to oversee 2024 reelection campaign
- What do we know about the mysterious drones reported flying over New Jersey?
- Las Vegas-to-California high-speed electric rail project gets OK for $2.5B more in bonds
Ranking
- Off the Grid: Sally breaks down USA TODAY's daily crossword puzzle, Hi Hi!
- Argentina’s Milei faces general strike at outset of his presidency, testing his resolve
- China says it’s working to de-escalate tensions in the Red Sea that have upended global trade
- 'I just need you to trust me. Please.' Lions coach Dan Campbell's speeches are legendary.
- Big Lots store closures could exceed 300 nationwide, discount chain reveals in filing
- A Republican leader in the Colorado House says he’ll step down after a DUI arrest came to light
- Gangly adolescent giraffe Benito has a new home. Now comes the hard part — fitting in with the herd
- Algeria gears up for election year with aging president, opposition that is yet to offer challenger
Recommendation
New Zealand official reverses visa refusal for US conservative influencer Candace Owens
'No reason to be scared': Why some are turning to 'death doulas' as the end approaches
Is TurboTax actually free? The FTC says no. The company says yes. Here's what's what.
Lily Gladstone makes Oscars history as first Native American to be nominated for best actress
Beware of giant spiders: Thousands of tarantulas to emerge in 3 states for mating season
Biden vetoes GOP measure that aimed to block White House policy on foreign content in EV chargers
Liberal blogger granted press credentials in Iowa House days after filing lawsuit
Here’s what to know about Sweden’s bumpy road toward NATO membership