Current:Home > MyXfinity hack affects nearly 36 million customers. Here's what to know. -Stellar Wealth Sphere
Xfinity hack affects nearly 36 million customers. Here's what to know.
Surpassing View
Date:2025-04-10 01:28:42
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (6)
Related
- Federal appeals court upholds $14.25 million fine against Exxon for pollution in Texas
- Colorado Supreme Court rules Trump is disqualified from presidency for Jan. 6 riot
- Rite Aid covert surveillance program falsely ID'd customers as shoplifters, FTC says
- Three of the biggest porn sites must verify ages to protect kids under Europe’s new digital law
- Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
- A top French TV personality receives a preliminary charge of rape and abusing authority
- Woman who said her murdered family didn't deserve this in 2015 is now arrested in their killings
- Billy Crystal makes first trip back to Katz's Deli from 'When Harry Met Sally' scene
- Meet the volunteers risking their lives to deliver Christmas gifts to children in Haiti
- Barbie’s Greta Gerwig and Noah Baumbach Are Married
Ranking
- Questlove charts 50 years of SNL musical hits (and misses)
- Arizona house fire tragedy: 5 kids dead after dad left to shop for Christmas gifts, food
- Germany’s top prosecutor files motion for asset forfeiture of $789 million of frozen Russian money
- Some state abortion bans stir confusion, and it’s uncertain if lawmakers will clarify them
- Friday the 13th luck? 13 past Mega Millions jackpot wins in December. See top 10 lottery prizes
- Stock market today: World shares advance after Wall Street ticks higher amid rate-cut hopes
- Homicide victim found dead in 1979 near Las Vegas Strip ID’d as missing 19-year-old from Cincinnati
- Christian group and family raise outcry over detention of another ‘house church’ elder in China
Recommendation
Rams vs. 49ers highlights: LA wins rainy defensive struggle in key divisional game
Kylie Minogue on success and surviving cancer: I sing to process everything
Why Kristin Cavallari Says She Cut Her Narcissist Dad Out of Her Life
Top Hamas leader arrives in Cairo for talks on the war in Gaza in another sign of group’s resilience
Hackers hit Rhode Island benefits system in major cyberattack. Personal data could be released soon
A pro-peace Russian presidential hopeful submits documents to register as a candidate
Memo to Peyton Manning: The tush push is NOT banned in your son's youth football league
Poland’s new government moves to free state media from previous team’s political control