Current:Home > ScamsXfinity hack affects nearly 36 million customers. Here's what to know. -Legacy Profit Partners
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-16 13:44:26
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (3)
Related
- DeepSeek: Did a little known Chinese startup cause a 'Sputnik moment' for AI?
- Why Tom Holland Is Taking a Year-Long Break From Acting
- Stormi Webster Is All Grown Up as Kylie Jenner Celebrates Daughter’s Pre-Kindergarten Graduation
- Coal Giant Murray Energy Files for Bankruptcy Despite Trump’s Support
- Moving abroad can be expensive: These 5 countries will 'pay' you to move there
- Climate Activists Converge on Washington With a Gift and a Warning for Biden and World Leaders
- Courts Question Pipeline Builders’ Use of Eminent Domain to Take Land
- Police Treating Dakota Access Protesters ‘Like an Enemy on the Battlefield,’ Groups Say
- Small twin
- Former Exxon Scientists Tell Congress of Oil Giant’s Climate Research Before Exxon Turned to Denial
Ranking
- What were Tom Selleck's juicy final 'Blue Bloods' words in Reagan family
- Man recently released from Florida prison confesses to killing pregnant mother and her 6-year-old in 2002
- Tallulah Willis Shares Why Mom Demi Moore’s Relationship With Ashton Kutcher Was “Hard”
- Wendy Williams Receiving Treatment at Wellness Facility
- A Mississippi company is sentenced for mislabeling cheap seafood as premium local fish
- Mark Consuelos Reveals Warning Text He Received From Daughter Lola During Live With Kelly & Mark
- After Katrina, New Orleans’ Climate Conundrum: Fight or Flight?
- Two Years Ago, Florida Gov. Ron DeSantis Was Praised for Appointing Science and Resilience Officers. Now, Both Posts Are Vacant.
Recommendation
The Daily Money: Spending more on holiday travel?
New Climate Warnings in Old Permafrost: ‘It’s a Little Scary Because it’s Happening Under Our Feet.’
Dismissing Trump’s EPA Science Advisors, Regan Says the Agency Will Return to a ‘Fair and Transparent Process’
Supreme Court takes up case over gun ban for those under domestic violence restraining orders
Why Sean "Diddy" Combs Is Being Given a Laptop in Jail Amid Witness Intimidation Fears
Shop the Top-Rated Under $100 Air Purifiers That Are a Breath of Fresh Air
The Biggest Threat to Growing Marijuana in California Used to Be the Law. Now, it’s Climate Change
Why Jinger Duggar Vuolo Didn’t Participate in Shiny Happy People: Duggar Family Secrets