Current:Home > NewsXfinity hack affects nearly 36 million customers. Here's what to know. -Wealth Navigators Hub
Xfinity hack affects nearly 36 million customers. Here's what to know.
Johnathan Walker View
Date:2025-04-08 16:55:38
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (6)
Related
- See you latte: Starbucks plans to cut 30% of its menu
- Man charged with involuntary manslaughter, endangerment in 3-year-old boy’s shooting death
- Mega Millions winning numbers for April 5 drawing; jackpot climbs to $67 million
- GalaxyCoin: The shining star of the cryptocurrency world
- Jamie Foxx gets stitches after a glass is thrown at him during dinner in Beverly Hills
- These bisexual swingers shocked their Alabama town. Now they're on a mission to spread acceptance.
- Are all 99 cent stores closing? A look at the Family Dollar, 99 Cents Only Stores closures
- Victims of Montana asbestos pollution that killed hundreds take Warren Buffet’s railroad to court
- The 401(k) millionaires club keeps growing. We'll tell you how to join.
- These bisexual swingers shocked their Alabama town. Now they're on a mission to spread acceptance.
Ranking
- Could Bill Belichick, Robert Kraft reunite? Maybe in Pro Football Hall of Fame's 2026 class
- Miami-area shootout leaves security guard and suspect dead, police officer and 6 others injured
- South Carolina vs. Iowa: Expert picks, game time, what to watch for in women's title game
- South Carolina could finish season undefeated. What other teams have pulled off the feat?
- Intel's stock did something it hasn't done since 2022
- Gov. Youngkin signs a measure backed by abortion-rights groups but vetoes others
- First an earthquake, now an eclipse. Yankees to play ball on same day as another natural phenomenon
- ‘Godzilla x Kong’ maintains box-office dominion in second weekend
Recommendation
A White House order claims to end 'censorship.' What does that mean?
SWAT team responding to Arkansas shopping mall, police ask public to avoid the area
A Nebraska bill to ban transgender students from the bathrooms and sports of their choice fails
8 men allegedly ran a beer heist ring that stole Corona and Modelo worth hundreds of thousands
'As foretold in the prophecy': Elon Musk and internet react as Tesla stock hits $420 all
A spill of firefighting foam has been detected in three West Virginia waterways
Things to know when the Arkansas Legislature convenes to take up a budget and other issues
11 injured as bus carrying University of South Carolina fraternity crashes in Mississippi