Current:Home > InvestXfinity hack affects nearly 36 million customers. Here's what to know. -Wealth Harmony Labs
Xfinity hack affects nearly 36 million customers. Here's what to know.
View
Date:2025-04-16 19:57:32
A security breach at Comcast-owned Xfinity has exposed the personal data of nearly all the internet provider's customers, including account usernames, passwords and answers to their security questions.
Comcast said in a filing with Maine's attorney general's office that the hack affected 35.8 million people, with the media and technology giant notifying customers of the attack through its website and by email, the company said Monday. The intrusion stems from a vulnerability in software from cloud computing company Citrix, according to Comcast.
Although Citrix patched the vulnerability in October, Xfinity learned that unauthorized users gained access to its internal systems between Oct. 16 and Oct. 19, revealing customer data. For some people, that included their names, contact information, account usernames and passwords, birthdates, parts of their Social Security numbers and answers to their security questions.
In addition to Xfinity, Citrix provides software to thousands of companies around the world. The previously-announced vulnerability, dubbed "Citrix Bleed," has also been linked to hacks targeting the Industrial and Commercial Bank of China's New York arm and a Boeing subsidiary, among others.
Under new federal rules that took effect Monday, the Securities Exchange Commission requires public companies to disclose all cybersecurity breaches that could affect their financial results within four days of determining a breach is material.
What should I do if I'm an Xfinity customer?
All Xfinity customers — even those whose accounts might not have been breached — must reset their usernames and passwords, according to Comcast. Xfinity is also encouraging subscribers to use two-factor authentication to secure their accounts.
"While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," Comcast noted.
Comcast has more than 32 million broadband customers, according to its most recent earnings report, suggesting that the breach likely affected all Xfinity customers.
Customers with questions can contact Xfinity toll-free at (888) 799-2560 24 hours a day Monday through Friday from 9 a.m. to 9 p.m. Eastern time. More information is available on Xfinity's website at xfinity.com/dataincident.
—The Associated Press contributed to this report.
- In:
- Technology
- Consumer News
- Security Hacker
- Xfinity
- Data Breach
- Comcast
- Computers
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News streaming to discuss her reporting.
veryGood! (88366)
Related
- Could Bill Belichick, Robert Kraft reunite? Maybe in Pro Football Hall of Fame's 2026 class
- Number of dead from Maui wildfires reaches 99, as governor warns there could be scores more
- Stock market today: Wall Street falls with markets worldwide after weak economic data from China
- Clarence Avant, record executive known as the Godfather of Black Music, dies at age 92
- Meet the volunteers risking their lives to deliver Christmas gifts to children in Haiti
- Denver police officer fatally shoots man holding a marker she thought was a knife, investigators say
- The problem with treating Bama Rush TikTokers like famous reality stars
- The hip-hop verse that changed my life
- Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
- Thinking of consignment selling? Here's how to maximize your time and money.
Ranking
- Finally, good retirement news! Southwest pilots' plan is a bright spot, experts say
- What happens when thousands of hackers try to break AI chatbots
- 2 Missouri moms charged with misdemeanors for children’s absences lose their court battle
- Pet daycare flooding kills several dogs in Washington DC; Firefighter calls staff heroes
- Nearly 400 USAID contract employees laid off in wake of Trump's 'stop work' order
- 7-year-old South Carolina girl hit by stray shotgun pellet; father and son charged
- Anna Hall gets 'chills' thinking about following in Jackie Joyner-Kersee's footsteps
- Billie Eilish remains friends with ex Jesse Rutherford of The Neighbourhood: 'My homie forever'
Recommendation
Working Well: When holidays present rude customers, taking breaks and the high road preserve peace
The problem with treating Bama Rush TikTokers like famous reality stars
CBS News poll analysis looks at how Americans rate the economy through a partisan lens
'Reinventing Elvis' reveals why Presley nearly canceled his '68 Comeback Special live set
House passes bill to add 66 new federal judgeships, but prospects murky after Biden veto threat
Texas woman sentenced to 30 years in prison for role in killing of U.S. soldier Vanessa Guillén
Lionel Richie 'bummed' about postponed New York concert, fans react
During Some of the Hottest Months in History, Millions of App Delivery Drivers Are Feeling the Strain