Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Xfinity users forced to change passwords after hackers strike 36M customers
UPI via MSN ^ | 12/20/23 | Doug Cunningham

Posted on 12/21/2023 8:30:56 PM PST by Libloather

Dec. 20 (UPI) -- Xfinity is notifying its customers that a hacker data breach got access to the personal information of 36 million customers, nearly all of Xfinity's customers.

The data included passwords, user names and security-question answers.

An Xfinity notice to customers this week said that the hack was due to a vulnerability in Citrix software that was patched. Subsequently, Xfinity discovered that hackers had nonetheless gained access to customers' personal data.

"After additional review of the affected systems and data, Xfinity concluded on December 6, 2023, that the customer information in scope included usernames and hashed passwords; for some customers, other information may also have been included, such as names, contact information, last four digits of social security numbers, dates of birth and/or secret questions and answers," the Xfinity notice said.

The company said that the data analysis is continuing. The hack was found during a routine cybersecurity exercise, according to Xfinity.

Cloud computing company Citrix had announced a vulnerability in its software Oct. 10 and issued mitigation guidance Oct. 23.

On Oct. 25, Xfinity said, it discovered "suspicious activity and subsequently determined that between October 16 and October 19, 2023, there was unauthorized access to its internal systems that was concluded to be a result of this vulnerability."

Xfinity required users to reset their passwords and strongly recommended its customers enable two-factor authorization to secure accounts.

(Excerpt) Read more at msn.com ...


TOPICS: Business/Economy; Computers/Internet; Conspiracy; History
KEYWORDS: comcast; hackers; passwords; xfinity
That can't be good.
1 posted on 12/21/2023 8:30:56 PM PST by Libloather
[ Post Reply | Private Reply | View Replies]

To: Libloather

We have an xfinity account, and heard this today. Unhappy.


2 posted on 12/21/2023 8:35:58 PM PST by FamiliarFace (I got my own way of livin' But everything gets done With a southern accent Where I come from. TPetty)
[ Post Reply | Private Reply | To 1 | View Replies]

Comcast — go figure


3 posted on 12/21/2023 8:41:07 PM PST by Gene Eric (Don't be a statist!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Libloather

This happened in October and they’re just now notifying people? A bit late.
I wonder if they’ll bother notifying me. My bill just came in the other day and the only thing they notified me about was the increase in my bill starting next month. *spit*


4 posted on 12/21/2023 8:41:32 PM PST by radu (God bless our military men and women, past and present)
[ Post Reply | Private Reply | To 1 | View Replies]

To: FamiliarFace

So do I have Xfinity, but have not heard from Xfinity about it...
As of this posting...
Guess I’d better get another password-sentence ready...


5 posted on 12/21/2023 8:45:38 PM PST by SuperLuminal (Where is the next Sam Adams when we so desperately need him)
[ Post Reply | Private Reply | To 2 | View Replies]

To: SuperLuminal
I have Xfinity, but have not heard from Xfinity about it...

I went online to Xfinity tonight to explore options after they notified me of a 25% rate increase. They made me change my password to get on my account. No notice from them about the data compromise in the bill, just a warning of the huge rate change. Once I got into my account they had a link to explanations of the data breach.

6 posted on 12/21/2023 8:59:22 PM PST by Tellurian (To the Dems, the middle class is a festering wound. They want it amputated.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: Libloather

all an attacker has to do is hack your phone, steal it, download your info from a hacker site. login and enable two-factor authorization against you the owner. trust me, you’ll never get your account back from say fb without undergoing even more risk to your identity, etc.

stupidest idea ever. but yet the clueless are all gung ho. let’s give fb etc. all our phone data too. at least with a password that can’t be changed without an original email, you’ve got a chance, to get your account back.


7 posted on 12/21/2023 9:34:47 PM PST by dadfly
[ Post Reply | Private Reply | To 1 | View Replies]

To: Libloather

My password is still good.


8 posted on 12/21/2023 11:16:51 PM PST by jonrick46 (Leftniks chase illusions of motherships at the end of the pier.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Tellurian

The wife and
I had to both change our passwords to get into our accounts. A pita, but it’s better than the alternative…


9 posted on 12/22/2023 5:33:01 AM PST by telescope115 (I NEED MY SPACE!!! 🔭)
[ Post Reply | Private Reply | To 6 | View Replies]

To: radu

Signed in to pay bill and said had to change my password. Thought it was odd but now I know why. I didn’t receive any notification of hacking.


10 posted on 12/22/2023 8:14:39 AM PST by Engedi
[ Post Reply | Private Reply | To 4 | View Replies]

To: FamiliarFace

Same


11 posted on 12/22/2023 8:25:56 AM PST by ducttape45 (Proverbs 14:34, "Righteousness exalteth a nation: but sin is a reproach to any people.")
[ Post Reply | Private Reply | To 2 | View Replies]

To: Libloather

Great, now I gotta change my password, again!


12 posted on 12/22/2023 8:53:28 AM PST by ducttape45 (Proverbs 14:34, "Righteousness exalteth a nation: but sin is a reproach to any people.")
[ Post Reply | Private Reply | To 1 | View Replies]

To: Engedi

I didn’t either and they pushed the two step sign in. It is a pain in the ass but I suppose it may be necessary.


13 posted on 12/22/2023 8:55:10 AM PST by dforest
[ Post Reply | Private Reply | To 10 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson