-

Notice To Customers of Data Security Incident

PHILADELPHIA--(BUSINESS WIRE)--Xfinity is providing notice of a recent data security incident. Starting today, customers are being notified through a variety of channels, including through the Xfinity website, email, and news media.

On October 10, 2023, Citrix announced a vulnerability in software used by Xfinity and thousands of other companies worldwide. Citrix issued additional mitigation guidance on October 23, 2023. Xfinity promptly patched and mitigated the Citrix vulnerability within its systems. However, during a routine cybersecurity exercise on October 25, Xfinity discovered suspicious activity and subsequently determined that between October 16 and October 19, 2023, there was unauthorized access to its internal systems that was concluded to be a result of this vulnerability.

Xfinity notified federal law enforcement and initiated an investigation into the nature and scope of the incident. On November 16, Xfinity determined that information was likely acquired. After additional review of the affected systems and data, Xfinity concluded on December 6, 2023, that the customer information in scope included usernames and hashed passwords; for some customers, other information may also have been included, such as names, contact information, last four digits of social security numbers, dates of birth and/or secret questions and answers. However, the data analysis is continuing.

Xfinity has required customers to reset their passwords to protect affected accounts. In addition, Xfinity strongly recommends that customers enable two-factor or multi-factor authentication to secure their Xfinity account, as many Xfinity customers already do. While Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question.

Customers with questions can contact Xfinity’s dedicated call center at 888-799-2560 toll-free 24 hours a day, seven days a week. More information is available on the Xfinity website at www.xfinity.com/dataincident.

Customers trust Xfinity to protect their information, and the company takes this responsibility seriously. Xfinity remains committed to continued investment in technology, protocols and experts dedicated to helping to protect its customers.

Contacts

For media inquiries, please contact:

Joel Shadle
Joel_shadle@comcast.com
703-906-2645

Comcast Corporation


Release Versions

Contacts

For media inquiries, please contact:

Joel Shadle
Joel_shadle@comcast.com
703-906-2645

More News From Comcast Corporation

Xfinity High-Speed Internet Coming to More Residents in Caroline County, Virginia

BOWLING GREEN, Va.--(BUSINESS WIRE)--Comcast is connecting more than 1,800 additional homes and businesses in Caroline County, Virginia to multi-gigabit, symmetrical Internet by expanding America’s smartest and most reliable converged WiFi network. The network expansion includes communities in Bowling Green and Ladysmith. As a new connectivity provider in these communities, Xfinity brings Internet, mobile, entertainment, and smart home services into one simple, seamless solution – giving custom...

High-Speed, Reliable Internet from Xfinity Now Available in Bloomsburg, Pennsylvania

BLOOMSBURG, Pa.--(BUSINESS WIRE)--The first residents in Bloomsburg, Pennsylvania are now connected to multi-gigabit, symmetrical Internet from Xfinity. This is a major milestone in Comcast’s expansion project that will connect more than 6,000 homes and businesses in Bloomsburg, Hemlock Township, and Scott Township to America’s smartest and most reliable converged network. As a new provider in town, Xfinity brings Internet, mobile, entertainment, and smart home services into one simple, seamles...

Xfinity Mobile Launches Mobile Plus and Mobile Select, Redefining Premium Wireless With Lifetime Device Protection Included

PHILADELPHIA--(BUSINESS WIRE)--Xfinity Mobile today launched Mobile Plus and Mobile Select, two new wireless plans designed to give customers premium features without the premium price, hidden fees or trade-offs. As part of Xfinity Mobile's most significant product expansion to date, for the first time, customers on the Mobile Plus plan can get Lifetime Device Protection, Device Upgrades anytime, and Global Travel Pass included in one simple plan. Mobile Plus is a first-of-its-kind premium plan...
Back to Newsroom