Xfinity Data Security Incident

Xfinity, a widely-used internet and cable service provider, has reported a data security incident that may have compromised the personal information of its users. 

The compromised data included usernames and hashed passwords. Hashing passwords is a way of encrypting the password data so that it can’t be understood without a key code. Most encryption methods can be broken if there is enough time/resources and encrypted data for the hackers to work on. The sophistication of the hash used will also impact how long it will take hackers to break the encryption.

For some users, additional information such as names, contact details, last four digits of social security numbers, dates of birth, and secret questions and answers might have been exposed. Ongoing data analysis may reveal more details, and affected users have been advised to reset their passwords.

Incident Timeline

  • October 10th, 2023: Vulnerability Announcement
    Citrix, a software provider for Xfinity, announces a vulnerability in its product used by Xfinity and other global companies.
  • October 16th-19th, 2023: Unauthorized Access
    Despite mitigation efforts, unauthorized access to Xfinity’s internal systems occurred during this period.
  • October 23rd, 2023: Patch Release
    Citrix releases a patch to fix the identified vulnerability and issues additional mitigation guidance.
  • November 16th, 2023: Determination of Data Breach
    Xfinity discovered that the unauthorized access between October 16th and October 19th  likely resulted in the acquisition of information. Federal law enforcement was notified, and an investigation was initiated.
  • December 6th, 2023: Identification of Compromised Information
    Xfinity concluded that the compromised data included usernames and hashed passwords. Additional information for some users may include names, contact details, last four digits of social security numbers, dates of birth, and secret questions and answers.
  • December 30th, 2023: Press Release
    Xfinity notified the media of the incident via an email press release.

 

What Xfinity Is Doing?
Xfinity has taken proactive measures to protect user accounts, urging users to reset their passwords. Additionally, the company recommends enrollment in two-factor or multi-factor authentication for enhanced security. 

What You Can Do?
Users are strongly encouraged to enroll in additional security measures such as two-factor authentication. Xfinity advises against password reuse and recommends changing information on other accounts if similar credentials were used. Further information on safeguarding personal information is available on the Xfinity website.

Xfinity advises customers to remain vigilant against fraud and identity theft by reviewing account statements and monitoring credit reports. Free credit reports can be obtained annually, and users are encouraged to place fraud alerts or security freezes on their credit files. The Federal Trade Commission and law enforcement should be informed of any suspected identity theft.

More Information & Support
For additional queries, affected users can contact IDX, Xfinity’s incident response provider, at 888-799-2560, which is available 24/7. Further details and updates are accessible on the Xfinity website at Xfinity.com/dataincident.

Available in the Deer Park area, TRECpro provides cyber security services, including password manager apps, remote support, and consulting. You can contact them at [email protected] or call 509-818-1112. TRECpro recently offered an article about password managers available at: DPGazette.com/nvp1o

The Xfinity data security incident serves as a reminder of the evolving threats in the digital landscape. The community must stay informed and take proactive measures to protect personal information in the wake of such incidents. As technology advances, the collective responsibility to ensure cybersecurity becomes increasingly crucial.

Featured Sponsor
Thank You For Your Support!

Related Articles

Celebrate Your Community At The Annual Art Show

The SCLD Community Art Show is back, inviting artists of all ages to showcase their creativity and love for their community. Free miniature canvases will be available at Spokane County Libraries throughout February. This year’s theme, Celebrate Your Community, encourages participants to highlight what makes their hometown special.

Read More »

GreenHouse Food & Clothing Bank Change Of Hours

The GreenHouse Food and Clothing is once again adjusting its hours, this time reducing service availability and shifting to an earlier schedule. However, food bank representatives encourage those with scheduling conflicts to reach out for potential accommodations.

Read More »

Slideshow: WinterFest 2025

Deer Park’s WinterFest 2025 brought the community together with fun traditions like outhouse races, a bustling craft fair, and live music. Check out our online gallery.

Read More »

Miss Deer Park 2025: Scholarships & Opportunities Await

Sophomore and junior high school girls are invited to join the 2025 Miss Deer Park Scholarship Program. This annual event, which has awarded over $48,000 in scholarships over the past three years, offers opportunities to represent the community, build confidence, and help fund college.

Read More »

WinterFest Honored Citizens 2025: The Watsons

Doug and Karen Watson, known for their decades of dedication to the Deer Park community through volunteerism and leadership, have been named the 2025 WinterFest Honored Citizens. This recognition acknowledges their significant contributions to preserving and enriching local traditions.

Read More »

WinterFest 2025: A Little Over A Week Away

Deer Park’s WinterFest 2025 is fast approaching, with just over a week to go! The reveal of the official logo and the announcement of this year’s honored citizens have set the tone for an exciting event. Don’t forget that sign-ups are now open!

Read More »

Share this!

Featured Sponsor
Thank You For Your Support!

Share this!

Featured Sponsor
Thank You For Your Support!

Read more news.

What Is the Most Secure Way to Share Passwords?

Passwords cause over 80% of data breaches. Hackers get in using stolen, weak, or reused (and easily breached) passwords.
But passwords are a part of life. Technologies like biometrics or passkeys haven’t yet replaced them. We use them for websites, apps, and more. So, companies need a secure way to share passwords with employees. As well as help them manage those passwords more effectively.

Read More »

Subscribe to our emails

Use the form below to sign up to receive news via email at no cost to you.

Read & Support The

Local news to keep you informed and entertained. The Deer Park Gazette is locally owned and operated. When you support the Deer Park Gazette, you support local writers and photographers.