Xfinity Data Breach

Closed Thread
Thread Tools
  #16  
Old 01-05-2024, 07:58 AM
JGibson JGibson is offline
Veteran member
Join Date: Oct 2022
Location: Paradise City
Posts: 771
Thanks: 1
Thanked 713 Times in 301 Posts
Default

Quote:
Originally Posted by Bill14564 View Post
It would be best to read the Xfinity announcement.

Part of it reads:
What Information Was Involved? On December 6, 2023, we concluded that the information included usernames and hashed passwords. For some customers, other information was also included, such as names, contact information, last four digits of social security numbers, dates of birth and/or secret questions and answers. However, our data analysis is continuing, and we will provide additional notices as appropriate.
Thanks, I have Xfinity but didn't get an email.
  #17  
Old 01-05-2024, 08:24 AM
ThirdOfFive ThirdOfFive is offline
Sage
Join Date: Jun 2021
Posts: 3,449
Thanks: 759
Thanked 5,479 Times in 1,854 Posts
Default

Quote:
Originally Posted by AZ SLIM View Post
I am flat out sick and tired of all these data breaches. Companies require us to use electronic systems but then don't provide adequate protection because they don't want to pay for the best. I wish there was some type of recourse for their failure to protect our info. I'M MAD AS HELL AND I'M NOT GOING TO TAKE IT ANYMORE! .......(there, I said it. I think I'll go have another cup of coffee and relax the rest of the day)
I imagine that is a fairly common reaction among people, given the plethora of stories about data breaches, online fraud, etc. etc. Probably especially so among we Boomers, who came of age and lived as young adults in a totally different reality.

I sometimes think my brother has it right. He lives alone in far Northern Minnesota. No computer. No cell phone. His phone is a land line still in Dad's name (Dad died in 2004). No credit cards. His only two concessions to modernity (semi-modernity) are a checking account and satellite TV.

As he is fond of saying "just because you're paranoid does NOT mean that they're not out to get you".
  #18  
Old 01-05-2024, 08:35 AM
bp243 bp243 is offline
Senior Member
Join Date: Mar 2020
Posts: 237
Thanks: 602
Thanked 125 Times in 65 Posts
Default

Quote:
Originally Posted by Altavia View Post
Potentially all of a users security info was compromised.

Unique passwords and a password manager are your friend.
For anyone with the password manager LastPass, they have been breached several times. Find another password manager. So far 1Password has never been breached.
  #19  
Old 01-05-2024, 08:45 AM
MrGolf MrGolf is offline
Senior Member
Join Date: Dec 2014
Posts: 407
Thanks: 3
Thanked 28 Times in 17 Posts
Default

Like many others I saw this on the news and changed password long before being notified by Xfinity. What I found funny (not) was their advise to purchase the likes of Experion etc. First time I have been part of a compromise where the company didn’t offer free monitoring for 12 months. Their mistake, they should cover. Heck, they will bake the cost into their next renewal anyway.
  #20  
Old 01-05-2024, 08:49 AM
JRcorvette JRcorvette is offline
Veteran member
Join Date: Oct 2022
Posts: 543
Thanks: 573
Thanked 432 Times in 213 Posts
Default

Quote:
Originally Posted by Bunny1 View Post
This am I received an email from Xfinity involving a data breach with instructions. Citrix a software provider had a security breach of users personal info in Oct 2023. My email was very lengthy and gave Xfinity numbers and web site to go to. Called the number to verify information. Yes, this was sent by Xfinity. We changed our password as instructed. Has anyone else received this email?
Googled this also and found many news reports on this breach.
On this data breach they got everything about you including your SS number. Comcast should be held liable for any costs incurred by people who have damages from identity theft!!!
  #21  
Old 01-05-2024, 09:27 AM
jrref jrref is offline
Gold member
Join Date: May 2021
Posts: 1,094
Thanks: 407
Thanked 675 Times in 353 Posts
Default

Quote:
Originally Posted by Bunny1 View Post
This am I received an email from Xfinity involving a data breach with instructions. Citrix a software provider had a security breach of users personal info in Oct 2023. My email was very lengthy and gave Xfinity numbers and web site to go to. Called the number to verify information. Yes, this was sent by Xfinity. We changed our password as instructed. Has anyone else received this email?
Googled this also and found many news reports on this breach.
Terrible. So not only paying a premium for their services but they are raising their prices even with a deal due to higher fees from their content providers but now have to worry about a data breach.

Glad I switched to Quantum Fiber a while back.
  #22  
Old 01-05-2024, 10:08 AM
islandtiempo islandtiempo is offline
Member
Join Date: Jan 2014
Posts: 47
Thanks: 103
Thanked 13 Times in 9 Posts
Default

Good News! As more services move to passkeys the breaches will have less impact, because the credentials are stored on your device not the server.

Unfortunately services like xfinity will probably be slow to adopt it. https://youtu.be/j1zUY7lOKq8

In the meantime a secure password manager like Bitwarden.com can ease your password frustrations.
  #23  
Old 01-05-2024, 11:16 AM
Bill14564 Bill14564 is online now
Sage
Join Date: Nov 2020
Location: Village of Hillsborough
Posts: 6,930
Thanks: 2,124
Thanked 7,344 Times in 2,868 Posts
Default

Quote:
Originally Posted by JRcorvette View Post
On this data breach they got everything about you including your SS number. Comcast should be held liable for any costs incurred by people who have damages from identity theft!!!
The letter said the last four of the SS number. Do you have any information that it was more than that?

My name, number, last four of SSN, and DoB are stored on many places, possibly including the open internet. I don't like seeing them all in one place and I don't like that systems that have them are breached but I don't get terribly excited about that either.

With the information that was taken they *might* be able to get into my Xfinity account. If I reused a password on another site then they *might* be able to get into that site if they tried. And, if I used a particularly weak password then they *might* be able to determine what it was. The things that they *might* be able to do are still a long way from actually stealing anything from me.

I've had checking accounts opened in my name even without data breaches. It will be very difficult for anyone to prove that a case of identity theft is attributable to this particular data breach. A credit freeze is a wise choice even without a breach. A monitoring service or getting the six free credit reports (two for each of the three credit bureaus) is good for peace of mind.
__________________
Why do people insist on making claims without looking them up first, do they really think no one will check? Proof by emphatic assertion rarely works.
Confirmation bias is real; I can find any number of articles that say so.


Victor, NY
Randallstown, MD
Yakima, WA
Stevensville, MD
Village of Hillsborough
  #24  
Old 01-05-2024, 11:53 AM
Stu from NYC Stu from NYC is offline
Sage
Join Date: Feb 2020
Posts: 15,103
Thanks: 1,252
Thanked 16,124 Times in 6,294 Posts
Default

Quote:
Originally Posted by MrGolf View Post
Like many others I saw this on the news and changed password long before being notified by Xfinity. What I found funny (not) was their advise to purchase the likes of Experion etc. First time I have been part of a compromise where the company didn’t offer free monitoring for 12 months. Their mistake, they should cover. Heck, they will bake the cost into their next renewal anyway.
They add up any cost they can think of plus a few just in case and add it to their yearly renewal. We get to pay for their incompetence
  #25  
Old 01-05-2024, 11:57 AM
NoMoSno NoMoSno is offline
Gold member
Join Date: Mar 2013
Posts: 1,328
Thanks: 188
Thanked 361 Times in 227 Posts
Default

Even Equifax can't keep your data safe.
"40 percent of the population of the United States — whose names, addresses, dates of birth, Social Security numbers, and drivers’ licenses numbers were exposed."
Equifax data breach FAQ: What happened, who was affected, what was the impact? | CSO Online
Equifax Data Breach Settlement | Federal Trade Commission
  #26  
Old 01-05-2024, 11:58 AM
NoMoSno NoMoSno is offline
Gold member
Join Date: Mar 2013
Posts: 1,328
Thanks: 188
Thanked 361 Times in 227 Posts
Default

...
  #27  
Old 01-05-2024, 11:58 AM
NoMoSno NoMoSno is offline
Gold member
Join Date: Mar 2013
Posts: 1,328
Thanks: 188
Thanked 361 Times in 227 Posts
Default

...
  #28  
Old 01-05-2024, 04:05 PM
kenlor kenlor is offline
Junior Member
Join Date: Oct 2013
Posts: 22
Thanks: 6
Thanked 2 Times in 2 Posts
Default

The only affiliation we have with Xfinity is that when we changed cable providers, we were able to keep the email addresses that we have had for many years. (they end in @comcast.net) I was able to change the password to the primary account but haven't been able to change the password on the two secondary accounts, so we are locked out. Any suggestions?
  #29  
Old 01-05-2024, 04:54 PM
Pres1939 Pres1939 is offline
Member
Join Date: May 2021
Posts: 51
Thanks: 157
Thanked 30 Times in 13 Posts
Default

Quote:
Originally Posted by tophcfa View Post
Yup, it definitely happened. Changed our password and got a phishing email looking for updated credit card information from an Xfinity imposter that went straight to junk. Be careful out there. Not to cross thread, but I can’t believe how many misguided folks are out there that support moving to a cashless society. The incredible amount of data theft going on is very dangerous stuff! I feel much more confident and safer defending my cash than I do with electronic data.
Agree!!
  #30  
Old 01-05-2024, 05:32 PM
biker1 biker1 is offline
Sage
Join Date: May 2014
Posts: 3,588
Thanks: 1
Thanked 1,201 Times in 685 Posts
Default

Yes. Bite the bullet and establish a new e-mail address(es), independent of your current or previous ISP, that you can keep for the rest of your life. I know it can be painful but you should just do it. There are plenty of no cost options (gmail, yahoo, etc) as well as creating (and paying for) your own domain so your e-mail will look something like "firstname@lastname.com".

Quote:
Originally Posted by kenlor View Post
The only affiliation we have with Xfinity is that when we changed cable providers, we were able to keep the email addresses that we have had for many years. (they end in @comcast.net) I was able to change the password to the primary account but haven't been able to change the password on the two secondary accounts, so we are locked out. Any suggestions?
Closed Thread

Tags
xfinity, breach, email, received, data


You are viewing a new design of the TOTV site. Click here to revert to the old version.

All times are GMT -5. The time now is 05:44 PM.