康卡斯特大规模数据泄露影响 3600 万客户
36 Million Customers Affected In Massive Comcast Data Breach

原始链接: https://www.zerohedge.com/markets/36-million-customers-affected-massive-comcast-data-breach

最近,康卡斯特 (Comcast) 报告称,由于 Citrix 的软件问题,发生了一起重大数据泄露事件,影响了近 3600 万客户。 这一消息是在 2023 年 10 月 16 日至 19 日进行的例行网络安全检查发现存在入侵嫌疑后发布的。包括用户名、哈希密码以及敏感联系方式和身份信息(例如社会安全号码)在内的个人详细信息可能已被暴露。 在确认 2023 年 12 月 6 日的攻击后,康卡斯特鼓励客户更改密码,尤其是当他们在其他地方共享类似的登录名和密码时。 据 PhillyBurbs.com 报道,超过 3580 万人的机密信息遭到侵犯。 有关各方应谨慎对待可能使用共享登录凭据的情况。 最终,任何使用以前使用过的、弱密码或容易猜测的密码的帐户都必须优先考虑立即修改它们。

相关文章

原文

Your holiday present from Comcast has arrived, in the form of a massive data breach that has compromised the personal information of nearly 36 million customers. Comcast released a statement on Monday this week stating that a "recent data security incident" occurred involving Citrix software.

"On October 10, 2023, Citrix announced a vulnerability in software used by Xfinity and thousands of other companies worldwide," Comcast wrote.

"Citrix issued additional mitigation guidance on October 23, 2023. Xfinity promptly patched and mitigated the Citrix vulnerability within its systems. However, during a routine cybersecurity exercise on October 25, Xfinity discovered suspicious activity and subsequently determined that between October 16 and October 19, 2023, there was unauthorized access to its internal systems that was concluded to be a result of this vulnerability."

"Xfinity notified federal law enforcement and initiated an investigation into the nature and scope of the incident. On November 16, Xfinity determined that information was likely acquired," the release said.

"After additional review of the affected systems and data, Xfinity concluded on December 6, 2023, that the customer information in scope included usernames and hashed passwords; for some customers, other information may also have been included, such as names, contact information, last four digits of social security numbers, dates of birth and/or secret questions and answers."

So, everything?

Conveniently not included in the release but disclosed in follow up reporting by PhillyBurbs.com was the fact that over 35.8 million customers were affected by the breach, according to a report with Maine's Attorney General. 

Comcast has said it is requiring all of its customers to reset their passwords and that it is encouraging its users to use 2FA in the future. 

"Xfinity advises customers not to re-use passwords across multiple accounts, the company is recommending that customers change passwords for other accounts for which they use the same username and password or security question," the release said.

Just in case you didn't have anything to do heading into the holidays...

联系我们 contact @ memedata.com