In Other News: European Parliament Breach, DocGo Hack, VMware Advisories Moved

May 10, 2024 at 08:45AM SecurityWeek’s cybersecurity roundup succinctly compiles important developments often overlooked and provides insight into the cybersecurity landscape. This week’s stories include Amnesty’s investigation into spyware in Indonesia, an Israeli private investigator’s arrest over a hack-for-hire scheme, a Citrix Netscaler vulnerability, VMware advisories’ relocation to the Broadcom Support Portal, and Apple’s patch … Read more

Console & Associates, P.C.: Comcast Xfinity Reports Data Breach Exposing Confidential Information of 35M Customers

December 19, 2023 at 07:19PM Approximately 35 million consumers are being informed of a data breach compromising their confidential information, caused by a Citrix software vulnerability used by Xfinity. Console & Associates, P.C. is investigating and informing affected individuals of their rights. Victims should take steps to protect themselves and consider legal representation for potential … Read more

Comcast Xfinity Breached via CitrixBleed; 35M Customers Affected

December 19, 2023 at 06:00PM 35 million customers of Comcast Xfinity have been affected by the CitrixBleed vulnerability, leading to a breach of customer data, including sensitive information. Although Comcast promptly patched and mitigated the vulnerability, attackers were still able to exfiltrate a large amount of data over a three-day period. The ongoing threat of … Read more

Xfinity discloses data breach affecting over 35 million people

December 19, 2023 at 05:51AM Xfinity, a division of Comcast Cable Communications, revealed a security breach where attackers exploited a Citrix server vulnerability, compromising sensitive data of 35,879,455 customers. This includes usernames, hashed passwords, and potentially other personal details. Despite password reset requests, customers were left uncertain. Comcast asserts prompt patching and monitoring for customer … Read more

CitrixBleed Vulnerability Exploitation Suspected in Toyota Ransomware Attack

November 17, 2023 at 06:33AM Toyota Financial Services Europe & Africa confirmed being targeted in a cyberattack by the ransomware group Medusa. Unauthorized activity was detected in a limited number of locations and systems were taken offline. The group is threatening to distribute stolen data unless an $8 million ransom is paid. The attack may … Read more