Current:Home > ContactRoku says 576,000 streaming accounts compromised in recent security breach -FinTechWorld
Roku says 576,000 streaming accounts compromised in recent security breach
View
Date:2025-04-13 04:30:02
Just weeks after a security hack exposed more than 15,000 Roku accounts, the company said Friday that a second security breach impacted more than 576,000 accounts.
In a statement on its website, the company said it found no evidence that it was the source of the account credentials used in either of the attacks or that Roku's systems were compromised. Instead, the company said, login credentials used in the hacks were likely stolen from another source for which the affected users may have used the same username and password. This type of cyberattack is known as "credential stuffing."
Roku said in fewer than 400 cases, the "malicious actors logged in and made unauthorized purchases of streaming service subscriptions and Roku hardware producing using the payment store in these accounts, but they did not gain access to any sensitive information, including full credit card numbers or other full payment information."
The company said it reset the passwords for all affected accounts and notified those customers directly about the incident. It is refunding or reversing charges in the accounts that purchases made by unauthorized actors.
In addition, the company also enabled two-factor authentication for all Roku accounts, even those that have not been impacted by either security incident They said account holders should be aware that the next time they log into the Roku account online, a verification link will be sent to the associated email.
"While the overall number of affected accounts represents a small fraction of Roku's more than 80 (million) active accounts, we are implementing a number of controls and countermeasures to detect and deter future credential stuffing incidents," the company said.
Roku encouraged users to create a "strong, unique password" for their account and also advised them to "remain vigilant," being alert to any "suspicious communications appearing to come from Roku, such as requests to update your payment details, share your username or password, or click on suspicious links."
"We sincerely regret that these incidents occurred and any disruption they may have caused," the company said. "Your account security is a top priority, and we are committed to protecting your Roku account."
This is the second Roku breach in recent months. In March, Roku said hackers accessed more than 15,000 user accounts.
- In:
- Technology
- Cyberattack
Lucia Suarez Sang is an associate managing editor at cbsnews.com. Previously, Lucia was the director of digital content at FOX61 News in Connecticut and has previously written for outlets including FoxNews.com, Fox News Latino and the Rutland Herald.
TwitterveryGood! (81)
Related
- Kylie Jenner Shows Off Sweet Notes From Nieces Dream Kardashian & Chicago West
- Arizona GOP Rep. Eli Crane says he misspoke when he referred to colored people on House floor
- Super Bowl champion Patrick Mahomes opens up about being the villain in NFL games
- Stars of Oppenheimer walk out of premiere due to actors' strike
- Trump's 'stop
- Inside Clean Energy: Illinois Faces (Another) Nuclear Power Standoff
- California’s Climate Reputation Tarnished by Inaction and Oil Money
- Twitter will limit uses of SMS 2-factor authentication. What does this mean for users?
- Appeals court scraps Nasdaq boardroom diversity rules in latest DEI setback
- Labor Secretary Marty Walsh leaves Biden administration to lead NHL players' union
Ranking
- Off the Grid: Sally breaks down USA TODAY's daily crossword puzzle, Triathlon
- Donald Trump’s Parting Gift to the People of St. Croix: The Reopening of One of America’s Largest Oil Refineries
- California’s Relentless Droughts Strain Farming Towns
- After courtroom outburst, Florida music teacher sentenced to 6 years in prison for Jan. 6 felonies
- North Carolina trustees approve Bill Belichick’s deal ahead of introductory news conference
- Does Another Plastics Plant in Louisiana’s ‘Cancer Alley’ Make Sense? A New Report Says No
- During February’s Freeze in Texas, Refineries and Petrochemical Plants Released Almost 4 Million Pounds of Extra Pollutants
- Recession, retail, retaliation
Recommendation
2025 'Doomsday Clock': This is how close we are to self
Tesla recalls nearly 363,000 cars with 'Full Self-Driving' to fix flaws in behavior
Inside Clean Energy: Illinois Faces (Another) Nuclear Power Standoff
The Climate Solution Actually Adding Millions of Tons of CO2 Into the Atmosphere
Alex Murdaugh’s murder appeal cites biased clerk and prejudicial evidence
What Germany Can Teach the US About Quitting Coal
Super Bowl commercials, from Adam Driver(s) to M&M candies; the hits and the misses
Labor Secretary Marty Walsh leaves Biden administration to lead NHL players' union
Like
- Costco membership growth 'robust,' even amid fee increase: What to know about earnings release
- 24 Bikinis for Big Boobs That Are Actually Supportive and Stylish for Cup Sizes From D Through M
- The EPA Calls an Old Creosote Works in Pensacola an Uncontrolled Threat to Human Health. Why Is There No Money to Clean it Up?