Current:Home > InvestRoku says 576,000 streaming accounts compromised in recent security breach -EquityWise
Roku says 576,000 streaming accounts compromised in recent security breach
View
Date:2025-04-25 03:01:16
Just weeks after a security hack exposed more than 15,000 Roku accounts, the company said Friday that a second security breach impacted more than 576,000 accounts.
In a statement on its website, the company said it found no evidence that it was the source of the account credentials used in either of the attacks or that Roku's systems were compromised. Instead, the company said, login credentials used in the hacks were likely stolen from another source for which the affected users may have used the same username and password. This type of cyberattack is known as "credential stuffing."
Roku said in fewer than 400 cases, the "malicious actors logged in and made unauthorized purchases of streaming service subscriptions and Roku hardware producing using the payment store in these accounts, but they did not gain access to any sensitive information, including full credit card numbers or other full payment information."
The company said it reset the passwords for all affected accounts and notified those customers directly about the incident. It is refunding or reversing charges in the accounts that purchases made by unauthorized actors.
In addition, the company also enabled two-factor authentication for all Roku accounts, even those that have not been impacted by either security incident They said account holders should be aware that the next time they log into the Roku account online, a verification link will be sent to the associated email.
"While the overall number of affected accounts represents a small fraction of Roku's more than 80 (million) active accounts, we are implementing a number of controls and countermeasures to detect and deter future credential stuffing incidents," the company said.
Roku encouraged users to create a "strong, unique password" for their account and also advised them to "remain vigilant," being alert to any "suspicious communications appearing to come from Roku, such as requests to update your payment details, share your username or password, or click on suspicious links."
"We sincerely regret that these incidents occurred and any disruption they may have caused," the company said. "Your account security is a top priority, and we are committed to protecting your Roku account."
This is the second Roku breach in recent months. In March, Roku said hackers accessed more than 15,000 user accounts.
- In:
- Technology
- Cyberattack
Lucia Suarez Sang is an associate managing editor at cbsnews.com. Previously, Lucia was the director of digital content at FOX61 News in Connecticut and has previously written for outlets including FoxNews.com, Fox News Latino and the Rutland Herald.
TwitterveryGood! (78512)
Related
- Illinois Gov. Pritzker calls for sheriff to resign after Sonya Massey shooting
- Arizona and Missouri will join 5 other states with abortion on the ballot. Who are the others?
- Social media influencers descend on the White House, where Biden calls them the new ‘source of news’
- In Nebraska special session on taxes, some ideas to raise millions in revenue get little attention
- Off the Grid: Sally breaks down USA TODAY's daily crossword puzzle, Hi Hi!
- Watch this girl's tearful reaction to a delightful double surprise
- Before lobster, Maine had a thriving sardine industry. A sunken ship reminds us of its storied past
- Arkansas police officer fired after video shows him beating handcuffed man in patrol car
- How breaking emerged from battles in the burning Bronx to the Paris Olympics stage
- Utility will pay $20 million to avoid prosecution in Ohio bribery scheme
Ranking
- Big Lots store closures could exceed 300 nationwide, discount chain reveals in filing
- Lala Kent’s Affordable Spa Day Finds: Pamper Yourself With Pregnancy-Approved Picks for At-Home Luxury
- Inflation likely stayed low last month as Federal Reserve edges closer to cutting rates
- What we know about suspected Iranian cyber intrusion in the US presidential race
- FACT FOCUS: Inspector general’s Jan. 6 report misrepresented as proof of FBI setup
- Influencer Christine Tran Ferguson Shares She's Pregnant One Year After Son Asher's Death
- Alabama district judge suspended and accused of letting child abuse cases ‘languish,’ complaint says
- Idaho farmer goes viral after trading in his F-250 for a Cybertruck: 'It’s really fast'
Recommendation
Skins Game to make return to Thanksgiving week with a modern look
Kylie Jenner Details Postpartum Depression Journey After Welcoming Her 2 Kids
Yankees await MRI as Jazz Chisholm deals with possible season-ending UCL injury
Demi Lovato Reflects on Emotional and Physical Impact of Traumatic Child Stardom
'No Good Deed': Who's the killer in the Netflix comedy? And will there be a Season 2?
Houston’s former mayor is the Democrats’ nominee to succeed the late US Rep. Sheila Jackson Lee
Mayor of Columbus, Ohio, says ransomware attackers stole corrupted, unusable data
Paige DeSorbo Reveals if Craig Conover, Kyle Cooke Feud Has Affected Her Summer House Friendships