Current:Home > FinanceRoku says 576,000 streaming accounts compromised in recent security breach -AssetVision
Roku says 576,000 streaming accounts compromised in recent security breach
View
Date:2025-04-16 13:37:06
Just weeks after a security hack exposed more than 15,000 Roku accounts, the company said Friday that a second security breach impacted more than 576,000 accounts.
In a statement on its website, the company said it found no evidence that it was the source of the account credentials used in either of the attacks or that Roku's systems were compromised. Instead, the company said, login credentials used in the hacks were likely stolen from another source for which the affected users may have used the same username and password. This type of cyberattack is known as "credential stuffing."
Roku said in fewer than 400 cases, the "malicious actors logged in and made unauthorized purchases of streaming service subscriptions and Roku hardware producing using the payment store in these accounts, but they did not gain access to any sensitive information, including full credit card numbers or other full payment information."
The company said it reset the passwords for all affected accounts and notified those customers directly about the incident. It is refunding or reversing charges in the accounts that purchases made by unauthorized actors.
In addition, the company also enabled two-factor authentication for all Roku accounts, even those that have not been impacted by either security incident They said account holders should be aware that the next time they log into the Roku account online, a verification link will be sent to the associated email.
"While the overall number of affected accounts represents a small fraction of Roku's more than 80 (million) active accounts, we are implementing a number of controls and countermeasures to detect and deter future credential stuffing incidents," the company said.
Roku encouraged users to create a "strong, unique password" for their account and also advised them to "remain vigilant," being alert to any "suspicious communications appearing to come from Roku, such as requests to update your payment details, share your username or password, or click on suspicious links."
"We sincerely regret that these incidents occurred and any disruption they may have caused," the company said. "Your account security is a top priority, and we are committed to protecting your Roku account."
This is the second Roku breach in recent months. In March, Roku said hackers accessed more than 15,000 user accounts.
- In:
- Technology
- Cyberattack
Lucia Suarez Sang is an associate managing editor at cbsnews.com. Previously, Lucia was the director of digital content at FOX61 News in Connecticut and has previously written for outlets including FoxNews.com, Fox News Latino and the Rutland Herald.
TwitterveryGood! (27)
Related
- House passes bill to add 66 new federal judgeships, but prospects murky after Biden veto threat
- FTC sues to block the $69 billion Microsoft-Activision Blizzard merger
- K-Pop Star Chaeyoung of TWICE Apologizes for Wearing Swastika on T-Shirt
- It's the end of the boom times in tech, as layoffs keep mounting
- Selena Gomez engaged to Benny Blanco after 1 year together: 'Forever begins now'
- Two women who allege they were stalked and harassed using AirTags are suing Apple
- California drivers can now sport digital license plates on their cars
- Maryland is the latest state to ban TikTok in government agencies
- Pressure on a veteran and senator shows what’s next for those who oppose Trump
- Elon Musk's backers cheer him on, even if they aren't sure what he's doing to Twitter
Ranking
- Juan Soto to be introduced by Mets at Citi Field after striking record $765 million, 15
- AFP journalist Arman Soldin killed by rocket fire in Ukraine
- The fastest ever laundry-folding robot is here. And it's likely still slower than you
- The hidden market for your location data
- New data highlights 'achievement gap' for students in the US
- Election software CEO is charged with allegedly giving Chinese contractors data access
- Rob Dyrdek Applauds “Brave” Wife Bryiana Dyrdek for Sharing Her Autism Diagnosis
- Ed Sheeran Shares Name of Baby No. 2 With Wife Cherry Seaborn
Recommendation
The FTC says 'gamified' online job scams by WhatsApp and text on the rise. What to know.
How Lil Nas X Tapped In After Saweetie Called Him Her Celebrity Crush
Why conspiracy theories about Paul Pelosi's assault keep circulating
Detectives seeking clues in hunt for killers of 22 unidentified women: Don't let these girls be forgotten
John Galliano out at Maison Margiela, capping year of fashion designer musical chairs
A kangaroo boom could be looming in Australia. Some say the solution is to shoot them before they starve to death.
From Tesla to SpaceX, what Elon Musk touches turns to gold. Twitter may be different
Meet The Everyday Crypto Investors Caught Up In The FTX Implosion