Current:Home > MyRoku says 576,000 streaming accounts compromised in recent security breach -MarketLink
Roku says 576,000 streaming accounts compromised in recent security breach
View
Date:2025-04-15 00:32:01
Just weeks after a security hack exposed more than 15,000 Roku accounts, the company said Friday that a second security breach impacted more than 576,000 accounts.
In a statement on its website, the company said it found no evidence that it was the source of the account credentials used in either of the attacks or that Roku's systems were compromised. Instead, the company said, login credentials used in the hacks were likely stolen from another source for which the affected users may have used the same username and password. This type of cyberattack is known as "credential stuffing."
Roku said in fewer than 400 cases, the "malicious actors logged in and made unauthorized purchases of streaming service subscriptions and Roku hardware producing using the payment store in these accounts, but they did not gain access to any sensitive information, including full credit card numbers or other full payment information."
The company said it reset the passwords for all affected accounts and notified those customers directly about the incident. It is refunding or reversing charges in the accounts that purchases made by unauthorized actors.
In addition, the company also enabled two-factor authentication for all Roku accounts, even those that have not been impacted by either security incident They said account holders should be aware that the next time they log into the Roku account online, a verification link will be sent to the associated email.
"While the overall number of affected accounts represents a small fraction of Roku's more than 80 (million) active accounts, we are implementing a number of controls and countermeasures to detect and deter future credential stuffing incidents," the company said.
Roku encouraged users to create a "strong, unique password" for their account and also advised them to "remain vigilant," being alert to any "suspicious communications appearing to come from Roku, such as requests to update your payment details, share your username or password, or click on suspicious links."
"We sincerely regret that these incidents occurred and any disruption they may have caused," the company said. "Your account security is a top priority, and we are committed to protecting your Roku account."
This is the second Roku breach in recent months. In March, Roku said hackers accessed more than 15,000 user accounts.
- In:
- Technology
- Cyberattack
Lucia Suarez Sang is an associate managing editor at cbsnews.com. Previously, Lucia was the director of digital content at FOX61 News in Connecticut and has previously written for outlets including FoxNews.com, Fox News Latino and the Rutland Herald.
TwitterveryGood! (4268)
Related
- Toyota to invest $922 million to build a new paint facility at its Kentucky complex
- NASA's Mars mission means crews are needed to simulate life on the Red Planet: How to apply
- Lefty Driesell, folksy, fiery coach who put Maryland on college basketball’s map, dies at 92
- Science experiment gone wrong sends 18 students, teacher to Tennessee hospital
- Warm inflation data keep S&P 500, Dow, Nasdaq under wraps before Fed meeting next week
- Taylor Swift donates $100,000 to family of woman killed in Kansas City Chiefs Super Bowl parade shooting
- Stephen Curry tops Sabrina Ionescu in 3-point shootout at All-Star weekend
- Leaking underground propane tank found at Virginia home before deadly house explosion
- Tom Holland's New Venture Revealed
- TikToker Teresa Smith Dead at 48 After Cancer Battle
Ranking
- North Carolina justices rule for restaurants in COVID
- Albuquerque Police Department opens internal investigation into embattled DWI unit
- George Kliavkoff out as Pac-12 commissioner as the full conference enters final months
- Maren Morris Is Already Marveling at Beyoncé’s Shift Back to Country Music
- Bill Belichick's salary at North Carolina: School releases football coach's contract details
- The Real Reason Why Justin Bieber Turned Down Usher’s 2024 Super Bowl Halftime Show Invite
- Alaska woman gets 99 years in best friend's catfished murder-for-hire plot
- Albuquerque Police Department opens internal investigation into embattled DWI unit
Recommendation
House passes bill to add 66 new federal judgeships, but prospects murky after Biden veto threat
GOP candidates elevate anti-transgender messaging as a rallying call to Christian conservatives
Here’s a look inside Donald Trump’s $355 million civil fraud verdict as an appeals fight looms
Alabama Barker Responds to Claim She Allegedly Had A Lot of Cosmetic Surgery
Where will Elmo go? HBO moves away from 'Sesame Street'
Miami's Bam Adebayo will start All-Star Game, replacing injured Philadelphia center Joel Embiid
Former CBS executive Les Moonves to pay Los Angeles ethics fine for interference in police probe
New York man claimed he owned the New Yorker Hotel, demanded rent from tenants: Court