COMCAST CABLE COMMUNICATIONS, LLC
bd_3823dc42ff458d5a · schema v1 · pii pii-v1
Full breach record for COMCAST CABLE COMMUNICATIONS, LLC →5 incidents on fileComcast Cable Communications (Xfinity) disclosed unauthorized access to internal systems between October 16-19, 2023, resulting from a vulnerability in Citrix software. The attacker likely acquired usernames, hashed passwords, and for some customers, names, contact info, last four digits of SSN, DOB, and secret questions/answers. Systems were patched, law enforcement notified, and customers prompted to reset passwords and enable MFA.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 16, 2023
Begins
Oct 16, 2023
Discovered
Dec 18, 2023
Filed
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- California State AGbd_9483a5f6ebb2a4932023-12-18Verified
- Washington State AGbd_cf68c61c04a06b882023-12-18Candidate
- Maine State AGbd_d0e6f01e879a45062023-12-18Verified
- Oregon State AGbd_e1e3e7f42684ebc92023-12-18Verified
Show 3 more filings ↓Show fewer ↑up to 39d gap
- Indiana State AGbd_62f3f759d84e3a662024-01-26 · +39dVerified
- Massachusetts State AGbd_7804b41a61024f392024-01-26 · +39dVerified
- Maine State AGbd_7ffaf039f7f863fd2024-01-26 · +39dVerified by operator
Filing propagation · 8 filings · 7 states
View merged incident ↗Pattern: first filing Dec 18 (CA), last Jan 26 (ME) — a 39-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.