Roku hackers accessed over 500K accounts in second cyberattack of 2024

Streaming service provider Roku said Friday it identified a second cyberattack that impacted about 576,000 additional accounts while investigating a breach that affected 15,000 user accounts earlier this year.

The company, which had more than 80 million active accounts, said the hackers did not gain access to any sensitive information such as full credit card numbers or other payment details.

Roku’s shares were down more than 2%.


Roku logo
Roku said hackers did not gain access to any sensitive information such as full credit card numbers or other payment details. REUTERS

However, the company said it identified less than 400 cases where the information was used to make unauthorized purchases of streaming service subscriptions and hardware products using the payment method stored in the accounts.

The company said it would refund or reverse charges for accounts where it has determined unauthorized purchases have been made as part of the attack.

Roku pinned the unauthorized access to “credential stuffing,” where users may have used the same credentials across different platforms.

Meanwhile, the company has enabled a two-factor authentication for all the accounts to beef up security controls.

You May Also Like

China Is In Much Deeper Trouble Than Most Realize

In the tariff war between China and the United States, a…

WA opposition leader lashed for wanting to cash in on Aussie athletics success with Commonwealth Games bid following the collapse of the Melbourne Games

Western Australia’s Opposition Leader Basil Zempilas is under fire after renewing his…

Fury as FSU student callously films wounded classmate while sipping on Starbucks iced coffee

A Florida State University student callously strolled past a wounded classmate and…

Facing Fraud Allegations, Letitia James Announces a Big Fundraiser

The Daily Caller made a visit to two homes apparently owned…