Roku, the popular TV streaming platform, has become the latest victim of a significant data breach, affecting 15,363 users across the United States, particularly in California and Maine. The breach, which took place from December 28, 2023, to February 21, 2024, saw cybercriminals hijacking Roku accounts to make unauthorized streaming subscription purchases. The hackers exploited login/password combinations previously leaked in third-party service hacks, targeting users who reused their credentials across multiple sites.Upon discovering the account hijackings in January, Roku promptly identified and secured the affected accounts, resetting passwords and canceling any unauthorized subscriptions. Additionally, refunds were issued for fraudulent purchases. Despite the breach, Roku assures that no sensitive payment data, birth dates, or Social Security numbers were compromised. The company has heightened its monitoring for suspicious activity to protect customer data.Interestingly, the breach disclosure follows closely on the heels of Roku introducing new dispute-resolution terms, requiring users to opt-in to continue using their devices. This move has sparked discussion, although Roku clarifies that the data breach disclosure is unrelated to these terms. The incident underscores the ongoing challenges of digital security and the importance of using unique passwords for online accounts. However, concerns have been raised about Roku's lack of two-factor authentication options, which could enhance security against such breaches.
Roku Data Breach Exposes Thousands of Accounts to Unauthorized Subscription Purchases
External References & Further Reading
https://www.pcmag.com/news/hackers-hijack-roku-accounts-to-buy-streaming-subscriptions-devices
Related Historical Articles
| September 28, 2023 | Cost of a Data Breach 2023: Geographical Breakdowns |
| June 27, 2023 | Why Becoming Data-Driven Is Crucial |
| July 6, 2022 | Hackers Offer Data On 1B Chinese After Alleged Leak |
| April 27, 2022 | The Cost Of Data Breaches In A Remote-Work World |
| March 17, 2022 | Data On the Road: Tracking Trucking |
| July 31, 2020 | Report: US Has The Highest Average Cost For Data Breaches |



