Roku Reports 576,000 Accounts Compromised in Latest Cyberattack
The breach, discovered during a follow-up to an earlier incident, involved credential stuffing attacks with no sensitive financial data accessed.
- Roku discovered a second, larger breach affecting 576,000 accounts while investigating a previous incident impacting 15,000 accounts.
- Credential stuffing was used in both incidents, exploiting reused login credentials from other sites.
- In fewer than 400 cases, unauthorized purchases were made, but no full credit card or sensitive financial information was accessed.
- Roku has implemented two-factor authentication for all accounts and reset passwords for affected users.
- The company assures that its systems were not compromised and is taking steps to enhance security measures.