Data leak

Cox Communications Data Breach via Social Engineering (Impersonated Support Agent)

πŸ“… 2021-10-11
Primary Source β†—

Incident Details

On October 11, 2021, Cox Communications discovered that a hacker had impersonated a Cox support agent to gain access to internal systems, then accessed a small number of customer accounts. Cox notified affected customers via letters filed with state attorneys general in late 2021. Exposed data included customer names, addresses, telephone numbers, Cox account numbers, usernames, account PINs, email addresses, security question answers, and subscribed service information. No financial or payment data was confirmed compromised. Cox notified law enforcement and took steps to prevent similar social engineering attacks. Cox Communications is one of the largest cable and broadband providers in the United States, serving approximately 5.2 million residential and commercial customers.

Technical Details

Initial Attack Vector
Social engineering β€” an attacker impersonated a Cox Communications support representative to gain access to internal Cox systems and then accessed customer account information

Timeline

  1. 2021-10-11 Breach occurred
  2. 2021-12-01 Publicly disclosed
  3. 2021-12-01 Customers notified