Connect with us

Technology

Is your Roku safe? Massive data breach exposes thousands of accounts

Published

on

Is your Roku safe? Massive data breach exposes thousands of accounts

Join Fox News for access to this content

Plus special access to select articles and other premium content with your account – free of charge.

Please enter a valid email address.

By entering your email and pushing continue, you are agreeing to Fox News’ Terms of Use and Privacy Policy, which includes our Notice of Financial Incentive. To access the content, check your email and follow the instructions provided.

Having trouble? Click here.

Hackers have stolen data from at least 15,363 Roku users, including credit card information, passwords and more. 

According to Roku officials, hackers used information from third-party sources to break into accounts. They then sold user data for just $0.50 per account, according to BleepingComputer.

Advertisement

This effectively lets anyone who wants to pay 50 cents use the credit card stored in the account. 

While Roku says they have secured affected accounts, you can still take steps to ensure your safety.

CLICK TO GET KURT’S FREE CYBERGUY NEWSLETTER WITH SECURITY ALERTS, QUICK VIDEO TIPS, TECH REVIEWS AND EASY HOW-TO’S TO MAKE YOU SMARTER

Roku stuffing attack

According to Roku, hackers obtained usernames and passwords from a third party. This is called a password stuffing attack. Hackers will try to use those logins on several websites, hoping to get your personal information. Once they do break into your account, your credit card information, shipping address, email, and password are all susceptible.

Advertisement

FRENCH GOVERNMENT HIT WITH ‘UNPRECEDENTED’ WAVE OF CYBERATTACKS

Roku has secured accounts and forced password resets on affected accounts. The company also investigated for fraudulent charges, canceled subscriptions and issued refunds to defrauded users.

MORE: HOW TO FIND OUT WHO’S SPYING ON YOU

Someone else is controlling my Roku

We often hear of people wondering how someone else nearby can get access to their Roku device. Channels may change unexpectedly, content can be cast onto the Roku or the previously viewed shows may not be recognizable. If this happens, in addition to locking down your wireless home network and following advice in the next section, check your Roku settings for anything unusual. Here’s how.

Advertisement
  • On the Roku remote, press the home button to go to the main screen
  • Select “Settings,” then System, find Screen Mirroring, and make sure “none” is selected for others having permission to stream content to your Roku
  • Next, do the same for Remotes by selecting Remotes & Devices from the Settings menu. Unless you have permitted others, you should not see any other remote control devices connected except yours
  • Now check the Guest Mode by clicking Guest Mode from the Settings menu. Make sure no other people are shown — who may have access to your Roku in Guest Mode
  • Finally, from the Settings menu, select System, then Advanced System Settings. Click Control by mobile apps and make sure you see either “default” or “disabled” selected so that no one else is using a mobile app to control your Roku

Data on a computer. (Kurt “CyberGuy” Knutsson)

MORE: HOW TO PROTECT YOURSELF FROM STREAMING HACKS

Roku’s response to the hack

Roku announced the breach in a public memo sent to customers dated March 8, citing various information on what happened and what the company is doing to combat the issue:

“We are committed to maintaining the privacy and security of your Roku account and we are taking this incident very seriously. When we identified potentially impacted Roku accounts, we secured the accounts from further unauthorized access by requiring the registered account holder to reset the password, we investigated account activity to determine whether the unauthorized actors had incurred any charges, and we took steps to cancel unauthorized subscriptions and refund any unauthorized charges.

“We did not delay notification as a result of a law enforcement investigation, and we are providing this letter to notify you about these issues, to provide information about how you can further protect yourself, and to let you know that we are continuing our investigation to identify any additional appropriate steps. Finally, our team continues to actively monitor for signs of suspicious activity, to ensure that all customer information and data is kept secure.”

What to do if you’ve been hacked

If it has already happened and you’ve been hacked, then you should take immediate action to minimize the damage and secure your device. Here are some steps that you can follow.

Advertisement

Change your Roku passwords

If hackers have recorded your passwords, they could access your online accounts and steal your data or money. ON ANOTHER DEVICE (i.e., your laptop or desktop), you should change your passwords for all your important accounts, such as email, banking, social media, etc. You want to do this on another device, so the hacker isn’t recording you setting up your new password on your hacked device. And you should also use strong and unique passwords that are hard to guess or crack. You can also use a password manager to generate and store your passwords securely.

Enable two-factor authentication: You’ll want to activate two-factor authentication for an extra layer of security.

Monitor your accounts and transactions

You should check your online accounts and transactions regularly for any suspicious or unauthorized activity. If you notice anything unusual, report it to the service provider or the authorities as soon as possible. You should also review your credit reports and scores to see if there are any signs of identity theft or fraud.

Use identity theft protection

Identity Theft protection companies can monitor personal information like your home title, Social Security Number (SSN), phone number and email address and alert you if it is being used to open an account. They can also assist you in freezing your bank and credit card accounts to prevent further unauthorized use by criminals. See my tips and best picks on how to protect yourself from identity theft.

Advertisement

Contact your bank and credit card companies

If hackers have obtained your bank or credit card information, they could use it to make purchases or withdrawals without your consent. You should contact your bank and credit card companies and inform them of the situation. They can help you freeze or cancel your cards, dispute any fraudulent charges and issue new cards for you.

Alert your contacts

If hackers have accessed your email or social media accounts, they could use them to send spam or phishing messages to your contacts. They could also impersonate you and ask for money or personal information. You should alert your contacts and warn them not to open or respond to any messages from you that seem suspicious or unusual. 

Hacker on a computer. (Kurt “CyberGuy” Knutsson)

MORE: HACKERS USE PIRATED SOFTWARE TO HIJACK MAC, ANDROID AND WINDOWS DEVICES

Kurt’s key takeaways

Who knew hackers could snag your info for less than a cup of coffee? The good news is Roku took action and locked things down. Plus, we now have a game plan to keep our accounts extra secure. Remember, the key is making it as tough as possible for hackers. Strong passwords, two-factor authentication — that kind of stuff. And keeping an eye on your accounts for anything fishy. If you think you’ve been hacked, don’t panic. Just follow the steps we discussed — changing passwords, checking accounts and contacting your bank.

Advertisement

Do you think streaming services have a responsibility to do more to protect user data? Why or why not? Let us know by writing us at Cyberguy.com/Contact

For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter

Ask Kurt a question or let us know what stories you’d like us to cover.

Answers to the most-asked CyberGuy questions:

Advertisement

Copyright 2024 CyberGuy.com. All rights reserved.

Technology

Microsoft is disabling Office 2019 for Mac next month

Published

on

Microsoft is disabling Office 2019 for Mac next month

Microsoft’s Office 2019 apps for Mac will stop working next month, because the company isn’t renewing a certificate that validates Office licenses. Owners of Office 2019 for Mac are being warned they’ll have to purchase Office 2024 or a Microsoft 365 subscription if they want to continue editing documents.

Microsoft previously promised that “all your Office 2019 apps will continue to function,” when it announced end of support in 2023. The company then quietly updated that support note last month to remove the mention of apps continuing to function, replacing it with “Rest assured that all your Office 2019 apps won’t lose any data.”

Starting on July 13th, Office 2019 for Mac and Office 2021 for Mac will both run in “reduced functionality mode,” allowing people to open files but not edit, save, or create new documents. The reduced functionality will impact Word, Excel, PowerPoint, Outlook, and OneNote.

While Microsoft is providing a certificate update for Office 2021 as it’s still supported until October 13th, 2026, the company is leaving Office 2019 for Mac users out in the cold as support for these apps ended a few years ago. “Office 2019 for Mac reached end of support on October 10, 2023, and no longer receives updates,” says Microsoft. “Because Office 2019 cannot be updated to the required version, this issue cannot be resolved by updating or reinstalling Office 2019 for Mac.”

JimmyTech points out that old versions of Microsoft 365 apps on Mac and iOS will also be affected by this certificate issue, but a simple update will fix it for those users.

Advertisement

Microsoft regularly ends support of software and there’s always the risk you could run into issues running older apps or versions of Windows. It’s still surprising to not see Microsoft make an exception here though, particularly because this certificate issue breaks the main functionality of an app you’ve paid a one-time license fee for.

Continue Reading

Technology

Android fake call detection warns you about scams

Published

on

Android fake call detection warns you about scams

NEWYou can now listen to Fox News articles!

You know that little moment when your phone rings and the name on the screen makes you drop everything?

Maybe it says your spouse, your daughter, your boss or your best friend. You answer because you trust the name. Then the voice sounds familiar too.

That is exactly what makes the latest phone scams so dangerous.

Android’s fake call detection can warn you when a caller may be pretending to be someone saved in your contacts. (Silas Stein/Picture Alliance)

Advertisement

Scammers no longer have to call from a strange number. They can spoof a trusted contact’s phone number. Then they can use AI voice tools to sound like someone you know. Android is now rolling out a new feature called fake call detection to help warn you when that familiar call may be a fake.

FAKE AGENT PHONE SCAMS ARE SPREADING FAST ACROSS THE US

Join CyberGuy Live: Lock Down Your Phone in 30 Minutes (Saturday, June 13, 10 am ET)

  • Your phone holds your email, passwords, photos, banking apps and personal data. In this free, live online class, Kurt the CyberGuy will walk you step by step through simple phone security fixes you can do in real time. You’ll learn how to improve your privacy settings, spot the latest phone scams, use trusted security tools and walk away with a simple checklist to stay protected. Register here: CyberGuyLive.com   

What is Android fake call detection?

Android fake call detection is a new protection built into Phone by Google. It is designed to spot suspected spoofed calls when both people on the call use Phone by Google.

Think of it as your phone quietly asking, “Is this call really coming from that person’s device?” If the answer looks suspicious, your phone can show a warning and advise you to hang up. That small alert could stop a scam before fear, panic or confusion takes over.

ANDROID SECURITY UPGRADES OUTSMART SCAMS AND PROTECT YOUR PRIVACY

How Android fake call detection works

The feature works automatically in the background. You do not need to answer a quiz, scan a code or press a button during the call. When a trusted contact calls you, their phone sends a silent confirmation signal to your phone. That signal helps prove the call really came from their device.

Advertisement

If a scammer spoofs your contact’s number, that confirmation signal may be missing. Your phone then checks with your contact’s actual device. If the real device says it is not placing a call, your screen can warn you that the call may be fake.

The system uses end-to-end encrypted RCS technology, so the check happens privately. You can also turn the feature off in Phone by Google settings.

AI DEEPFAKE ROMANCE SCAM STEALS WOMAN’S HOME AND LIFE SAVINGS

Why fake calls are getting harder to spot

For years, caller ID gave people a sense of control. If the name looked familiar, most of us felt safer picking up. That old habit now works in the scammer’s favor.

Scammers can use internet-based calling tools to spoof numbers. That means your phone may display the name of someone you trust, even though the call comes from somewhere else.

Advertisement

Then comes the AI voice trick. With today’s audio tools, scammers can make a fake voice sound shockingly real. They may pretend to be a family member in trouble, a bank employee warning about fraud or a manager asking for urgent help.

SCAMMERS EXPLOITED MOM’S FEARS TO STEAL HER ENTIRE LIFE’S SAVINGS

That combination makes the call feel personal and immediate. It also makes you more likely to act before you think.

Why Android is adding this protection now

Impersonation scams have become a major global problem. INTERPOL’s March 2026 Global Financial Fraud Threat Assessment cited impersonation fraud as one of the leading contributors to more than $400 billion in global losses.

In the U.S., impersonation scams remain one of the top fraud categories reported to the FTC. Losses reached $2.95 billion in 2024.

Advertisement

GLOBAL SCAM CRACKDOWN LEADS TO 276 ARRESTS

Those numbers tell you why this feature deserves attention. Scammers go where the money is. Right now, they know trusted voices and trusted names can open the door.

Which Android phones get fake call detection?

Google says fake call detection is rolling out globally in Phone by Google this month, starting with Pixel devices.

The feature is available on Android 12 and newer devices with Phone by Google, Contacts and Google Messages installed. It also requires RCS capability in Google Messages.

SAMSUNG MESSAGES ENDING? WHAT ANDROID OWNERS MUST KNOW

Advertisement

There is one key limitation. Both you and the person calling you must use Phone by Google for fake call detection to work.

Phone by Google already comes as the default phone app on many Android devices. If your phone uses a different calling app, you can install Phone by Google from the Play Store and set it as your default phone app.

How Android fake call detection protects you

This feature gives you an extra warning at the exact moment you need it most. That timing is important. Scam calls often rely on emotion. The caller may say someone got arrested, a loved one had an accident or a bank account faces an urgent threat.

SSA IMPERSONATION SCAMS ARE GETTING MORE PERSONAL

When the voice sounds familiar, your guard drops. A warning on your screen can interrupt that emotional rush. It gives you a reason to stop, hang up and verify the story another way.

Advertisement

What Android fake call detection cannot do

This new tool helps, but it cannot protect you from every scam. It may not work if the other person does not use Phone by Google. It also may not cover calls from businesses, unknown numbers or contacts using unsupported devices. So you still need basic scam rules.

If someone asks for money, gift cards, crypto, account codes or remote access to your device, hang up. Then call the person or company back using a number you already trust.

Also, never stay on the line just because the caller tells you to. That is one of the oldest pressure tactics in the scammer playbook.

A spoofed call can look familiar on your screen, even when it is really coming from a scammer. (Kurt CyberGuy Knutsson)

How to protect yourself from AI voice scams

AI voice scams work because they sound personal, urgent and believable, so your best defense is to slow the conversation down before you act. 

Advertisement

1) Create a family safe word

Pick a simple word or phrase that only your close family knows. It should be easy to remember but hard for a scammer to guess. Then, if someone calls with an emergency and asks for money, ask for the safe word. If they cannot give it, hang up and verify the story another way.

9 WAYS SCAMMERS CAN USE YOUR PHONE NUMBER TO TRY TO TRICK YOU

2) Pause when the call feels urgent

Scammers want you scared because fear makes people act fast. That is why fake emergency calls often sound intense, emotional and rushed. Take a breath before you do anything. A real loved one, bank or employer will let you verify what is happening.

3) Call back using a trusted number

If a call feels suspicious, hang up. Then call the person back using a number saved in your contacts or one you know is real. Do not use a number, link or instruction the caller gives you. That could send you right back to the scammer.

4) Never send money or codes during the call

Do not send gift cards, crypto, wire transfers or payment app transfers because a caller sounds convincing. Also, never share a one-time passcode, PIN or account login code over the phone. Once scammers get that information, they can move fast.

Advertisement

5) Turn on scam protections on your phone

Use the built-in protections already available on your device. Pixel and Samsung users can enable Scam Detection in the Phone by Google app to help flag suspicious calls. Also, consider using strong antivirus software that includes AI-powered scam protection to help detect scams in texts, online content and deepfake videos. Keep an eye on call warnings too. If your phone tells you something looks risky, treat that alert seriously. Get my picks for the best 2026 antivirus protection winners for your Windows, Mac, Android & iOS devices at Cyberguy.com

6) Keep your phone apps updated

Update Phone by Google, Google Contacts and Google Messages when updates are available. These tools work best when your apps and phone software stay current. Updates often include security improvements, bug fixes and new scam protections.

Here’s how to check for updates on Android:

  • Open the Google Play Store app.
  • Tap your profile icon in the top right corner.
  • Tap Manage apps & device.
  • Under Updates available, tap See details.
  • Look for Phone by Google, Google Contacts and Google Messages.
  • Tap Update next to each app, or tap Update all.

You can also turn on automatic app updates by opening the Google Play Store app, tapping your profile icon, then going to Settings > Network preferences > Auto-update apps. From there, choose whether to update apps over Wi-Fi, over Wi-Fi or mobile data, with limited mobile data or not at all. 

Kurt’s key takeaways

If a call feels urgent or suspicious, pause before you respond and verify it another way. (Tristan Spinski/The Washington Post via Getty Images)

Android’s fake call detection is a smart step in the fight against AI-powered phone scams. It recognizes something many people already know: the name on your caller ID no longer proves the person calling you is real. This feature gives Android users another layer of protection when scammers try to hijack trust. Still, the safest move remains simple. Slow down, verify the call and never let panic make the decision for you.

Advertisement

Should the government do more to stop scammers from using AI voices to impersonate the people you trust?  Let us know by writing to us at CyberGuy.com

Sign up for my FREE CyberGuy Report

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.

Copyright 2026 CyberGuy.com.  All rights reserved.  

Continue Reading

Technology

Congress just gave DHS another $70 billion

Published

on

Congress just gave DHS another  billion

Congress narrowly voted to fund President Donald Trump’s mass deportation agenda, giving the Department of Homeland Security $70 billion over the next three years.

The house voted 214 to 212 in favor of the reconciliation bill Tuesday, following the Senate’s 52-47 vote last Friday morning. The vote fell largely along party lines. Sen. Lisa Murkowski (R-AK) was the only Senate Republican to vote against it. Rep. Tim Walberg (R-MI), initially voted against the bill — meaning it would have failed — but changed his vote after huddling with House Majority Leader Steve Scalise (R-LA) and Appropriations Chair Tom Cole (R-OK), according to The Hill. No Democrats voted in favor of the funding bill, which was done through a budget reconciliation process to avoid a Democratic filibuster.

In a speech on the House floor ahead of the Tuesday vote, Rep. Mary Gay Scanlon (D-PA) criticized Republicans for using the budget reconciliation process to avoid negotiating with Democrats, and emphasized ICE’s lack of popularity with the American people.

“At its core, this Republican reconciliation budget bill is a statement about priorities, and the priorities represented in this budget bill could not be more out of step with the needs and values of the American people,” Scanlon said.

Scanlon noted that DHS has yet to spend $100 billion of the nearly $200 billion it received under Trump’s One Big Beautiful Bill Act. She added that Trump has not only expanded ICE’s reach by increasingly going after legal immigrants but also weaponized DHS against its critics. The bill, she said, will “supercharge” Trump’s abuses.

Advertisement

After the House markup last Friday, Rep. Rosa DeLauro (D-CT), ranking member of the House Appropriations Committee, noted that the bill not only lacks sufficient reforms but also cuts funding for cybersecurity and TSA, whose workers went weeks without pay during the DHS shutdown.

The funding bill comes at a time of deep unpopularity for ICE. One recent poll found that just 33 percent of voters approve of how the agency is doing its job.

And it comes amid yet another threat from border czar Tom Homan to flood New York City with ICE agents. In an interview with Fox News on Monday, Homan said he would send “more ICE agents than you’ve ever seen” to New York City if the state government passed a bill limiting cooperation with DHS.

“Providing a quarter trillion dollars to an administration promising that the public ‘ain’t seen shit yet’ when it comes to mass deportation is a historic mistake,” Todd Schulte, president of the immigration reform group FWD.us, said in a statement. “Supercharging the funding for these already out of control systems will come with terrible human consequences and continue to be met with increasing opposition from voters.”

Correction, June 9th: A previous version of this story said Rep. Tim Walberg voted against the funding bill. He initially voted against it but then changed his vote to support it.

Advertisement

Update, June 9th: This story has been updated to include comment from FWD.us president Todd Schulte.

Continue Reading
Advertisement

Trending