British telecommunications company Brsk confirmed unauthorized access to one of its customer database systems, resulting in the exposure of over 230,000 customer records. The stolen data, which was advertised for sale on a cybercrime forum, included full names, email and home addresses, installation details, location data, phone numbers, and indicators of vulnerability status. Brsk stated that no financial information, passwords, or account credentials were compromised, and there is no evidence of misuse so far. The company has notified affected customers, offered them 12 months of free monitoring services, and reported the incident to relevant authorities, including the ICO and police.
Separately, Comcast agreed to pay a $1.5 million fine to settle an FCC investigation into a February 2024 vendor data breach that exposed the personal and financial information of nearly 275,000 customers. The breach occurred at Financial Business and Consumer Solutions (FBCS), a former debt collection vendor, and included names, addresses, Social Security numbers, dates of birth, and account numbers. Comcast has committed to enhanced vendor oversight, regular risk assessments, and improved compliance reporting as part of the settlement. Both incidents highlight the ongoing risks to customer data in the telecommunications sector, whether from direct attacks or third-party vendor breaches.

See the actors and campaigns active against you right now.
3 events from the most recent confirmed update back to the earliest known activity.
Comcast agreed to pay a $1.5 million fine to resolve an FCC investigation into the FBCS breach affecting Xfinity customers. Under the consent decree, Comcast must strengthen vendor oversight, appoint a compliance officer, perform biennial vendor risk assessments, and report compliance to the FCC for three years.
After the February 2024 intrusion, FBCS did not notify Comcast of the breach for roughly five months. The delay became a key issue in the later FCC investigation and settlement.
In February 2024, former Comcast debt-collection vendor Financial Business and Consumer Solutions (FBCS) suffered a breach that exposed sensitive personal data, including names, addresses, Social Security numbers, dates of birth, and Comcast account numbers. The incident ultimately affected 4.2 million people overall, including nearly 275,000 Comcast customers.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.