
This router has documented security problems. Every device on this network — your work laptop, banking app, Ring camera, smart lock — is running at higher risk than it should be.
An F is not a warning — it’s a finding that the router has been independently flagged for security or supply-chain concerns serious enough to warrant action.
-
If you set up this router with cloud credentials before the breach, an attacker may already have the login that controls your home network
If you set up this router with cloud credentials before the breach, an attacker may already have the login that controls your home network — including the firewall protecting your work laptop and security cameras. Reset it and turn on two-factor authentication.
Show technical detail
Comcast data breach - 36 million customers: Hackers stole credentials for 36 million Comcast customers including usernames, hashed passwords, and partial Social Security numbers. Your gateway account credentials may have been exposed. If you haven't changed your password since late 2023, do it now.
-
A real gap that affects every device sharing this Wi-Fi
It affects every device sharing this Wi-Fi — your work laptop, your phone, your kids' devices, your security cameras. Not the most urgent threat on the page, but a real edge an attacker can use to reach the rest.
Show technical detail
Public xfinitywifi hotspot - enabled by default: Your gateway broadcasts a second public Wi-Fi network for other Comcast customers by default. Security experts broadly recommend disabling this.
-
A real gap that affects every device sharing this Wi-Fi
It affects every device sharing this Wi-Fi — your work laptop, your phone, your kids' devices, your security cameras. Not the most urgent threat on the page, but a real edge an attacker can use to reach the rest.
Show technical detail
ISP controls your firmware: Comcast can push firmware updates and remote configurations to your gateway. You cannot fully control the security settings.
-
A small gap that still touches every device on this network
A small gap, not an urgent one — but it still touches everything on this network: your work laptop, your phone, your security cameras, and any guest device that joins the Wi-Fi.
Show technical detail
Limited user security configuration: The xFi Gateway doesn't allow advanced security features like custom firewall rules, built-in VPN, or device-level isolation.
An A-rated alternative is shown below.
We'll email you if a new vulnerability hits your Xfinity xFi Gateway XB7. One email per incident. No spam.
- CVE-2023-4966 CitrixBleed · Dec 2023 ↗
- Comcast xFi documentation ↗
- Comcast Terms of Service ↗
- FCC Equipment Authorization Database ↗
- FCC Covered List · National Security Designation ↗