Origin Energy, Australia’s largest energy retailer, has confirmed a data breach involving unauthorized access to customer information. The company is currently assessing the full extent of the incident and will notify affected customers accordingly.
The compromised data includes personal details such as names, addresses, dates of birth, contact numbers, and account information. Additionally, partial financial data—specifically, the last four digits of credit cards or the last three digits of bank accounts—was accessed. Origin emphasized that this incomplete financial information cannot be used to make purchases or access accounts.
CEO Frank Calabria expressed regret over the incident, acknowledging the trust customers place in the company to protect their information. He assured that Origin is taking immediate steps to secure its systems and prevent further unauthorized access. The company has engaged independent cybersecurity experts and is collaborating with the Australian Cyber Security Centre, the Australian Federal Police, and the Office of the Australian Information Commissioner to investigate the breach.
The breach came to light when an alleged hacker contacted media outlets, providing a sample of 50 customer records containing personal and billing information. This prompted Origin to initiate an internal investigation and notify authorities.
In light of this breach, customers are advised to remain vigilant against potential scams. Cybersecurity experts warn that the stolen data could be exploited for targeted phishing attacks and identity fraud. Customers should be cautious of unsolicited communications and verify the authenticity of any requests for personal information.
This incident underscores the critical importance of robust cybersecurity measures in protecting sensitive customer data. As cyber threats become increasingly sophisticated, companies must continually assess and enhance their security protocols to safeguard against potential breaches.