Origin Energy confirmed that customer addresses, phone numbers, and partial bank account data were accessed in a hack. The company provides electricity, fossil gas, LPG, and internet services to 4.8 million customer accounts in Australia.
Accessed data may include customer names, dates of birth, phone numbers, Origin account information, the last four digits of a credit card, or the last three digits of a bank account. Origin stated that incomplete credit card or bank account information cannot be used for purchases or account access.
Origin has not yet confirmed the exact number of affected customers, but a person claiming responsibility for the hack alleged that 2 million customer details were accessed. The company plans to notify affected customers once confirmed.
Experts warn that if the data is leaked, it could be misused for identity theft, highly targeted phishing campaigns, or even physical crimes like burglary by identifying vulnerable properties.
Origin Energy's chief executive, Frank Calabria, stated the company is securing its systems and working with independent cyber experts and authorities. Origin first revealed the hack in a statement, initially believing credit card or bank details were not accessed, but later updated this assessment.
The Australian Cyber Security Centre, the Australian federal police, the Office of the Australian Information Commissioner (OIAC), and the National Office of Cyber Security are all investigating the incident.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Origin Energy confirmed a data breach affecting its 4.8 million customer accounts, compromising personal details and partial banking information. This incident exposes customers to potential identity theft and phishing, highlighting ongoing cybersecurity risks for critical service providers.