Safety note: Admin approval is an initial review, not a guarantee that every detail is correct. Check important or urgent claims with official sources and report anything inaccurate or unsafe.
Source and credit: Contributor's own report
Origin Energy data breach exposes personal information of about 900,000 customers - Sydney, NSW
Smart summary
Origin Energy has confirmed a cyber security incident affecting approximately 900,000 current and former customers, warning that stolen personal information could be used in scams and identity fraud.
Origin Energy has confirmed that approximately 900,000 current and former customers have been affected by a significant cyber security incident, making it one of Australia's largest corporate data breaches in recent years.
The company revealed that an unauthorised third party accessed customer information during a cyberattack that occurred on 22 July 2026. Following the discovery of the incident, Origin immediately launched an internal investigation and notified relevant government agencies and affected customers.
According to Origin, the information that may have been accessed includes customer names, residential addresses, dates of birth, phone numbers and account details. In some cases, the final four digits of customers' credit cards and the last three digits of linked bank account numbers were also exposed.
Importantly, Origin said that complete payment card numbers, banking passwords and online account passwords were not compromised during the incident.
Chief Executive Frank Calabria said the company had previously investigated a potential security threat earlier in July but initially determined that the information received was not credible. However, new intelligence received on 22 July confirmed that a cyber security incident had likely occurred, prompting an immediate response.
Origin apologised to affected customers, acknowledging the concern and inconvenience caused by the breach.
The company is now working closely with the Australian Cyber Security Centre (ACSC), law enforcement agencies and other government authorities to investigate how the attack occurred and identify those responsible.
As the investigation continues, Origin has urged customers to remain vigilant against possible scams. Criminals may attempt to use the stolen information to impersonate Origin staff through phone calls, emails or text messages in an attempt to obtain additional personal or financial information.
Customers have been advised to carefully verify any unexpected communication claiming to come from Origin. The company stressed that customers should never provide passwords, banking PINs, verification codes or other sensitive information unless they are certain they are communicating with an official representative.
Cyber security experts warn that even when financial information is not fully exposed, personal identification details such as names, addresses and dates of birth can be valuable to cybercriminals attempting identity theft or phishing attacks.
Origin has begun contacting customers whose information may have been affected and is continuing its investigation to determine the full scope of the incident.
With approximately 4.8 million customer accounts across Australia, Origin is one of the country's largest energy providers, supplying electricity, natural gas, LPG and internet services.
The incident follows several other major cyber security events affecting Australian organisations, reinforcing ongoing concerns about digital security and the growing sophistication of cybercriminals targeting large businesses.
Authorities continue to investigate the Origin breach while encouraging Australians to remain alert for suspicious communications, regularly monitor financial accounts and report potential scam activity.
Origin says it will continue providing updates to customers as more information becomes available and additional security measures are implemented.
OriginCustomersInformationSecurityIncident
Origin Energy has confirmed that approximately 900,000 current and former customers have been affected by a significant cyber security incident, making it one of Australia's largest corporate data breaches in recent years.
The company revealed that an unauthorised third party accessed customer information during a cyberattack that occurred on 22 July 2026. Following the discovery of the incident, Origin immediately launched an internal investigation and notified relevant government agencies and affected customers.
According to Origin, the information that may have been accessed includes customer names, residential addresses, dates of birth, phone numbers and account details. In some cases, the final four digits of customers' credit cards and the last three digits of linked bank account numbers were also exposed.
Importantly, Origin said that complete payment card numbers, banking passwords and online account passwords were not compromised during the incident.
Chief Executive Frank Calabria said the company had previously investigated a potential security threat earlier in July but initially determined that the information received was not credible. However, new intelligence received on 22 July confirmed that a cyber security incident had likely occurred, prompting an immediate response.
Origin apologised to affected customers, acknowledging the concern and inconvenience caused by the breach.
The company is now working closely with the Australian Cyber Security Centre (ACSC), law enforcement agencies and other government authorities to investigate how the attack occurred and identify those responsible.
As the investigation continues, Origin has urged customers to remain vigilant against possible scams. Criminals may attempt to use the stolen information to impersonate Origin staff through phone calls, emails or text messages in an attempt to obtain additional personal or financial information.
Customers have been advised to carefully verify any unexpected communication claiming to come from Origin. The company stressed that customers should never provide passwords, banking PINs, verification codes or other sensitive information unless they are certain they are communicating with an official representative.
Cyber security experts warn that even when financial information is not fully exposed, personal identification details such as names, addresses and dates of birth can be valuable to cybercriminals attempting identity theft or phishing attacks.
Origin has begun contacting customers whose information may have been affected and is continuing its investigation to determine the full scope of the incident.
With approximately 4.8 million customer accounts across Australia, Origin is one of the country's largest energy providers, supplying electricity, natural gas, LPG and internet services.
The incident follows several other major cyber security events affecting Australian organisations, reinforcing ongoing concerns about digital security and the growing sophistication of cybercriminals targeting large businesses.
Authorities continue to investigate the Origin breach while encouraging Australians to remain alert for suspicious communications, regularly monitor financial accounts and report potential scam activity.
Origin says it will continue providing updates to customers as more information becomes available and additional security measures are implemented.
Tesla is preparing to bring its driverless Cybercab to Australia for a preview, giving Australians an early look at the company’s autonomous vehicle tec...
A 15-year-old Pacific Lutheran College student has developed a privacy-first women’s health app and presented her work at a major national cyber event.
Greater Geelong Council wants data-centre operators to contribute to local infrastructure as community concerns grow over energy, water use and developm...
A 36-year-old man has been charged after investigators allegedly found fraudulent identification documents, cloned number plates, cash and drug-manufact...
A Sydney court has heard that a man sent 249 messages to a former partner within 24 hours, with the messages treated as a single alleged breach of an ap...
A high-profile athlete has returned to court and told the hearing that an alleged unwanted kiss by former broadcaster Alan Jones remained difficult to f...
Work on the $150 million Sydney Town Hall Square project has been paused after the NSW Planning Minister referred the development for review by the Inde...
Cairns Regional Council has unanimously voted to seek $400,000 in Queensland Government funding for a program designed to connect local businesses with the region’s growing film...
An automated external defibrillator and memorial plaque have been installed at Ellery Creek Big Hole following the death of disability advocate Ellen Fr...
Queensland firefighters spent several hours monitoring a significant grass fire at Mary Kinross Park in Bargara, near Bundaberg, after the blaze broke out on Wednesday evening....