2026 Origin Energy — confirmed customer data breach; ~900,000 current/former customers
Data compromised
Per Origin: names, dates of birth, phone numbers, addresses, account information, and partial payment card or bank account numbers (truncated digits). Company Jul 28 update: about 900,000 current and former customers affected. Actor/media ~2M claim remains unverified.
Technical writeup
Verified company confirmation — impact updated July 28, 2026; investigation reporting updated August 18. Origin Energy Limited (one of Australia’s largest electricity and gas retailers) says the breach affects about 900,000 current and former customers. Impacted data may include names, dates of birth, phone numbers, addresses, account information, and partial payment card or bank account numbers. Origin’s July update states it had been investigating a potential security threat since early July; initially available information suggested the threat was not credible, and new information on July 22 confirmed the intrusion. An individual claiming responsibility alleged ~2 million customers and a private settlement — Origin has not confirmed any settlement, and the 2M figure remains an unverified actor claim. On 17–18 August, ABC News and the AFR reported the investigation focusing on a former Accenture employee in Manila, where Accenture ran Origin billing and customer-support functions; AFR sources said the person intended to extort Origin and may have copied data to a laptop after leaving. ABC: Accenture confirmed details of that report but would not comment further; Origin declined comment, citing an ongoing criminal investigation. AFP said it is working with Origin; AFR reported ACSC is not involved because the matter was deemed an employee issue. Origin and Accenture had not published a matching official root-cause statement at indexing. recordsAffected remains the company-attested ~900,000.
Root cause
Unauthorized access to customer data (Origin Jul 23 confirmation; Jul 28 ~900k impact). Aug 18 press: investigation focusing on a former Accenture employee in Manila (billing/support outsource); Origin declined further comment citing a criminal inquiry. Early July threat initially assessed as not credible; Jul 22 information confirmed intrusion. Actor ~2M / settlement claims remain unverified.
References
- https://www.securityweek.com/origin-energy-data-breach-affects-900000-australians/
- https://www.originenergy.com.au/update-july-2026/
- https://www.bleepingcomputer.com/news/security/australian-energy-provider-origin-says-data-breach-exposes-client-data/
- https://www.reuters.com/business/energy/australias-origin-energy-confirms-customer-data-breach-2026-07-23/
- https://www.originenergy.com.au/about/investors-media/origin-investigating-potential-security-incident/
- https://www.abc.net.au/news/2026-08-18/origin-energy-hack-traced-to-accenture-manila-office/107049188
- https://www.afr.com/technology/origin-hack-investigation-points-to-offshore-accenture-employee-20260817-p60oxo