Meyka Pro banner
Market News

Origin Energy Investigates Potential Cybersecurity Incident Affecting Customer Data

July 22, 2026
11:19 AM
4 min read

Key Points

Origin Energy is investigating a potential cybersecurity incident announced on 22 July 2026.

The company says there is no evidence that bank account or credit card details were compromised.

Australian authorities, including the ACSC, AFP, and OAIC, are assisting with the investigation.

Customers should stay alert for phishing scams and follow official Origin updates while the investigation continues.

Sentiment:NEGATIVE (-0.80)
Be the first to rate this article

On 22 July 2026, Origin Energy confirmed it was investigating a potential cybersecurity incident after detecting unauthorised access to some customer data. The company has informed Australian cybersecurity agencies and law enforcement while it works to understand exactly what happened.

Although Origin says there is no evidence that credit card or bank account information has been affected, the incident has raised concerns among customers. Here’s what is known so far, what information may have been exposed, and the steps customers can take to protect themselves.

What Happened in the Origin Energy Cybersecurity Incident?

Origin confirms investigation into potential unauthorised access

On 22 July 2026, Origin Energy announced it was investigating a potential cybersecurity incident involving unauthorised access to customer information. The company informed the Australian Securities Exchange (ASX) and said it had immediately engaged cybersecurity experts to investigate the issue.

Origin also reported the incident to the Australian Cyber Security Centre (ACSC), the Australian Federal Police (AFP), and the Office of the Australian Information Commissioner (OAIC). The investigation is continuing, and the company said it will provide more information as it confirms additional details.

What customer information may be affected?

Origin has not yet confirmed how much customer data may have been accessed. Reports indicate the exposed information could include customer names, email addresses, residential addresses, phone numbers, dates of birth, and billing history.

The company has stated that there is no evidence that bank account details or credit card information were compromised. While that lowers the immediate risk of financial fraud, personal information can still be used in phishing campaigns or identity theft attempts. Customers should remain cautious until the investigation is complete.

Why Does This Cybersecurity Incident Matter for Australian Customers?

Why could this incident affect millions?

Origin Energy is one of Australia’s largest electricity and gas retailers, with around 4.8 million customer accounts nationwide. If personal information has been accessed, cybercriminals could use it to create convincing scam emails, fake invoices, or fraudulent phone calls.

Even without payment details, information such as names, contact details, and billing records can make phishing attempts appear more convincing. That is why customers are being advised to stay alert.

Australia’s cyberattack problem continues to grow

The Origin investigation comes after several high-profile cyber incidents involving Australian organisations, including Optus, Medibank, Qantas, and Partnered Health. Those attacks have increased pressure on businesses to improve cybersecurity and respond faster when security incidents occur.

Reports linked to the Origin case also claim that a hacker shared a sample of customer records with media outlets. Origin has not confirmed those claims or disclosed how many customers may have been affected while forensic investigations continue.

What Origin Energy Customers Should Do Now?

How can customers protect their information?

While Origin continues its investigation, customers can take a few practical steps to reduce their risk.

  • Watch for updates from Origin through its official website and communication channels.
  • Be careful with unexpected emails, text messages, or phone calls asking for personal information.
  • Never share passwords, one-time verification codes, or banking details.
  • Check your Origin account and billing statements for any unusual activity.
  • Change your password if you use the same one on multiple websites.
  • Turn on multi-factor authentication wherever it is available.

It is also worth verifying any message that claims to come from Origin before clicking links or downloading attachments. If something looks suspicious, report it immediately. A few simple checks can reduce the chances of becoming a victim of phishing or identity theft while the investigation continues.

Conclusion

Origin Energy is still working to determine the full scope of this cybersecurity incident, and many details remain under investigation. The company says there is no evidence that customer payment information has been compromised, but customers should continue to monitor official updates and stay alert for phishing attempts. Until the investigation is complete, taking a few basic security precautions is the safest approach.

Disclaimer:

The content shared by Meyka AI PTY LTD is for research and informational purposes only. Meyka is not a financial advisory service, and the information provided should not be treated as investment or trading advice.

What brings you to Meyka?

Pick what interests you most and we will get you started.

I'm here to read news

Find more articles like this one

I'm here to research stocks

Ask Meyka Analyst about any stock

I'm here to track my Portfolio

Get daily updates and alerts (coming March 2026)