澳大利亚能源公司Origin Energy确认,约90万名现有和前任客户的个人信息在一起网络安全事件中被黑客访问[1][2][3]。被泄露的数据包括姓名、地址、出生日期、电话号码、账户信息、信用卡末四位数字和银行账户末三位数字[1][2][3]。首席执行官Frank Calabria向客户致歉,表示"我为此感到遗憾。我们不会掉以轻心地对待客户对Origin的信任以及我们对其信息的保护"[1][2]。
公司从7月初开始审查潜在安全威胁,但当时认为威胁不可信[3]。直到7月22日出现新信息后,Origin Energy立即确认发生安全漏洞并通知市场[2][3]。Calabria表示,公司意识到他人可能会利用该事件进行欺诈,包括冒充Origin或进行其他诈骗活动[2]。公司已开始联系受影响客户,提供身份保护和网络支持服务[2]。Griffith University的安全专家Graeme Hughes指出,这属于"社会工程问题",而非支付欺诈风险[1]。Origin Energy在澳大利亚拥有超过470万个客户账户[3]。
Australian energy company Origin Energy has disclosed a significant data security breach affecting approximately 900,000 current and former customers [1][2][3]. The personal information accessed in the incident includes names, addresses, birth dates, phone numbers, and account information, as well as the last four digits of credit cards and the last three digits of bank account numbers [1][2]. Email addresses and billing history were also among the compromised data [3].
The company began investigating a potential security threat in early July, initially considering it not credible [3]. However, new information emerged on July 22, prompting Origin Energy to immediately confirm the breach and notify affected customers [1][2][3]. Chief Executive Officer Frank Calabria issued an apology, stating: "I am sorry. We don't take for granted the trust customers place in Origin and our safeguarding of their information" [1][2]. He also cautioned that "others may exploit this incident, including by impersonating Origin or through other scam activity" [2].
Origin Energy, which operates over 4.7 million customer accounts in Australia [3], has established support services to assist those affected [2]. The company is collaborating with cybersecurity experts to contain the incident [3]. According to a Griffith University security expert, the breach represents a "social engineering issue" rather than a payment fraud risk [1]. The disclosure triggered a market response, with the company's share price declining more than 1.1 percent on the day of the announcement [3].