The revelation that Origin Energy was warned of a potential security flaw weeks before the breach was made public has drawn sharp criticism. Consumer advocates argue that the company failed its customers by not informing them sooner, leaving hundreds of thousands at risk of identity theft or fraud. The delayed notification is a breach of trust, especially given that energy companies are stewards of sensitive personal data. While Origin has since apologized and offered support, the silence period allowed scam artists to exploit the window before the public was alerted. This incident raises serious questions about Origin’s cybersecurity preparedness and crisis response culture. If a vulnerability was known, customers deserved a warning to change passwords or monitor accounts well before the first public announcement. The delay suggests the company prioritized its own investigation and reputation over the interests of those affected. Regulators must consider whether such delays should be permissible under data protection laws.
News From Multiple Perspectives
Questioning Origin Energy's delay in notifying customers about data breach
Published July 28, 2026 at 6:02 AM UTC