CenterPoint Energy confirms cyberattack that exposed customer data

3 min read
CenterPoint Energy confirms cyberattack that exposed customer data

What happened at CenterPoint Energy

In early September 2024 CenterPoint Energy announced that a malicious actor gained unauthorized access to internal systems and extracted customer records. The utility confirmed that the breach was the result of a targeted cyberattack rather than an accidental exposure.

Scope of the compromised information

The company said the stolen data set includes names, mailing addresses, email addresses, and account numbers for a limited number of residential and commercial customers. Financial details such as credit card numbers or social security numbers were not part of the disclosed information.

Data elements identified

  • Customer name
  • Service address
  • Email contact
  • Utility account identifier

How the breach was discovered

CenterPoint Energy’s security team detected unusual network activity during a routine monitoring session. An internal investigation quickly revealed that an external party had exfiltrated data over several weeks before the activity was flagged.

Following the discovery, the utility engaged third‑party forensic experts and notified law enforcement. The investigation is ongoing and the company is cooperating with federal and state authorities.

Response and mitigation steps

Immediately after confirming the breach, CenterPoint Energy took the following actions:

  1. Isolated the affected systems to prevent further unauthorized access.
  2. Implemented additional authentication controls and network segmentation.
  3. Notified impacted customers via email and postal mail, providing instructions on how to protect their information.
  4. Offered a year of free identity protection services to affected individuals.
  5. Launched a public awareness campaign about phishing and other common scams.

The utility also updated its incident response plan to incorporate lessons learned from the event.

Guidance for affected customers

Customers who received a notification are advised to take the following precautions:

  • Review recent account statements for any unauthorized activity.
  • Change passwords for online utility portals and enable multi‑factor authentication where available.
  • Be vigilant for suspicious emails that reference the utility or request personal details.
  • Consider enrolling in credit monitoring or fraud alerts if not already provided.

For additional protection tips, the Federal Trade Commission consumer protection guidance offers a comprehensive checklist.

Regulatory and industry context

The energy sector has become a frequent target for cyber threats due to its critical infrastructure status. The Department of Homeland Security cybersecurity resources outline best practices for utilities, including network segmentation, continuous monitoring, and employee training.

State regulators, such as the Texas Attorney General, have issued alerts urging utilities to strengthen data protection measures. The latest Texas Attorney General consumer alerts emphasize the importance of rapid breach notification and support for affected residents.

Impact on the energy sector

This incident underscores the growing need for robust cyber defenses across the utility landscape. While CenterPoint Energy acted swiftly, the breach highlights gaps that other providers may need to address.

Industry analysts suggest that increased investment in threat detection, employee awareness programs, and collaboration with federal agencies will be essential to mitigate future attacks.

Official statements and resources

CenterPoint Energy posted a detailed press release outlining the breach timeline, response actions, and support resources for customers. The full statement can be accessed through the company’s press releases page.

Customers seeking further assistance are encouraged to contact the utility’s dedicated helpline, which operates 24/7.

As the investigation proceeds, the utility will continue to update stakeholders on any new findings or additional security measures.

Comments

No comments yet. Be first.

More from this author