LmCast :: Stay tuned in

CenterPoint Energy confirms customer data stolen in cyberattack

Recorded: Sept. 15, 2026, 5 p.m.

Original Summarized

CenterPoint Energy confirms customer data stolen in cyberattack

News

Featured
Latest

Hackers hijack HBO Max Reddit account to push malware in ClickFix ads

Homebrew 7.0.0 gets built-in GUI, better security controls

Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent

New Android malware encrypts files, steals data, and harasses victims

CenterPoint Energy confirms customer data stolen in cyberattack

BambooToken malware controls Windows and Linux systems via MQTT

Hackers target WordPress sites via third-party WooCommerce plugin

What Zero-Day Response Should Be in the Post-Mythos Era

Tutorials

Latest
Popular

How to access the Dark Web using the Tor Browser

How to enable Kernel-mode Hardware-enforced Stack Protection in Windows 11

How to use the Windows Registry Editor

How to backup and restore the Windows Registry

How to start Windows in Safe Mode

How to remove a Trojan, Virus, Worm, or other Malware

How to show hidden files in Windows 7

How to see hidden files in Windows

Webinars
Downloads

Latest
Most Downloaded

Qualys BrowserCheck

STOPDecrypter

AuroraDecrypter

FilesLockerDecrypter

AdwCleaner

ComboFix

RKill

Junkware Removal Tool

Deals

Categories

eLearning

IT Certification Courses

Gear + Gadgets

Security

VPNs

Popular

Best VPNs

How to change IP address

Access the dark web safely

Best VPN for YouTube

Forums
More

Virus Removal Guides
Startup Database
Uninstall Database
Glossary
Send us a Tip!
Welcome Guide

HomeNewsSecurityCenterPoint Energy confirms customer data stolen in cyberattack

CenterPoint Energy confirms customer data stolen in cyberattack

By Bill Toulas

September 15, 2026
12:40 PM
0

CenterPoint Energy disclosed a breach compromising some customers’ personal information after an attacker leaked data allegedly stolen from the utility company.
An investigation started after the company discovered an online post from a threat actor claiming to have stolen 7.49 million records.
CenterPoint Energy is a Houston-based public utility company that provides electric and natural gas services and operates power generation facilities.
It serves approximately 7 million metered customers across Indiana, Minnesota, Ohio, and Texas, and employs roughly 8,300 people, generating over $9.3 billion in annual revenue.
Earlier this month, a threat actor using the alias “4d722e4d656f77” told BleepingComputer they stole from CenterPoint Energy 7.49 million customer records that include names, phone numbers, service and billing addresses, account numbers, billing amounts, and partial Social Security numbers (SSNs).
The threat actor leaked the data, claiming that the company ignored their messages and treated them as a joke.
According to the intruder, they exfiltrated the data by iterating through millions of IDs on CenterPoint’s public API, which lacked rate limiting, web application firewall (WAF) protection, and other security measures against automated access.
In a filing with the U.S. Securities and Exchange Commission (SEC), CenterPoint Energy confirms that data was stolen, but does not name the threat actor, the number of affected customers, or the types of compromised data.
“While the investigation remains ongoing, the Company has determined that an unauthorized third party obtained personal information relating to a portion of the Company’s customers through one of the Company’s external-facing systems,” reads the SEC filing.
“The Company is continuing to work with third-party experts to determine the scope of customers and personal information affected by the incident and intends to notify affected customers and regulatory authorities as required by applicable law.”
CenterPoint Energy said its electric and gas services were not impacted by the cyberattack, and does not believe the incident will materially affect its business or financial condition.
CenterPoint has activated its incident-response procedures, hired third-party cybersecurity experts, strengthened protections on its systems, and reported the incident to law enforcement and regulators.
Multiple lawsuits proposing class actions against the firm have already been filed in federal courts by law firms representing potentially impacted customers, alleging the data breach occurred between August 17 and September 1.

Build your security blueprint for AI-powered attacks

Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.
Save your seat

Related Articles:
ShinyHunters data leaks fuel $2,000 sextortion email scamAustralian energy provider Origin says data breach exposes client dataIDScan confirms breach tied to 153 million stolen driver’s licenses220 million traveler records exposed in Vietnam-linked APIS leakIDScan sued over alleged data breach affecting 153 million drivers

CenterPoint Energy
Customer Data
Data Breach
Data Leak
Electricity
Extortion
Utility

Bill Toulas
Bill Toulas is a tech writer and infosec news reporter with over a decade of experience working on various online publications, covering open-source, Linux, malware, data breach incidents, and hacks.

Previous Article

Post a Comment Community Rules

You need to login in order to post a comment

Not a member yet? Register Now

You may also like:

  Upcoming Webinar

Popular Stories

Microsoft releases emergency Windows updates to fix RDS failures

Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent

Microsoft: September updates cause RDS failures on Windows Server

Sponsor Posts

Overdue a password health-check? Audit your Active Directory for free

EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain

Find your gaps before an auditor does. Check your EU CRA readiness in 5 questions. 

Stay one step ahead of new threats in the new year. Join Huntress for the monthly Tradecraft Tuesday.

Watch a working exploit hit live controls and see exactly what blocks, detects, or misses

Patch automation needs more than speed. Action1 brings control into every stage of deployment.

  Upcoming Webinar

Follow us:

Main Sections

News
Webinars
VPN Buyer Guides
SysAdmin Software Guides
Downloads
Virus Removal Guides
Tutorials
Startup Database
Uninstall Database
Glossary

Community

Forums
Forum Rules
Chat

Useful Resources

Welcome Guide
Sitemap

Company

About BleepingComputer
Contact Us
Send us a Tip!
Advertising
Write for BleepingComputer
Social & Feeds
Changelog

Terms of Use - Privacy Policy - Ethics Statement - Affiliate Disclosure

Copyright @ 2003 - 2026 Bleeping Computer® LLC - All Rights Reserved

Login

Username

Password

Remember Me

Sign in anonymously

Sign in with Twitter

Not a member yet? Register Now


Reporter

Help us understand the problem. What is going on with this comment?

Spam

Abusive or Harmful

Inappropriate content

Strong language

Other

Read our posting guidelinese to learn what content is prohibited.

Submitting...
SUBMIT

CenterPoint Energy announced a data breach involving the compromise of customer personal information, stemming from data allegedly stolen by a threat actor. The investigation was initiated after the utility company discovered an online post from this threat actor claiming ownership of 7.49 million customer records. CenterPoint Energy, a public utility that provides electric and natural gas services across several states, confirmed the security incident in a filing with the U.S. Securities and Exchange Commission (SEC), although the company chose not to disclose the identity of the threat actor, the precise number of affected customers, or the specific types of compromised data.

The compromised data allegedly included personal identifying information such as names, phone numbers, service and billing addresses, account numbers, billing amounts, and partial Social Security numbers. The threat actor reportedly exfiltrated this data by iterating through millions of IDs on CenterPoint’s public API, which suffered from significant security deficiencies, specifically lacking adequate rate limiting, Web Application Firewall (WAF) protection, and other measures designed to prevent automated access.

Despite the breach, CenterPoint Energy stated that its electric and gas services were unaffected by the cyberattack and expressed a belief that the incident would not materially impact its overall business or financial condition. In response to the incident, the company immediately activated its incident-response procedures, engaged third-party cybersecurity experts to determine the full scope of the affected customers and information, and reported the event to relevant law enforcement and regulatory bodies. Furthermore, the company has taken steps to strengthen its system protections. Lawsuits proposing class actions against the firm have already been filed in federal courts by legal representatives for potentially impacted customers, alleging the breach occurred between August 17 and September 1. This information is reported by Bill Toulas.