Utility customer data exposed through an internet-facing system
This is a DailyCyber.News update, brought to you by BareMetalCyber.com, for Friday, September 18th, 2026.
Personal information belonging to some CenterPoint Energy customers was obtained through an external-facing company system. The utility confirmed the breach after learning about an online claim involving a customer dataset, then began investigating with outside cybersecurity experts. CenterPoint hasn’t confirmed how many people were affected or which categories of information were taken. Its electric and gas delivery operations remained active and undisrupted.
That distinction matters, but it doesn’t remove the customer risk. Depending on what the investigation confirms, exposed information could support targeted phishing or fraud. The company may also face notification, investigation, legal, and remediation costs even though energy delivery wasn’t interrupted. Leaders should assess service continuity and data-security impact separately rather than treating continued operations as proof that an incident is minor. Defenders should review internet-facing systems, access logs, authentication controls, and signs of unusual bulk data activity. The practical priority is to audit externally accessible customer systems for excessive data access and strengthen monitoring for large-scale extraction. Critical-infrastructure customers can still be exposed when attackers never touch operational technology.
For the sources and the full Daily Cyber newsletter, visit DailyCyber.News.