ResourcesTexas Breach Tracker › El Paso Electric
Oil & Gas Ransomware Remediated

El Paso Electric
Breach Analysis

El Paso Electric disclosed a cybersecurity incident in November 2023 affecting customer and employee records. Administrative systems were impacted, though operational technology infrastructure was reported unaffected.

Incident Date
2023-11-08
Records Exposed
25,000
Attack Type
Ransomware
Threat Actor
Unconfirmed

How they got in

Ransomware targeting administrative IT systems. Operational technology infrastructure reported isolated and unaffected. Initial vector under investigation — phishing or exposed service suspected based on TTPs.

Sentinel / Fortress / Command coverage

Sentinel 24/7 SOC with utility-specific SIEM rules: ransomware indicators detected pre-detonation via behavioral analytics
Fortress IT/OT segmentation validation: quarterly review confirms administrative systems have no path to OT network
Command NERC CIP compliance framework maintained under Command tier ensures utility regulatory requirements met

Sentinel ($89/ep/mo) — 24/7 SOC + SIEM. Fortress ($109/ep/mo) — Sentinel + EDR management + vulnerability management. Command ($129/ep/mo) — Fortress + vCISO + compliance mapping + IR plan. See full tier comparison →

Regulatory exposure

Regime Standard / Citation Gap Identified
NERC CIP CIP-003-8 Security management controls — administrative systems lacked documented cybersecurity management program
TDPA Tex. B&C Code §521.053 25,000 TX customer and employee notifications required

5-point hardening list

CoreRecon cites verifiable public sources only. No speculation on unverified attribution is published. Threat actor attribution appears only where publicly confirmed by law enforcement or the organization.

Is your organization hardened against this attack vector?

Free $2,500 security posture assessment for Texas organizations. We map your gaps against the same attack vectors used in this incident. No contract, no commitment.