ResourcesTexas Breach Tracker › Lubbock Power & Light
Oil & Gas Ransomware Under Investigation

Lubbock Power & Light
Breach Analysis

Lubbock Power & Light, the municipal utility serving 110,000+ customers, reported a cybersecurity incident in April 2025 disrupting billing and customer service systems. Customer PII in scope; OT infrastructure reported unaffected.

Incident Date
2025-04-14
Records Exposed
110,000
Attack Type
Ransomware
Threat Actor
Unconfirmed

How they got in

Ransomware targeting billing and customer information systems. Utility IT/OT boundary was maintained. Initial vector under investigation.

Sentinel / Fortress / Command coverage

Sentinel 24/7 monitoring of utility billing systems: ransomware indicators detected before mass file encryption
Fortress Backup integrity: billing data backed up to immutable storage — recovery without ransom payment
Command NERC CIP compliance and IT/OT segmentation documentation: attack contained to IT; OT boundary hardened proactively

Sentinel ($89/ep/mo) — 24/7 SOC + SIEM. Fortress ($109/ep/mo) — Sentinel + EDR management + vulnerability management. Command ($129/ep/mo) — Fortress + vCISO + compliance mapping + IR plan. See full tier comparison →

Regulatory exposure

Regime Standard / Citation Gap Identified
NERC CIP CIP-003-8 Cybersecurity management controls for utility operations
TDPA Tex. B&C Code §521.053 110,000 Lubbock utility customer notifications pending

5-point hardening list

CoreRecon cites verifiable public sources only. No speculation on unverified attribution is published. Threat actor attribution appears only where publicly confirmed by law enforcement or the organization.

Is your organization hardened against this attack vector?

Free $2,500 security posture assessment for Texas organizations. We map your gaps against the same attack vectors used in this incident. No contract, no commitment.