Nova Scotia Power doesn’t know why hacked customer data wasn’t previously deleted
Executive Blake Williams told a regulatory hearing that the company has mechanisms to automatically delete certain data in cycles of no more than 90 days.
Nova Scotia Power officials remain unclear as to why a digital archive of nearly three decades of customer information, later subjected to a cyberattack, did not self-destruct as designed. The data, encompassing the personal details of hundreds of thousands of customers, was compromised in March 2025, allegedly by actors purportedly based in Russia.
This trove included addresses, phone numbers, banking specifics, social insurance numbers, and additional private information. During a regulatory hearing, Executive Blake Williams pointed out that the corporation possesses mechanisms enabling automatic deletion of certain data, but the utility does not comprehend why the file, conceived in 2021 and persisting within the system as late as 2025, remained undelimited.
According to Williams, had the file been eradicated as planned, the information would have remained inaccessible to the assailants.
Written by urgent.news from Global News's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.