PH’s NPC investigates alleged data breach involving GCash operator

by

Rei Fortes

-

21 hours ago

PH’s NPC investigates alleged data breach involving GCash operator

The ‘What’s NEXT in Marketing 2025’ series is making waves in Singapore, the Philippines, Hong Kong, Indonesia, and Malaysia. Join us in shaping the future of marketing!

Manila, Philippines – The National Privacy Commission (NPC) urged the public to remain cautious following reports of a potential data breach involving G-Xchange, Inc., the company behind mobile wallet platform GCash. The alleged leak surfaced online on 26 October 2025.

An investigation was launched after a post appeared on the dark web claiming to sell information belonging to GCash users. 

The individual behind the post, using the alias “Oversleep8351,” purportedly offered access to merchant and user data, account numbers, bank and virtual card links, as well as Know Your Customer (KYC) records that may include names, addresses, employment details, and copies of valid Philippine identification documents covering millions of entries from 2019 to October 2025.

The NPC’s Complaints and Investigation Division has issued a Notice to Explain to G-Xchange, Inc. seeking details regarding the reported incident. 

A clarificatory meeting has been scheduled to further discuss the case. As of 10:30 a.m. on October 27, 2025, the Commission had not yet received an official data breach notification from the company.

If the investigation confirms that user data was compromised, the NPC stated that it will take appropriate action in accordance with the Data Privacy Act of 2012. In the meantime, users of GCash were encouraged to monitor their accounts, update their MPINs and passwords, activate available security features, and remain cautious of phishing attempts or suspicious messages.

The NPC stated it would provide verified updates once more information becomes available, reminding the public to avoid engaging with or sharing unverified claims circulating online while the inquiry is ongoing.

Updated on October 28, 2025, GCash has issued an advisory to its customers addressing recent allegations of a data breach and the sale of user information on the dark web. The company strongly maintains that no evidence of a breach has been found within its systems, assuring users that their funds and account information remain safe and secure.

The statement follows the circulation of an online post, which prompted an internal investigation by the firm’s cybersecurity experts.

The swift investigation concluded that the alleged dataset being circulated does not match or originate from GCash systems. According to the company, many entries in the purported data are incomplete, invalid, or unrelated to GCash users. This finding is presented by GCash as strong evidence that the customer data currently being circulated did not originate from the company’s own infrastructure.

GCash reaffirmed its continued commitment to safeguarding customer data and maintaining a secure platform.

The company also stated that it is working closely with regulatory bodies, including the Bangko Sentral ng Pilipinas (BSP), the National Privacy Commission (NPC), and the Cybercrime Investigation and Coordinating Centre (CICC), to monitor, validate, and protect its systems. The firm emphasised its dedication to upholding the trust of its millions of Filipino users.

Celebrate the creativity and brilliance of advertising at the Advertising Awards Asia Pacific 2026! Happening this March in Singapore, we’ll be honouring the region’s most trailblazing advertising campaigns and visionary leaders— submit your entries today!
The NEXT Awards 2025 is here, and we’re seeking the most innovative marketing campaigns from Indonesiathe Philippines, Malaysia, Singapore and Asia Pacific. Submit your entry today and showcase your best work!
Share

RECENT ARTICLES

PH’s NPC investigates alleged data breach involving GCash operator
Hexaware names Eravi Gopan as new president and global head of high tech and platforms
Equinix expands in the Philippines with new AI-ready infrastructure ecosystem
Hitachi Vantara, Supermicro strengthen enterprise AI infrastructure performance for global businesses
ViewQwest, Zero Networks introduce automated microsegmentation for enterprises in Southeast Asia
Ellipse 3

RELATED ARTICLES

AI-powered ransomware and online marketplaces reshape Asia’s cyber threat landscape
Cyberattack forces Asahi to halt production across Japan
iProov urges multilayered cybersecurity defences after uncovering iOS video injection tool compromising biometric security
Ellipse 3

FEATURED ARTICLES

UpTech NL Feature Image (1)_11zon
1_UpTech Media, MARKETECH APAC to feature critical industry conversations at recently expanded ‘Retail and E-Commerce Innovation Summit’
EW2025_(UT)Launch Article_Feature Image_11zon

Subscribe to UpTech Media Newsletter

Video Title Here: The Indonesian on-ground activation status

Sed ut perspiciatis unde omnis iste natus error sit voluptatem accusantium doloremque laudantium, totam rem aperiam, eaque ipsa quae ab illo inventore veritatis et quasi architecto beatae vitae dicta sunt explicabo. Nemo enim ipsam voluptatem quia voluptas sit aspernatur aut odit aut fugit, sed quia consequuntur magni dolores eos.

Video Title Here: The Indonesian on-ground activation status

Sed ut perspiciatis unde omnis iste natus error sit voluptatem accusantium doloremque laudantium, totam rem aperiam, eaque ipsa quae ab illo inventore veritatis et quasi architecto beatae vitae dicta sunt explicabo. Nemo enim ipsam voluptatem quia voluptas sit aspernatur aut odit aut fugit, sed quia consequuntur magni dolores eos.

Video Title Here: The Indonesian on-ground activation status

Sed ut perspiciatis unde omnis iste natus error sit voluptatem accusantium doloremque laudantium, totam rem aperiam, eaque ipsa quae ab illo inventore veritatis et quasi architecto beatae vitae dicta sunt explicabo. Nemo enim ipsam voluptatem quia voluptas sit aspernatur aut odit aut fugit, sed quia consequuntur magni dolores eos.