More than 19.2 million account credentials in the Philippines were compromised in the first half of 2026, according to a report from Viettel Cyber Security.

The company recorded 16,619 phishing attacks, 21 ransomware incidents, and 255 data breach incidents from January to June. These breaches exposed about 335 million records and 2.6 terabytes of data.

A coordinated attack on financial institutions between March and April compromised 99 million records. Another breach at a public-service organization exposed 45 million records. Attackers also obtained 1.8 terabytes of internal financial data through malicious software.

Phishing-and-Ransomware

The report identified 34,650 new software vulnerabilities in the first half of the year, with 77 classified as high-impact for the Philippines. Unpatched systems remain a common entry point for attacks.

The report warned that generative AI is making phishing and impersonation schemes more convincing. Attackers use leaked data to create deepfake voices and videos to trick victims into sharing one-time passwords or approving unauthorized transactions.

Viettel Cyber Security advised consumers to verify unsolicited calls and messages through official channels, especially when asked for passwords or one-time PINs.

Leave a comment

Your email address will not be published. Required fields are marked *