← DICT (Philippines)

2026 DICT Philippines — investigating DTAP exposure; 48 firms / ~410 files (~600 MB)

2026 Unknown records affected Share on X

Data compromised

Per DICT: ~410 files (~600 MB / ~770 MB uncompressed) tied to 48 DTAP-accredited firms may have been exposed — corporate registration records, permits, certifications, cybersecurity credentials, employment documents, and DICT performance evaluations. Investigation to verify authenticity/source/extent ongoing; individual PII census unpublished.

Technical writeup

Verified agency statement — Philippine Star (27 Sep 2026): Department of Information and Communications Technology is investigating a potential data breach involving 48 companies in its DTAP accredited program. DICT cites ~410 files (~600 MB; ~770 MB uncompressed) that may include corporate registration records, permits, certifications, cybersecurity credentials, employment documents, and DICT performance evaluations. Investigation will verify authenticity, source, nature, and extent; if personal/protected data compromised, DICT says it will notify affected companies under the Data Privacy Act (RA 10173). recordsAffected 0 (no person census); companyConfirmed true for DICT’s own investigation notice.

Root cause

Potential exposure of files associated with DICT Trust Assessment Provider (DTAP) accredited companies (DICT public statement)

References