Jollibee data breach may impact almost 11 million customers

In this article (5)
Jollibee Foods Corporation (JFC) has reported a potential unauthorised access to its data, which might affect approximately 11 million customers.
The breach compromised sensitive personal information, including dates of birth and senior citizen identification numbers, according to the company’s report to the Philippines’ National Privacy Commission (NPC).
“Approximately 11 million data subjects are affected, the majority of whom are Jollibee customers,” the NPC said. “Other impacted brands include Mang Inasal, Red Ribbon, Chowking, Greenwich, Burger King, Yoshinoya, and Panda Express.”
The company has requested an additional 20 days to complete its internal investigation.
By law, companies processing personal data must notify the NPC and individual affected subjects within 72 hours of discovering a breach.
JFC said that its e-commerce platforms, including its subsidiaries, were unaffected by the incident and remained operational.
“JFC recognises the value and importance of the confidentiality of its stakeholders’ personal information,” said the company.
“The company assures the public of its commitment to prioritise the protection and confidentiality of such personal information, including customer data, by continuously fortifying its defences against future threats,” it added.
Questions & Answers
Q.Which specific types of customer information were put at risk by this data breach?
Which specific types of customer information were put at risk by this data breach?
The data breach compromised sensitive personal information belonging to customers. This included dates of birth and senior citizen identification numbers, as reported by the company to the National Privacy Commission.
Q.Which other Jollibee-owned brands beyond the main restaurant chain were affected by the data breach?
Which other Jollibee-owned brands beyond the main restaurant chain were affected by the data breach?
Beyond Jollibee itself, other impacted brands included Mang Inasal, Red Ribbon, Chowking, and Greenwich. Burger King, Yoshinoya, and Panda Express were also affected, according to the National Privacy Commission.
Q.Were Jollibee's online ordering platforms also compromised during this security incident?
Were Jollibee's online ordering platforms also compromised during this security incident?
No, the company stated that its e-commerce platforms were not affected by the incident. Both Jollibee's and its subsidiaries' online platforms remained fully operational throughout this period.
Q.How long has Jollibee requested to finalise its internal investigation into the breach?
How long has Jollibee requested to finalise its internal investigation into the breach?
The company has requested an additional 20 days to complete its internal investigation. This period allows them more time to thoroughly examine the incident and understand its full scope.
Reader pulse
Is Jollibee handling the breach effectively?
17,708 votes so far