Thegentlemen threatened the 2GO Group, a major Philippine logistics provider, with ransomware attacks potentially disrupting their extensive transportation and logistics operations across the Philippines. The threat highlights the ongoing cybersecurity risks faced by critical infrastructure in the Philippines. #Philippines
Incident Details
- Victim: 2GO Group
- Country: PH
- Actor: thegentlemen
- Source: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion
- Discovered: 2025-10-05 09:48:52.267516
- Published: 2025-10-05 09:12:07.000000
Information
- The company is a leading Philippine logistics and transportation solutions provider.
- Majority-owned by SM Investments Corp., with Trident Investments as a key shareholder.
- Offers a broad range of services including domestic sea freight, passenger travel, courier and parcel delivery, project logistics, and freight forwarding.
- Provides specialized container transport such as ISO tanks and temperature-controlled units.
- Includes express and last-mile delivery, warehousing, inventory management, and nationwide cargo drop-off through retail outlets.
- As of 2025, operates a fleet of nine vesselsβeight RoRo/RoPax ships and one freighter.
- Links 19 ports across Luzon, Visayas, and Mindanao.
- Major operational hubs are located in Manila, Cebu, Iloilo, Bacolod, and Cagayan de Oro.

Disclaimer: This post is based on public claims made by the ransomware group "thegentlemen". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.