SIMBA data breach exposes IC numbers and personal details of over 23,000 customers
share on
SIMBA has confirmed a data breach affecting 23,549 customers, with personal information including identity card numbers exposed in the incident.
In a statement on 25 September, the telco said it discovered the breach a day earlier on 24 September and has since resolved the incident. The compromised data included customers' names, identity card numbers, dates of birth, mobile numbers and email addresses.
According to SIMBA, the affected individuals had registered for its services. Credit card and bank account information were not compromised, and the company said its investigations to date have found no indication that the exposed data has been maliciously misused.
Don't miss: Marina Bay Sands fined for data breach affecting over 665,000 patrons
Following the incident, SIMBA said it took immediate steps to review its existing security measures to protect its core infrastructure and systems.
The telco is also working with the relevant authorities on the matter and is progressively notifying affected customers via email. It expects the notification process to be completed within a week of its 25 September statement.
MARKETING-INTERACTIVE has reached out for more information.
The breach comes months after a proposed consolidation between SIMBA Telecom and M1 fell through. In May, Tuas Limited said the sale and purchase agreement relating to SIMBA's proposed acquisition of shares in M1 had been terminated after several conditions were not met by the extended deadline of 21 May 2026.
The agreement, first announced in August 2025, involved Tuas and its subsidiary SIMBA Telecom, as well as Keppel entities Keppel Konnect and Konnectivity. At the time, Tuas also said SIMBA continued to cooperate with an ongoing Infocomm Media Development Authority (IMDA) investigation into potential breaches of the Telecommunications Act and conditions of its Facilities-Based Operator Licence.
Elsewhere, cybersecurity concerns have also emerged across other industries this year, with global sportswear brand Nike among the companies investigating a potential data breach.
In January, Nike said it was investigating a potential cybersecurity incident after ransomware group World Leaks claimed it had leaked nearly 1.4TB of data linked to the company's operations. The exposed data included designs, materials, prices, audits and product timelines. At the time, it remained unclear whether personally identifiable customer information was involved.
Related articles:
Interview: Lynette Poh takes on expanded role at Singtel
StarHub, NeutraDC forge quantum-safe link between Singapore and Indonesia
StarHub and Mediacorp join forces to create stronger content and ad opportunities
share on
Free newsletter
Get the daily lowdown on Asia's top marketing stories.
We break down the big and messy topics of the day so you're updated on the most important developments in Asia's marketing development – for free.
subscribe now open in new window