ADVERTISEMENT

GCash upholds zero tolerance on 'quishing' scam, blocks fake illegal sites

GCash has blocked over 4,900 fraudulent merchants using "quishing"—a new tactic where scammers use fake QR codes to steal payments.

By MBrand
Published Apr 23, 2026 08:28 am
GCash, the Philippines’ leading finance super app, has intensified its crackdown on illegal merchants, blocking suspicious accounts and scam websites that impersonate official GCash payment pages to defraud users.
With rising transportation costs adding to broader economic pressures, GCash continues to strengthen its anti-fraud efforts as Filipinos become more deliberate with every peso they spend, underscoring the importance of staying vigilant against schemes and safeguarding their hard-earned money.
The rise of “quishing” scams
Recent monitoring has uncovered schemes where fake websites mimic legitimate GCash payment pages and use QRPh codes to collect payments. An example of a growing scam flagged by the Bangko Sentral ng Pilipinas (BSP) is known as “quishing” or QR phishing.
In these schemes, fraudsters exploit QR codes to redirect users to malicious payment pages or steal sensitive information, while misusing official branding to appear credible and deceive users into completing unauthorized transactions.
In some cases, fraudulent QR codes are embedded in posters, emails, receipts, or messages. When scanned, these can redirect users to fake login pages for e-wallets or banks, or even to sites that install harmful software on their devices. As a result, users may unknowingly send money to illegitimate accounts, even if the transaction appears familiar or routine.
What to watch out for
GCash reminds users to stay alert for key warning signs before completing any payment:
Suspicious website URLs that imitate GCash domains (e.g., “gcash-payments.com”, “gcsh.payment.com” instead of the official “payments.gcash.com”)
Mismatch in merchant identity, especially when the name displayed is random, incomplete, or unrelated to the actual business (e.g., “XJ82q” or “Merchant_123”)
Payment pages that feel inconsistent or unfamiliar, despite using GCash or QRPh logos
If any of these signs are present, users should stop the transaction immediately.
Proactive enforcement and collaboration
GCash has blocked wallets linked to these activities and escalated fraudulent sites for takedown. The company continues to work closely with government partners to strengthen enforcement and disrupt online fraud.
These efforts build on GCash’s sustained anti-fraud and cybersecurity campaigns such as GSafe Tayo. In 2025, GCash, in collaboration with the Cybercrime Investigation and Coordinating Center (CICC), has blocked over 3,200 merchants linked to illicit activities, which are often used as channels for fraudulent transactions and scams.
“By proactively blocking unauthorized actors and reporting them to our regulators and authorities, we are helping protect Filipinos and maintain trust in the country’s digital financial ecosystem,” said Miguel Geronilla, Chief Information Security Officer at GCash.
“Scammers are evolving alongside digital payments,” said Miguel Geronilla, Chief Information Security Officer at GCash. “We have zero tolerance for these actors and are actively blocking and reporting them to protect our users.”
“Protecting users is at the core of our platform,” Geronilla added. “We will continue to strengthen our safeguards and work hand-in-hand with the government to keep the ecosystem safe.”
Protecting every peso
GCash urges users to verify website URLs and merchant details before completing transactions and to stop immediately if anything appears suspicious.
GCash users can report suspected scams through the GCash Help Center at help.gcash.com by chatting with Gigi and selecting “I want to report a scam”, or by calling the official GCash hotline at 2882.
Users may also report incidents to the PNP Anti-Cybercrime Group at (02) 8414-1560 / 0998-598-8116 or [email protected], and to the Cybercrime Investigation and Coordinating Center (CICC) via hotline 1326, mobile 0991-481-4225, or [email protected].
By staying vigilant and using trusted platforms, Filipinos can better protect their funds and ensure that every peso counts.
More information is available at www.gcash.com

Related Tags

GCash Cybercrime phishing scam quishing
ADVERTISEMENT
.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1561_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1562_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1563_widget.title }}

{{ articles_filter_1564_widget.title }}

.mb-article-details { position: relative; } .mb-article-details .article-body-preview, .mb-article-details .article-body-summary{ font-size: 17px; line-height: 30px; font-family: "Libre Caslon Text", serif; color: #000; } .mb-article-details .article-body-preview iframe , .mb-article-details .article-body-summary iframe{ width: 100%; margin: auto; } .read-more-background { background: linear-gradient(180deg, color(display-p3 1.000 1.000 1.000 / 0) 13.75%, color(display-p3 1.000 1.000 1.000 / 0.8) 30.79%, color(display-p3 1.000 1.000 1.000) 72.5%); position: absolute; height: 200px; width: 100%; bottom: 0; display: flex; justify-content: center; align-items: center; padding: 0; } .read-more-background a{ color: #000; } .read-more-btn { padding: 17px 45px; font-family: Inter; font-weight: 700; font-size: 18px; line-height: 16px; text-align: center; vertical-align: middle; border: 1px solid black; background-color: white; } .hidden { display: none; }
function initializeAllSwipers() { // Get all hidden inputs with cms_article_id document.querySelectorAll('[id^="cms_article_id_"]').forEach(function (input) { const cmsArticleId = input.value; const articleSelector = '#article-' + cmsArticleId + ' .body_images'; const swiperElement = document.querySelector(articleSelector); if (swiperElement && !swiperElement.classList.contains('swiper-initialized')) { new Swiper(articleSelector, { loop: true, pagination: false, navigation: { nextEl: '#article-' + cmsArticleId + ' .swiper-button-next', prevEl: '#article-' + cmsArticleId + ' .swiper-button-prev', }, }); } }); } setTimeout(initializeAllSwipers, 3000); const intersectionObserver = new IntersectionObserver( (entries) => { entries.forEach((entry) => { if (entry.isIntersecting) { const newUrl = entry.target.getAttribute("data-url"); if (newUrl) { history.pushState(null, null, newUrl); let article = entry.target; // Extract metadata const author = article.querySelector('.author-section').textContent.replace('By', '').trim(); const section = article.querySelector('.section-info ').textContent.replace(' ', ' '); const title = article.querySelector('.article-title h1').textContent; // Parse URL for Chartbeat path format const parsedUrl = new URL(newUrl, window.location.origin); const cleanUrl = parsedUrl.host + parsedUrl.pathname; // Update Chartbeat configuration if (typeof window._sf_async_config !== 'undefined') { window._sf_async_config.path = cleanUrl; window._sf_async_config.sections = section; window._sf_async_config.authors = author; } // Track virtual page view with Chartbeat if (typeof pSUPERFLY !== 'undefined' && typeof pSUPERFLY.virtualPage === 'function') { try { pSUPERFLY.virtualPage({ path: cleanUrl, title: title, sections: section, authors: author }); } catch (error) { console.error('ping error', error); } } // Optional: Update document title if (title && title !== document.title) { document.title = title; } } } }); }, { threshold: 0.1 } ); function showArticleBody(button) { const article = button.closest("article"); const summary = article.querySelector(".article-body-summary"); const body = article.querySelector(".article-body-preview"); const readMoreSection = article.querySelector(".read-more-background"); // Hide summary and read-more section summary.style.display = "none"; readMoreSection.style.display = "none"; // Show the full article body body.classList.remove("hidden"); } document.addEventListener("DOMContentLoaded", () => { let loadCount = 0; // Track how many times articles are loaded const offset = [1, 2, 3, 4, 5, 6, 7, 8, 9, 10]; // Offset values const currentUrl = window.location.pathname.substring(1); let isLoading = false; // Prevent multiple calls if (!currentUrl) { console.log("Current URL is invalid."); return; } const sentinel = document.getElementById("load-more-sentinel"); if (!sentinel) { console.log("Sentinel element not found."); return; } function isSentinelVisible() { const rect = sentinel.getBoundingClientRect(); return ( rect.top < window.innerHeight && rect.bottom >= 0 ); } function onScroll() { if (isLoading) return; if (isSentinelVisible()) { if (loadCount >= offset.length) { console.log("Maximum load attempts reached."); window.removeEventListener("scroll", onScroll); return; } isLoading = true; const currentOffset = offset[loadCount]; window.loadMoreItems().then(() => { let article = document.querySelector('#widget_1690 > div:nth-last-of-type(2) article'); intersectionObserver.observe(article) loadCount++; }).catch(error => { console.error("Error loading more items:", error); }).finally(() => { isLoading = false; }); } } window.addEventListener("scroll", onScroll); });

Sign up by email to receive news.