HKICL flags multiple fraudulent FPS impersonation domains
HKICL identified several fraudulent domains impersonating it, targeting FPS users with fake refund and transaction support services.
Multiple lookalike domains (companyhk.xyz, hkiclfps.com and variants) were flagged as phishing sites soliciting personal data. The proliferation of domains signals scaled infrastructure behind FPS-targeted fraud.
Scaled phishing infrastructure against FPS increases fraud losses and regulatory scrutiny on payment participants.
Action Required
Expand domain takedown coordination, sanction fraud watchlists, and refresh customer scam warnings on FPS channels.
Multiple simultaneous fraudulent domains demonstrate industrialised payment fraud requiring escalated controls.
Escalate monitoring of FPS-branded lookalike domains and coordinate with HKICL/HKMA on takedowns. Review customer-facing scam warnings and internal fraud detection thresholds for FPS transactions.
“HKICL has recently noted fraudulent websites at companyhk.xyz, hkiclfps.com, hkicl-fps.cc.cd, fps-hkicl.ccwu.cc and fps-hkicl.cc.cd purported to be from the HKICL. The fraudulent websites imitate as Buyer Online Protection to provide services including refund to buyer, unauthorised online transaction reporting, and online transaction support for FPS payment.”