HKMA consolidated scam alert on bank impersonation (9 July)
HKMA issued a further consolidated alert on fraudulent websites, phishing emails, and fake login screens targeting Hong Kong banks.
A second consolidated bank scam alert within two days indicates elevated phishing activity against HK banks. Institutions should escalate monitoring cadence, ensure incident response and customer notification playbooks are current, and coordinate with HKMA on takedown reporting.
Back-to-back alerts signal intensifying phishing campaigns requiring elevated operational vigilance.
Action Required
Continue heightened phishing surveillance and customer messaging on hyperlink-free banking communications; log alerts in fraud typology library.
Frequency of alerts underscores heightened fraud threat environment for HK retail banking.
Second scam alert within two days. Escalate phishing monitoring, expedite domain takedowns, and reissue customer warnings on hyperlink-based communications purporting to be from banks.
“The HKMA wishes to alert members of the public to the press releases issued by the banks listed below relating to fraudulent websites, internet banking login screens, phishing emails or other scams, which have been reported to the HKMA.”
Published: 2026-07-09