HKMA issues scam alert on bank-related fraudulent websites
HKMA alerted the public to fraudulent websites, phishing emails, and scams impersonating banks, referencing press releases from affected banks.
Recurring HKMA scam alerts indicate persistent phishing and impersonation threats targeting Hong Kong banking customers. Institutions should reassess fraud monitoring, takedown processes, and customer education programmes.
Elevated fraud and reputational risk for Hong Kong retail banks; supervisory attention on customer protection remains high.
Action Required
Review customer fraud controls, phishing detection, and public communications; reinforce customer awareness on unsolicited hyperlinks.
Recurrent HKMA alerts highlight sustained fraud pressure and reinforce supervisory expectations on anti-scam controls.
Enhance phishing site monitoring, domain takedown, and customer alerting. Validate fraud transaction monitoring rules and ensure customer communications comply with HKMA anti-scam guidance and never contain embedded hyperlinks.
“HKMA alerts the public to press releases from banks regarding fraudulent websites, internet banking login screens, phishing emails or other scams, and reminds that banks will not send SMS or emails with embedded hyperlinks.”
Published: 2026-07-15