Risk Horizon
Live

Intelligence generated by AI from public regulatory sources. Not investment or regulatory advice. Verify before relying on any output.

IncreasingMedium2026-07-17

HKMA warns of bank-related scams and phishing activity

Banking SupervisionOtherGeneral RegulatoryRetail BankingHong KongConf: High
Regulatory Event

HKMA issued a scam alert referencing multiple banks affected by fraudulent websites, phishing emails and related scams.

Analysis

The HKMA alert highlights sustained phishing and impersonation threats targeting Hong Kong bank customers. Institutions should validate URL monitoring, takedown workflows and customer education, and reiterate that banks do not send embedded transactional links via SMS or email.

Relevance

Increases fraud, conduct and reputational risk exposure for retail-facing banks operating in Hong Kong.

Required Action

Action Required

Reinforce customer anti-phishing communications and review fraud detection controls for impersonation attacks.

Justification

Recurring HKMA scam alerts signal elevated fraud threat environment and supervisory attention to consumer protection.

Control Commentary

Verify brand monitoring and phishing takedown SLAs; review customer authentication and scam warning messaging. Ensure fraud MI captures impersonation trends and escalation to HKMA.

Source

The HKMA alerts the public to press releases from banks relating to fraudulent websites, internet banking login screens, phishing emails or other scams, and reminds the public that banks will not send SMS or emails with embedded hyperlinks.

Scam alert related to banks

Published: 2026-07-16

RH-2026-07-17-008