

New anti-phishing measures kick in on Dec 16; banks, telcos to share liability for scam losses
SINGAPORE, Oct 26 – Banks such as DBS Bank, UOB, OCBC Bank and Citibank, and payment services providers that offer e-wallets, such as Grab, YouTrip and
Several banks and payment services providers will be the first to participate in a new framework that will determine who is responsible for covering losses incurred by phishing scams. The framework, which will be fully implemented on December 16, aims to establish clear duties for financial institutions and telcos in preventing and responding to phishing scams.
DBS Bank, UOB, OCBC Bank, Citibank, Grab, YouTrip, and Revolut will be among the first to join the framework, which was finalised on Thursday. The four telcos—Singtel, StarHub, M1, and Simba Telecom—will follow suit, The Straits Times reported.
If the duties outlined by the Monetary Authority of Singapore (MAS) and Infocomm Media Development Authority (IMDA) for financial institutions and telcos are fulfilled, victims will be expected to bear the cost of a scam.
Here's a summary of the duties for financial institutions and telcos that will come into force on December 16.
Financial institutions
12-hour cooling period: Financial institutions and banks are required to implement a 12-hour cooling period when a digital security token is activated – for example, when a user sets up an account on a new device. During the period, no high-risk activities can be performed, such as adding new payees or carrying out high-value transactions, to give customers more time to spot potential unusual activities on their accounts. The 12-hour cooling-off period also applies to logins to an e-wallet such as Grab on a new device.
Alert users to high-risk activities: Users should be immediately notified whenever a digital security token linked to their accounts is activated, and in the event of any high-risk activities like high-value transactions.
Notify users of outgoing transactions: Banks and financial institutions must alert customers to outgoing transactions through real-time notifications so customers can promptly report potential scams.
24-hour reporting channel and ‘kill’ switch: Users should always have access to a reporting channel, allowing them to reach the financial institution to block scammers from making any fraudulent transactions on their accounts. Customers should also have access to a “kill” switch that allows them to freeze their accounts and prevent further unauthorised transactions. The emergency feature was introduced in 2022 following a spate of phishing scams targeting OCBC customers, who lost a total of about S$13.7 million (RM45.03 million)
Set up real-time fraud surveillance: Financial institutions will be required to set up real-time fraud surveillance systems that block unauthorised transactions. Banks must be able to detect when a large sum of money – defined as a transaction involving above half of a balance in an account of at least S$50,000 (RM164,330) – is being transferred from an account, and either block the suspicious transaction until it is able to get the customer’s confirmation, or hold the transaction for at least 24 hours.
Telcos
Flag unauthorised aggregators: Customers should receive text messages displaying the name of the sender only if they come from authorised senders that are registered with IMDA’s SMS Sender ID Registry. Companies frequently send bulk text messages through aggregators, which act on behalf of a business. Texts received by users from unauthorised sources will be flagged as “likely scam”.
Block unauthorised sender IDs: Telcos are required to block messages from all unauthorised aggregators to prevent their customers from receiving sender ID SMSes from external channels, including unknown networks.
Anti-scam filters: Telcos are expected to set up anti-scam filters for all SMS messages that pass through their networks. The filters are designed to scan for messages containing URLs that match a database of malicious links that have been flagged.
The above is the detailed content of New anti-phishing measures kick in on Dec 16; banks, telcos to share liability for scam losses. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics











Inscribing Singapore x Ordinals Summit 2024 is a groundbreaking event that brings together the best and brightest in the Bitcoin Ordinals space. The event is the result of a strategic partnership between Inscribing Atlantis and the Ordinals Summit te

A gold coin exchangeable for a life-changing S$500,000 in cash has been hidden on Oct. 30, the 21st day of the month-long game, and is waiting to be found.

The Singapore police are investigating seven individuals trading Worldcoin accounts and tokens, noting that this may violate the Payments Services Act of 2019.

Set to redefine live music experiences with spatial audio technology, Polygon Productions will combine binaural sound and synchronised lighting to curate an immersive sensory journey for its Singapore debut.

A provincial authority in Buenos Aires, Argentina has hit Worldcoin Foundation with a fine and ordered it to strike multiple clauses from its terms of service.

Singapore’s cryptocurrency market has seen a notable increase in crypto payments, with merchant services receiving nearly US$1 billion in crypto during the second quarter of 2024.

Inscribing Singapore x Ordinals Summit 2024 is a groundbreaking event that brings together the best and brightest in the Bitcoin Ordinals space. The event is the result of a strategic partnership between Inscribing Atlantis and the Ordinals Summit te

With only less than a week to go, the highly anticipated 'Meet Your Meme' After Party hosted by LBank in collaboration with Shiba Inu, Baby Doge, and SaitaChain is poised to be a standout event during TOKEN2049.