Singapore to remove One-Time Passwords from Bank Accounts


By MYBRANDBOOK


Singapore to remove One-Time Passwords from Bank Accounts

According to the Monetary Authority of Singapore, clients who utilise secure digital tokens for identity authentication would no longer need to provide a one-time password to access their bank accounts for the next three months. It is highly recommended that online banking users activate digital tokens for their banking accounts so that they can access their bank accounts via a web browser or mobile app without having to rely on automatically generated, one-time passwords.

The announcement followed the Singapore Police issuing a warning about the reemergence of phishing scams that involved scammers impersonating banks to make victims divulge their banking account usernames, passwords and one-time passwords. In December, scammers defrauded 103 people in Singapore out of at least S$161,000.

The problem appears to be growing. In the first two weeks of January, scammers defrauded 219 people out of at least S$446,000. Many of these attacks involved scammers impersonating banks in SMS messages in which they directed users to click on links to verify their identities or cancel phony transactions.

President of Singapore Tharman Shanmugaratnam, who served as the chairman of the Monetary Authority of Singapore till July 2023, told Parliament shortly before stepping down from the post last year that the financial authority would set a deadline for phasing out one-time passwords as a sole authentication factor for high-risk transactions.

He said Singapore banks had already started phasing out SMS-based authentication for banking activities such as adding payees or changing fund transfer limits. Shanmugaratnam, however, ruled out giving banking users the option to opt out of SMS OTPs, warning that such a move could dilute banks' multilayered security for protecting customers.

The monetary authority in its announcement said that unlike one-time passwords, scammers cannot phish for customers' digital tokens by setting up fake bank websites, nor can they access a bank account or funds without the customer's explicit authorization.

 E-Magazine 
 VIDEOS  Placeholder image

Copyright www.mybrandbook.co.in @1999-2024 - All rights reserved.
Reproduction in whole or in part in any form or medium without express written permission of Kalinga Digital Media Pvt. Ltd. is prohibited.
Other Initiatives : www.varindia.com | www.spoindia.org