us

216.73.217.135

Back
News

MAS Imposes Capital Requirements on OCBC for Inadequate Scam Response

MAS Imposes Capital Requirements on OCBC for Inadequate Scam Response
R Richard M. MAY 27, 2022 1 minute read

Additional capital requirements have been imposed on the OCBC bank by the Monetary Authority of Singapore (MAS) after a spotty response to phishing scams. 

The Monetary Authority of Singapore has placed additional capital requirements on the Oversea-Chinese Banking Corporation (OCBC) Bank after passing an inadequate response to phishing scams in December. An amount of around S$330 million will be required by OCBC to hold up as additional capital.

The assistant managing director for banking and insurance at MAS, Marcus Lim said that it is the prime duty of financial corporations to incorporate robust solutions to combat these scams. 

While commenting on the official website of MAS, Lim commented “This means ensuring that their controls remain effective against evolving scam tactics, and prompt actions are taken as soon as a scam is detected”. He further added that MAS is currently working closely with the industry and other agencies on dealing with these scams and strengthening the collective defences against them. 

The bank came under severe criticism as it lost S$13.7 million in scams while affecting around 790 victims in January. The scam was carried out by sending SMS to the victims through a spoofed phone number. The messages claimed that they were being sent through the bank providing links to a fake website to provide login credentials for resolving the issues with their bank accounts. 

The CEO of OCBC Bank, Helen Wong, said: “While we took various actions in December to stem the scam, we should have responded faster and better to early signs of the attacks.” Moreover, she added that the phishing attacks in December reached a level of realism which were not seen in the previous attacks. 

The OCBC has enforced an independent firm to review its systems, as noted by MAS. “Deficiencies were noted in the bank’s mitigation of identified risks, pre- and post-transaction controls, incident management and complaints handling, resulting in delays in containment measures and customer response time.”

Suggested Read: SMS Phishing Scams are Impersonating State Agencies – FTC Warns

Disclaimer: The views and opinions expressed on this webpage or weblink are those of the author only, and are not necessarily the views or opinions of Shufti Pro Limited. The material and information on this weblink is solely for general information purposes. You should not rely upon the material or information on the website as a basis for making any business or legal decision.

While we endeavor to keep the information up-to-date and/or correct, we make no representations or warranties of any kind, express or implied, or for any purpose about the completeness, accuracy, reliability, suitability, or availability of the contents or information herein. Any reliance on its content is thus entirely at your own risk.

For the avoidance of doubt, Shufti Pro Limited will not be liable for any false, inaccurate, inappropriate, or incomplete information presented herein, and all liabilities with respect to actions taken, or not taken, based on the contents or information herein, or for any loss sustained by you as a consequence are hereby expressly disclaimed by us.

Share you link

Bring your voice

Bring Your Voice.

The community for every hand that writes and every voice that speaks against fraud.

Join Community

Pitch a piece and get a verified byline in the Media room.

“Industry Partnerships That Create Real Value”

Join Shufti’s partnership network to expand your connections, collaborate with industry leaders, and unlock new opportunities.

Pitch a piece and get a verified byline in the Media room.

Partnership Inquiries?
Email us at [email protected]

iBeta Level 1 — ISO 30107-3 Compliant iBeta Level 2 — ISO 30107-3 Compliant iBeta Level 3 — ISO 30107-3 Compliant PCI DSS SOC 2 Type 2 GDPR GDPR Fundamentals — Quality Guild ISO 27001:2022 KJM Age Verification CCPA / CPRA Cyber Essentials Cyber Essentials Plus
Copyright © 2026 Shufti. All rights reserved.