Notice

Public Warning: Phishing Attempts on Bermuda Financial Services Licensees (2024-05-09)

Bermuda Monetary Authority (BMA) · Bermuda

Issued 2024-05-09

Current version last checked: 2026-07-07

Summary

This is a public press release from the Bermuda Monetary Authority warning that fraudulent emails impersonating the BMA (using addresses such as compliance@bmabm.com) have been sent to Bermuda-based financial services licensees. The emails attempt to get recipients to open a PDF and provide information urgently, and the BMA confirms its own systems have not been compromised.

  • Nature of threat: Phishing emails impersonating the BMA, sent from spoofed BMA addresses or private accounts, urging recipients to open a PDF attachment and supply information quickly.
  • BMA guidance: No genuine BMA request would take this form; recipients should not click links or open PDFs in such emails.
  • Recommended action: Delete suspicious emails immediately, avoid opening attachments or links, and report the email to the Bermuda Police Service and the BMA's Corporate Affairs Department.

This is an informational security warning rather than a rule change; it does not amend any licensing, filing or regulatory requirements.

Key obligations

  • Licensees who receive suspicious emails purporting to be from the BMA should refrain from opening attachments, clicking links, or responding to the sender.
  • Recipients of such phishing emails should delete them and report them to the Bermuda Police Service (via https://portal.police.bm) and to the BMA's Corporate Affairs Department.

Applies to

Bermuda-based financial services licensees registered with the BMA

Topics

Version history

2026-07-07

source file (current)