Notice
Public Warning: Phishing Attempts on Bermuda Financial Services Licensees (2024-05-09)
Issued 2024-05-09View on BMA's website Source document
Summary
This is a public press release from the Bermuda Monetary Authority warning that fraudulent emails impersonating the BMA (using addresses such as compliance@bmabm.com) have been sent to Bermuda-based financial services licensees. The emails attempt to get recipients to open a PDF and provide information urgently, and the BMA confirms its own systems have not been compromised.
- Nature of threat: Phishing emails impersonating the BMA, sent from spoofed BMA addresses or private accounts, urging recipients to open a PDF attachment and supply information quickly.
- BMA guidance: No genuine BMA request would take this form; recipients should not click links or open PDFs in such emails.
- Recommended action: Delete suspicious emails immediately, avoid opening attachments or links, and report the email to the Bermuda Police Service and the BMA's Corporate Affairs Department.
This is an informational security warning rather than a rule change; it does not amend any licensing, filing or regulatory requirements.
Key obligations
- Licensees who receive suspicious emails purporting to be from the BMA should refrain from opening attachments, clicking links, or responding to the sender.
- Recipients of such phishing emails should delete them and report them to the Bermuda Police Service (via https://portal.police.bm) and to the BMA's Corporate Affairs Department.
Applies to
Bermuda-based financial services licensees registered with the BMA
Topics
Version history
2026-07-07