Notice

Fraudulent Phishing Email (2024-05-09)

Cayman Islands Monetary Authority (CIMA) · Cayman Islands

Issued 2024-05-09

Current version last checked: 2026-07-05

Summary

This is a public alert issued by the Cayman Islands Monetary Authority (CIMA) warning that a phishing email impersonating CIMA is circulating. The fraudulent email claims to be from a CIMA employee named Sarah Ghosh, sent from an address on the domain "ky-cima.org", which is not a genuine CIMA domain. CIMA confirms that all legitimate CIMA emails come only from the "@cima.ky" domain, and that any email from a different domain purporting to be from CIMA should be treated as fraudulent.

The notice is informational and aimed at the general public rather than regulated entities specifically.

  • CIMA states it is investigating the matter.
  • CIMA confirms its own network and systems were not compromised or breached.
  • CIMA asks recipients not to click on links or attachments in the suspicious email.
  • The public is urged to remain vigilant, particularly as other fraudulent domains may be used in similar future campaigns.
  • CIMA requests that anyone who receives suspicious emails of this nature report them to its Public Relations contact address.

There are no regulatory filing requirements, compliance deadlines, or changes to rules created by this notice — it is a security/fraud awareness alert only.

Key obligations

  • Recipients should not click on links or attachments in emails from the ky-cima.org domain or other suspected fraudulent domains impersonating CIMA
  • Report any suspicious emails purporting to be from CIMA to ContactPublicRelations@cima.ky
  • Verify that genuine CIMA emails originate only from the @cima.ky domain before trusting communications claiming to be from CIMA

Version history

2026-07-05

source file (current)

2026-07-05

source file