eServices Cyber Security & Anti-Fraud Advice

Here at Khaleeji Bank, we are committed to preventing cyber-crimes and providing a safe banking environment for our clients.

As part of our keenness to protect our clients, we have launched a cybersecurity awareness campaign to highlight the latest cyber-attack patterns and help ​clients identify red flags and report them. The Latest Threats include Phishing, Vishing and Malware. Here are some tips on what to do to safeguard against these threats.

 

Phishing

  • What is it? A form of social engineering attack in which the ‘Phisher’ attempts to trick users into revealing sensitive infor​mation such as usernames, passwords, credit card details, etc. The most common type of phishing attack is when the Phisher impersonates a Bank Staff Member and sends fake emails to clients requesting them to fill ​out a form or click a link.
  • What are the consequences? Successful phishing attacks can lead to complete account takeover. Attackers can login to your bank account and perform malicious actions such as changing your information and making transactions on your behalf.

 

If you believe you were phished, follow these security steps:

  1. Immediately login to your bank account
  2. Change your credentials such as password and PIN code
  3. Once your password/PIN have been reset, report the incident to Khaleeji by calling the Call Center on 17​ 540054
  4. Provide necessary information about the incident such as
    1. The link you clicked
    2. The email address that approached you
    3. The time of the incident.

 

Vishing

  • What is it? Vishing, or Voice Phishing, is a form of cyber-attack in which a scammer calls a client, convinces them they are a Bank Staff Member, and requests confidential information to process or update the client’s information.
  • What are the conseq​uences? Revealing your sensitive information to unknown parties can lead to complete account takeover. This allows the attackers to login to your bank account and perform malicious actions such as changing information and making transactions on your behalf.
  • What do I do if I was vished​? If you believe you were vished, immediately login to your bank account and change your credentials such as password and PIN code. Once your password/PIN have been reset, report the incident to Khaleeji by calling the Call Center on 17 540054 and provide necessary information about the incident such as the number that called you and the time of the incident.

 

Malware

  • What is it? A malicious software, “Malware” for short, is designed specifically to cause harm to the device it is downloaded on.
  • What are the consequences? Once installed, the malware can extract sensitive information and share them with malicious parties. Aside from complete bank account takeover, malware can lead to other systems/applications on your device to be compromised such as your social media account.​
  • What do I do if my device is infected? If your device is infected with malware, the following actions can be taken to reduce the damage of the malware.
    1. Log out from all active sessions such as bank account, social media, and email.
    2. Disconnect your device from the internet by disconnecting the Ethernet cable or disabling Wi-Fi.
    3. From another clean device, change the credentials of your accounts that were logged in from your infected machine.
    4. Run an anti-virus scan on your infected device.

 

 

Secure Yourself

Phishing Vishing Malware
Verify the email/SMS sender Verify the caller’s identity Do not click on unknown or unsafe links
Do not click on unknown or unsafe links Do not reveal sensitive information over the phone Ensure your device is updated
Do not share any sensitive information such as usernames, passwords, or credit card information Report any suspicious calls to 17 540054 or Email our Anti-Fraud team.  applications from trusted sources only
​Report any suspicious SMS/Email to 17 540054 or Email our Anti-Fraud team. Perform regular anti-virus scans on your device using specialized programs
Report any suspicious activities on your account to 17 540054 or Email our Anti-Fraud team. Do not access your banking applications via unsafe Wi-Fi Hotspots linked to public areas


Secure Your Device

  • Install the latest updates
  • Install applications from trusted sources (Play Store, App Gallery, and App Store only)
  • Do not save passwords when logging in and ensure you log out after use when on public or non-private devices

 

Strengthen Your Password

  • Use complex passwords that:
    • Combine strings (Ex: Mohammed Ali = MoAli)
    • Use numbers and special characters (Ex: Mohammed Ali, 1972 = MoAl!1972)
    • Use a minimum of 8 characters
  • Change your passwords frequently
  • Do not write do​wn your passwords anywhere accessible by other individuals
  • Do not share your passwords with anyone​
  • Enable Two-Factor Authentication
  • Do not reuse the same passwords when they expire, and have different ones for other applications

 

Browse Safely

  • Ensure that the website you are visiting is genuine
  • Khaleeji’s websites are “www.stg-khaleejibank-staging.kinsta.cloud”
  • Ensure that the website is secure, t​he URL must start with “https”, not “http​”