Categories: Digital LifeNews

CIMB ‘kena hacked’: CIMB says it’s normal to login with extra characters added to password

After CIMB had issued a statement assuring that CIMB Clicks and other systems are secure, the bank has just released an FAQ to address the additional security concerns. This morning, they had confirmed that reCAPTCHA was added as an additional measure to enhance security. 

Yesterday evening, there were a number of social media postings that claimed that CIMB Clicks had allowed access for “wrong” passwords. The reality is that access was only granted when a correct password was used for the first 8 characters followed by any additional characters. (E.g. If the password was abcd1234, you can access with abcd12345678.)   

In the FAQ, CIMB has clarified that this is completely normal and it is due to the way the Clicks Password Rule was designed. According to CIMB, this only affects passwords set before 18th November 2018. If you’ve changed your password recently, you can’t login with additional characters added to the actual password. Below is the FAQ on the password issue. 

CIMB had also mentioned that any news related to online security of CIMB Clicks is untrue and they insisted that their platform remains safe and all transactions are protected. According to CIMB, they have an IT security team that monitors any suspicious activities on CIMB Clicks. For customers that suspected their account has been compromised, they are urged to call their contact centre at 03-6204 7788 or by email at cru@cimb.com.

CIMB has not responded to our queries on unauthorised debit card transactions and this tweet by ZDNet’s security reporter. You can read the full FAQ here.

Recent Posts

BYD Atto 3 2026 Facelift now in Malaysia: Priced from RM126k, available in FWD and RWD variants

The 2026 BYD Atto 3 is now officially in Malaysia - the first market to…

3 hours ago

Zeekr Malaysia partners with DC Handal to expand EV charging network along North-South Expressway

Zeekr Malaysia has signed a Memorandum of Understanding (MoU) with DC Handal to expand the…

11 hours ago

MyGOV app will stream FIFA World Cup 2026 matches for free

If you're planning to catch the FIFA World Cup 2026 on your mobile device, there's…

12 hours ago

This Saturday: Watch over 100 EVs take over Sepang Circuit

From the Hyundai Ioniq 5 N and Porsche Taycan Turbo to the Denza D9 and…

13 hours ago

Gentari x MBPP deploy 120kW DC Charger at Pusat Komuniti Pagar Buloh in Bayan Lepas

If you need to charge your EV at Bayan Lepas, there's now a new Gentari…

16 hours ago

JomCharge x DBKL turn on third EV charging location at Kuchai Lama, 50% off this weekend

JomCharge x DBKL EV Charger deployment continues in Kuchai Lama and they have just turned…

17 hours ago

This website uses cookies.