amp-web-push-widget button.amp-subscribe { display: inline-flex; align-items: center; border-radius: 5px; border: 0; box-sizing: border-box; margin: 0; padding: 10px 15px; cursor: pointer; outline: none; font-size: 15px; font-weight: 500; background: #4A90E2; margin-top: 7px; color: white; box-shadow: 0 1px 1px 0 rgba(0, 0, 0, 0.5); -webkit-tap-highlight-color: rgba(0, 0, 0, 0); } .wp-block-jetpack-rating-star span:not([aria-hidden="true"]) { display: none; } .amp-logo amp-img{width:387px} .amp-menu input{display:none;}.amp-menu li.menu-item-has-children ul{display:none;}.amp-menu li{position:relative;display:block;}.amp-menu > li a{display:block;} /* Inline styles */ div.acssa9ae5{align-content:center;display:flex;} .icon-widgets:before {content: "\e1bd";}.icon-search:before {content: "\e8b6";}.icon-shopping-cart:after {content: "\e8cc";} amp-img.amp-logo { vertical-align: top; aspect-ratio: auto 1136 / 400; width: 165px; } * { font-size: 100%; font-family: "Noto Serif", sans-serif; }
Categories: Digital LifeNews

CIMB ‘kena hacked’: CIMB says it’s normal to login with extra characters added to password

After CIMB had issued a statement assuring that CIMB Clicks and other systems are secure, the bank has just released an FAQ to address the additional security concerns. This morning, they had confirmed that reCAPTCHA was added as an additional measure to enhance security. 

Yesterday evening, there were a number of social media postings that claimed that CIMB Clicks had allowed access for “wrong” passwords. The reality is that access was only granted when a correct password was used for the first 8 characters followed by any additional characters. (E.g. If the password was abcd1234, you can access with abcd12345678.)   

In the FAQ, CIMB has clarified that this is completely normal and it is due to the way the Clicks Password Rule was designed. According to CIMB, this only affects passwords set before 18th November 2018. If you’ve changed your password recently, you can’t login with additional characters added to the actual password. Below is the FAQ on the password issue. 

CIMB had also mentioned that any news related to online security of CIMB Clicks is untrue and they insisted that their platform remains safe and all transactions are protected. According to CIMB, they have an IT security team that monitors any suspicious activities on CIMB Clicks. For customers that suspected their account has been compromised, they are urged to call their contact centre at 03-6204 7788 or by email at cru@cimb.com.

CIMB has not responded to our queries on unauthorised debit card transactions and this tweet by ZDNet’s security reporter. You can read the full FAQ here.

Recent Posts

Infinix opens 1 Utama brand store this Sunday: Here are the opening day promos

Infinix is expanding its physical retail footprint in Malaysia with a new brand store at…

1 hour ago

CMF Clip Pro: Nothing’s budget open-wearable earbuds with Smart Dial and Hi-Res audio

Following earlier teasers, CMF by Nothing has officially launched the CMF Clip Pro, marking the…

3 hours ago

BMW iX3 50 xDrive now in Malaysia: The first Neue Klasse EV, priced at under RM400k

The 2nd generation BMW iX3 is now officially in Malaysia, marking the beginning of the…

4 hours ago

MBSB Bank Visa Debit Card-i now supports Samsung Wallet and Google Pay

MBSB Bank customers can now add their Visa Debit Card-i to Samsung Wallet and Google Pay, allowing them…

17 hours ago

Alliance Bank announces Apple Pay support: Only for Visa credit cards, offers RM30 launch cashback

Almost 4 years after the feature arrived in Malaysia, Apple Pay is now finally available…

20 hours ago

JomCharge turns on 180kW DC Charger at McDonald’s Meru Raya Ipoh, 50% off for one month

If you need to charge your EV while travelling between Kuala Lumpur and Penang, there's…

22 hours ago

This website uses cookies.