Security and Fraud Prevention Tips

1. Security Tips Key Points

·  Do not disclose or share your sensitive information (e.g. HKID, account number, PIN, one-time password etc.) with anyone under any circumstances (e.g. input your credentials through any embedded hyperlinks in email to conduct or confirm any transactions). No staff from ZA Bank (“the Bank”) or police officers will ever ask for such information.


·  If you lose and/or subsequently replace any identity documents which you registered with the Bank, notify the Bank immediately.


·  Verify the internet address is the ZA Bank website by clicking the 'Lock' icon at the browser's address bar to check the security certificate of the Bank.


·  Verify the transaction details including the payee name and amount when making transfers. If you have any enquiries, confirm with the payee before making the transaction.


·  Closely check the transaction notifications from the Bank, and regularly check your transaction history and bank statements.


·  When you set password, make sure it is difficult to guess and different from those for other services (e.g. internet services, web or mobile application services), and change your passwords regularly.


·  Avoid using easily accessible personal information such as your telephone number, ID Card number or your date of birth as your Password.


·  Never store the password on any device for accessing ZA Bank’s e-banking services.


·  Do not write down or record the password without disguising it.


·  Be aware of and follow security advice provided by ZA Bank from time to time.


·  If your mobile device is lost/stolen, please contact us at (852) 3665 3665. Upon receipt of your request, we will immediately secure your account.

2. Use of Mobile Application and Online Banking

·  Do not use any public computer or public Wi-Fi network to access your e-banking services. When connect Wi-Fi to access your e-banking services, choose encrypted networks and remove the unnecessary Wi-Fi connections.


·  Make sure the mobile application (app) download from official app stores and do not use the app on any “jailbroken” or “rooted” devices.


·  Do not install or run apps from third-party/ untrustworthy sources on your device and uninstall any suspicious app when necessary.


·  Do not open any attachments or click any hyperlinks embedded in any email, SMS, instant message, QR code, search engine, or any untrusted source and enter your login information.


·  Keep the operating system and app up to date with the latest security patches. Install anti-virus and anti-spyware software, keep them updated, and scan your device regularly.


·  To prevent unauthorised access by others, it is recommended to set up auto-lock and a passcode lock and enable remote wiping for your device in case of loss/theft. Do not disclose or share your Permitted Mobile Device passwords or security codes to any person. Do not allow anyone to access to your biometric authentication function on your Permitted Mobile Device.


·  Ensure that only your biometric credential is stored on your Permitted Mobile Device. Any biometric credential stored on your device can be used to access the mobile banking services. The Bank will not be responsible for any losses arising out of any unauthorized transaction due to failure to secure access to your Permitted Mobile Device.


·  Do not take any action to disable any function provided by, or agree to any settings of, your Permitted Mobile Device that may otherwise compromise the security of the use of your biometric credential for authentication purpose (e.g. disable “attention-aware” for facial recognition).


·  Be aware that the probability of a false match of facial map is different for twins and siblings that look like you. If you have identical siblings or siblings that look like you, you should not use facial recognition for authentication.

3. Fraud Prevention Information

·  If you have suspicions about the identity of any apparent intermediary/representative who promotes the Bank’s products or services, please contact our hotline at (852) 3665 3665 to verify with us immediately.


·  Beware bogus calls, fraudulent SMS messages, and e-mails. If you are suspicious about the identity of any callers, call at (852) 3665 3665 and verify with us immediately.


·  Beware of fraudsters who impersonate the staff of the Bank.


·  Beware of unauthorised transactions. If you notice any suspicious or unauthorised activity related to your account, you should make a call at (852) 3665 3665 and verify with the Bank immediately.

4. Other Security Information

To learn more about security issues related to e-banking services, please click the following links:

Hong Kong Police Force:

·  Beware of Technology Crimes

Hong Kong Monetary Authority:

·  Smart Tips on Using Net Banking Services

HKSAR Government:

·  Cyber Security Information Portal

·  InfoSec