NEVIS — September 14, 2026 — The Bank of Nevis Limited is issuing an urgent cybersecurity warning to customers and the general public following information received from law enforcement partners regarding at least two emerging cyber threats targeting customers of licensed financial institutions across the Organisation of Eastern Caribbean States (OECS).
As a precautionary measure, and in keeping with guidance from the Eastern Caribbean Central Bank (ECCB), the Bank of Nevis is urging customers to remain vigilant and take appropriate steps to protect their personal and online banking information.
Threat 1: Smishing Attacks Targeting Banking Customers
Law enforcement partners have identified an aggressive increase in smishing attacks—fraudulent text messages designed to impersonate legitimate commercial banks and other trusted institutions.
These messages may attempt to convince recipients to click on fraudulent links, provide online banking credentials, disclose one-time passwords (OTPs), or share other authentication and personal information.
Customers are reminded that they should never disclose their online banking password, OTP, PIN, or other authentication credentials in response to an unsolicited text message, email, phone call, or social media communication.
Customers should also avoid clicking on links contained in suspicious or unexpected messages, even when the message appears to come from a legitimate financial institution.
Threat 2: Fraudulent Transactions Through Social Media Marketplaces
A second emerging threat involves the misuse of social media marketplaces and online platforms.
Individuals seeking to purchase vehicles, goods, or services—including construction, trucking, transportation, and other services—may be targeted by fraudsters posing as legitimate sellers or service providers.
In some cases, victims are manipulated into disclosing their online banking credentials or initiating mobile top-ups under false pretences.
Customers are urged to exercise extreme caution when conducting transactions with individuals or businesses encountered through social media. Do not provide online banking credentials or authentication information to another person to facilitate a transaction.
Protect Yourself
The Bank of Nevis encourages all customers and members of the public to:
Never share online banking passwords, PINs, OTPs, or other authentication credentials.
Do not click on links in unsolicited or suspicious text messages, emails, or social media communications.
Verify requests for payments or financial information using trusted contact information obtained independently.
Exercise caution when purchasing goods or engaging services through social media marketplaces.
Never allow another person to use your banking credentials or authentication information.
Report suspicious activity immediately to your financial institution.
If you believe you have responded to a fraudulent message, disclosed your banking credentials, or been the victim of a suspicious transaction, contact The Bank of Nevis immediately at 1-869-469-5564.
The Bank of Nevis remains committed to protecting the security of its customers and will continue to work with the relevant authorities and financial-sector partners to monitor emerging threats and keep the public informed.
Customers are encouraged to remain alert, verify before they act, and never share their banking credentials with anyone.

