News

Public · Published

Hong Kong Bans SMS and Email Logins for Crypto Platforms: Will Other Regulators Follow?

Hong Kong's securities regulator has banned one-time password logins for crypto trading platforms. The rule targets phishing scams behind a surge in the region's cybersecurity incidents. The Securities and Futures Commission issued a circular. It orders internet brokers and crypto trading platforms to drop SMS, email, and app-based OTPs

Published:

Updated:

What happened

Hong Kong's securities regulator has banned one-time password logins for crypto trading platforms. The rule targets phishing scams behind a surge in the region's cybersecurity incidents. The Securities and Futures Commission issued a circular. It orders internet brokers and crypto trading platforms to drop SMS, email, and app-based OTPs

Confirmed

Global impact / market context

The ban forces crypto exchanges in Hong Kong to replace SMS, email and app OTPs with more secure login methods, reducing phishing risk and protecting user funds, which could boost confidence in the local crypto market.

Confirmed

Cyber‑security breaches have risen across Asia, prompting regulators to tighten digital‑asset rules. Hong Kong’s move follows global calls for stronger safeguards on crypto platforms, influencing how investors assess platform risk.

Analyst inference

What to watch

  1. How quickly crypto exchanges adopt alternative authentication (e.g., hardware keys or biometric) and whether the transition causes temporary user‑access issues. Proposed
  2. If other Asian regulators (e.g., Singapore, Japan) issue similar bans, creating a regional shift toward stricter login standards for digital‑asset services. Analyst inference
  3. Potential rise in compliance costs for platforms, which may affect fees or profitability and could be reflected in their financial statements or pricing models. Proposed

Evidence