The Central Bank of Barbados has warned customers never to share BiMPay verification codes, tokens, passwords or other security credentials following a reported social engineering fraud involving an online loan offer. There is no indication that the BiMPay platform was compromised. The unauthorized transaction occurred after a customer gave a third party mobile and email verification codes and a BiMPay token during a purported loan application. Customers should independently verify requests for financial or personal information, particularly those made through social media or messaging platforms. Anyone who has disclosed security credentials should immediately contact their financial institution to secure or disable BiMPay access, while suspected fraud should also be reported to the Barbados Police Service.
2026-09-15Central Bank of Barbados
Central Bank of Barbados warns BiMPay users against sharing security credentials after online loan fraud
The Central Bank of Barbados has warned BiMPay users not to share verification codes, tokens, passwords or other security credentials after a reported online loan fraud. The platform itself was not compromised, and the unauthorized transaction followed the customer's disclosure of security information to a third party. Affected users should immediately contact their financial institution and report suspected fraud to the police.