The alert underscores the increasing sophistication of cybercriminals who are deploying fake apps and phishing attempts to capture sensitive customer information, including login credentials and one-time passwords. HKMA reminded the public that legitimate banks will never request such information via SMS, email, or embedded links, and emphasized adherence to established security protocols to mitigate risk…