BDO Securities (formerly BDO Nomura) has sent out an urgent email alert to all customers that starting January 30, 2022, it will no longer allow the use of OTP Generator for Desktop and Mobile App. Instead, only the One-Time Password via SMS will be accepted when logging into the online accounts (BDO Securities account).
BDO is requesting customers to update their mobile phone numbers registered with the bank so the OTP will be properly sent during the login process. The OTP Generator in the app will still be there but BDO says to disregard it.
This recent move by BDO to disable the OTP Generator could be attributed to the recent hacking incident with BDO online customers.
Just last week, 5 suspects were arrested by the NBI regarding this incident. It is possible that the suspects identified the flaw in BDO’s security system and pointed to the OTP Generator as the weak point, prompting BDO to issue this statement.
YugaTech.com is the largest and longest-running technology site in the Philippines. Originally established in October 2002, the site was transformed into a full-fledged technology platform in 2005.
How to transfer, withdraw money from PayPal to GCash
Prices of Starlink satellite in the Philippines
Install Google GBox to Huawei smartphones
Pag-IBIG MP2 online application
How to check PhilHealth contributions online
How to find your SIM card serial number
Globe, PLDT, Converge, Sky: Unli fiber internet plans compared
10 biggest games in the Google Play Store
LTO periodic medical exam for 10-year licenses
Netflix codes to unlock hidden TV shows, movies
Apple, Asus, Cherry Mobile, Huawei, LG, Nokia, Oppo, Samsung, Sony, Vivo, Xiaomi, Lenovo, Infinix Mobile, Pocophone, Honor, iPhone, OnePlus, Tecno, Realme, HTC, Gionee, Kata, IQ00, Redmi, Razer, CloudFone, Motorola, Panasonic, TCL, Wiko
Best Android smartphones between PHP 20,000 - 25,000
Smartphones under PHP 10,000 in the Philippines
Smartphones under PHP 12K Philippines
Best smartphones for kids under PHP 7,000
Smartphones under PHP 15,000 in the Philippines
Best Android smartphones between PHP 15,000 - 20,000
Smartphones under PHP 20,000 in the Philippines
Most affordable 5G phones in the Philippines under PHP 20K
5G smartphones in the Philippines under PHP 16K
Smartphone pricelist Philippines 2024
Smartphone pricelist Philippines 2023
Smartphone pricelist Philippines 2022
Smartphone pricelist Philippines 2021
Smartphone pricelist Philippines 2020
Jonathan says:
I got an email but from BDO SECURITIES only or the stock trading arm of BDO. This news only applies to BDO SEC. BDO Sec wont accept the generated OTP, only the SMS generated one.
Paul says:
Wouldn’t this be less secure than authenticator app-based OTP? SMS messages can be intercepted in transit.
Bob Reyes says:
Based on the email I received from BDO Securities, this will only be affecting those who use the services of BDO Securities
Michael Sims says:
So ridiculous. Right from the start of OTP, I had said to BDO, that if someone could hack into a person’s account, they will in no time learn to hack through a simple OTP. I remember the manager saying that that would be impossible. I told him nothing is impossible. He reiterated, that this was. So now a few years later, here we are with what problem? Oh, that’s right, someone figured out how to hack the OTP. Not only that. It had been well known, that this is the weakest link in the entire online banking access steps. Wow! Great job BDO.
ads says:
Says a lot about BDO’s competence in security.
SMS 2FA is inherently flawed and is more prone to attacks. Security experts have been advising against using SMS authentication for years and here we see one of the biggest bank in the country taking a step back in their security. You reason that your OTP generator is your weakest link but that’s because you retards decide to implement your own OTP rather than follow the industry standard.
You should fire the person who made this retarded decision.
JR says:
BDO SUCKS
BDOSUCK says:
Please don’t use BDO Nomura, you’ll surely lose money specially if you are a day trader or has target price in mind. The super delayed OTP will cause you a huge headache and a pocket ache as well. Learned from experience.
Rhymel says:
Just last week I can receive the OTP for BDO Securities then suddenly I no longer receive it but the OTP for my BDO Saving Account still coming. I was able to speak with the Customer Service after numerous attempts of dialing their very poor HOTLINE. Of course it cost me several hundred Pesos for this phone calls. He explained that the telecom here in Kuwait is blocking the OTP for BDO Securities and they are working on it to solve the issue. Since I do day trading, their (BDO) failure could mean financial loss for me because I cannot access my account. I am using my account in FirsMetroSec to monitor the stock market. BDO seems don’t care if you loss your investment and they will not provide you details of what is going on or their action to solve the problem. What kind of investment firm is this if they don’t care about your investment and they will just leave you in the dark?
ALMA NATHANEEL RODA says:
otp by sms is totlally bullshit..did BDO think of their thousands of seafarer clients who works mostly at sea all the time? ppano makakareceive ng sms yung mga yun kong nasa laot at wlang signal. BDO should have the option to receive OTP via email kase sa mga barko ngayun ay may internet na so they can have access to emails and not sms in the middle of the sea.