Search
Back
Financing  
 
Cash Plus Personal Loan
Instant approval and disbursement, with rates from as low as 4.38%p.a.*. Unlock financial flexibility with CIMB Cash Plus Personal Loan. Bank personal loan with low interest rate for loan up to RM100,000. 5 years tenure, no collaterals and guarantors required.
Remittance  
Currency Exchange  
Sustainability at CIMB  
CIMB@Work  
More Services  
Islamic Banking Overview  
Islamic Wealth Management  
Latest Promotions  
CIMB Deals  
CIMB OCTO App  
CIMB Clicks  
Apply for Products  
DuitNow QR  
Personalised For You  
Customer Help Centre  
Locate Us  
Extra Care by CIMB  
You're viewing:
Personal Banking
Other Sites
Day To Day Banking
Wealth Management
Investments
Insurance/Takaful
Help & Support
Rates & Charges
Calculators
Security & Fraud
logo
MY - EN

Important Notice Dated: 9 June 2025

Notice of Amendments to the CIMB Online Banking Agreement

 

Dear Valued Customers,

 

Please be informed that the CIMB Online Banking Agreement will be amended to update the CIMB Clicks registration and Forgot User ID and Password steps and to add eKYC enhancement on CIMB OCTO app. With this update, the CIMB Card PIN will no longer be used for CIMB Clicks registration or Forgot UserID and Password, and will be replaced by ID Type and UserID.

 

The amendments/deletions are set out in italics and removed in the table below and shall take effect on 30 June 2025:

Existing Clause Revised Clause

Definitions

 

"CIMB Card PIN" means the six-digit numeric personal identification number assigned to or chosen by you for the purpose of using a CIMB debit card or CIMB credit card issued to you under your Account.

 

 

"CIMB Clicks ID" or "User ID" a unique name selected by you the first time that you register for CIMB Online Banking consisting of no less than six (6) and no more than thirty-two (32) alphanumeric characters (which must be keyed in by you every time you log on), to allow CIMB Bank's online banking system to associate it with your CRN and CIMB Card Pin for verification and authentication purposes in order to grant you access to CIMB Online Banking.

 

 

"CRN" means the sixteen-digit number of a CIMB debit card or CIMB credit card as assigned by CIMB Bank or CIMB Islamic Bank linked to your Account with CIMB Bank or CIMB Islamic Bank and which must be keyed in together with your CIMB Card Pin the first time you register for CIMB Online Banking.

 

Definitions

 

"CIMB Clicks ID" or "User ID" a unique name selected by you the first time that you register for CIMB Online Banking consisting of no less than six (6) and no more than thirty-two (32) alphanumeric characters (which must be keyed in by you every time you log on), to allow CIMB Bank's online banking system to associate it with your CRN,  ID Type and ID Number for verification and authentication purposes in order to grant you access to CIMB Online Banking.

 

 

"CRN" means the sixteen-digit number of a CIMB debit card or CIMB credit card as assigned by CIMB Bank or CIMB Islamic Bank linked to your Account with CIMB Bank or CIMB Islamic Bank and which must be keyed in the first time you register for CIMB Online Banking.

 

 

eKYC” refers to the Know Your Customer process to verify your identity remotely using electronic means.

 

 

"Identification Type" or “ID Type” means the identification document used to open Account(s) with CIMB Bank and/or CIMB Islamic Bank such as new IC, old IC, passport, police, army, MY permanent resident, MyKAS, etc.

 

“ID Number” means the identification number stated in your identification document.

 

“KYC” refers to the Know Your Customer process to verify your identity.

 

1.      Application and Enrolment to CIMB Online Banking

 

1.3 Enrollment for CIMB Online Banking may be undertaken by utilizing your details linked to your CIMB debit card or CIMB credit card. The CRN and CIMB Card Pin will be utilised once during registration, during which you will be required to nominate a CIMB User ID and an Online Banking Password. After that, you will access CIMB Online Banking using your CIMB User ID and Online Banking Password.

 

 

1.4 You may apply for a CIMB Card Pin from CIMB Bank or CIMB Islamic Bank in accordance with any procedures as prescribed by CIMB Bank or CIMB Islamic Bank from time to time.

1.      Application and Enrolment to CIMB Online Banking

 

1.3 Enrollment for CIMB Online Banking may be undertaken by utilizing your details linked to your CIMB debit card or CIMB credit card. The CRN, ID Type and ID Number will be utilised once during registration, during which you will be required to nominate a CIMB User ID and an Online Banking Password. After that, you will access CIMB Online Banking using your CIMB User ID and Online Banking Password.

 

 

1.4 In the event enrollment for CIMB Online Banking is via your CIMB debit card which is linked to a joint Account, you warrant and represent that you have obtained the consent and authorization from all the other joint account holder(s) for you to enroll for CIMB Online Banking and to be bound by these Terms and Conditions.

 

2.     Procedure For Enrolment And Access To CIMB Online Banking

 

2.1 To enroll for CIMB Online Banking, you need to register online at www.cimbclicks.com.my by clicking on the online registration tab.

 

i) Where you have a CIMB debit card or CIMB credit card together with the CIMB Card Pin for such CIMB debit card or CIMB credit card, you must use the CRN, CIMB Card Pin and complete the CAPTCHA (a challenge-response test) appearing on screen to register on www.cimbclicks.com.my. Your registration will be blocked if you enter the wrong CIMB Card PIN three (3) times. You must also nominate a CIMB User ID and an Online Banking Password in accordance with Clause 2.3. These steps only need to be carried out once. On subsequent occasions, you will access CIMB Online Banking using your CIMB User ID and Online Banking Password

 

 

 

 

2.3 Upon successful validation of your:

 

i) CRN, CIMB Card Pin and the CAPTCHA results; or

 

 

ii) loan/financing account number, or unit trust account number (as applicable), the CAPTCHA results and your personal particulars, a TAC on SMS will be sent to you based on the mobile device number provided by you to the Bank. You must key in the TAC on SMS and then select and key in your preferred User ID that will enable your continued access and use of CIMB Online Banking. You will then be prompted to key in your Online Banking Password.

 

 

 

1.4   After completion of the steps detailed above and the on-screen confirmation by you, of the details provided by you, you will be granted access to CIMB Online Banking.

 

 

 

 

 

 

2A. Procedure for first time setup and subsequent log on to the CIMB OCTO App:

 

i) After you have downloaded and installed the CIMB OCTO App, you will be required to key in your User ID and Online Banking Password. Upon successful verification of your User ID and Online Banking Password, you will be prompted to deactivate your existing device if you have previously downloaded and installed the CIMB OCTO App on another mobile device, set the device name and to activate:

- a) Push Notification (optional), b) Biometric Authentication (only available for selected supported mobile devices) (optional), c) Quick Payment (optional), d) Passcode (optional) and e) SecureTACTM (mandatory).

 

ii) Next, you will be required to request a TAC on SMS, which will be sent to your mobile. To complete the setup successfully, you need to enter the TAC on SMS that you have requested.

 

 

iii) Upon completion of the above steps, there will be a 12-hour cooling - off period before you are able to access the Banking Services in CIMB OCTO App.

 

 

iv) After you have successfully set up the CIMB OCTO App, if you wish to perform selected Banking Services via CIMB OCTO App, you will be required to key in your Online Banking Password. You can also perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time without your Online Banking Password if Biometric Authentication in CIMB OCTO App and/or Passcode in CIMB OCTO App is activated.

 

v) If you wish to log in to the CIMB OCTO App using Biometric Authentication, you will be required to "Login using Touch ID" or Face ID on your iOS device or "Login using my Fingerprint" or Facial Recognition on your Android device. If you have activated Biometric Authentication, you can perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time.

 

 

 

vi) If you wish to log in to the CIMB OCTO App using Passcode, you will be required to activate this function on your iOS or Android device. You will need to enter and confirm the Passcode before you proceed with TAC on SMS verification. Once it is activated, you can perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time that is applicable to the Passcode login function.

 

 

 

vii) In the event you have not logged on to CIMB OCTO App for 30 calendar days, upon launching the CIMB OCTO App, you will be required to repeat steps (i), (ii) and (iii) above in relation to first time setup of CIMB OCTO App starting from the input of your CIMB User ID and Online Banking Password.

 

 

 

 

viii) You are not allowed to set up the CIMB OCTO App using your CIMB User ID on more than the maximum number of mobile device determined by CIMB Bank at any one time. In addition, the same mobile phone number cannot be linked or registered to more than the permitted number of CIMB User ID as set out in this Website or as permitted by CIMB Bank on a case to case basis.

 

 

ix) By using the CIMB OCTO App, you agree to grant us permission to access selected functions and data on your Primary Device to support the operation of the CIMB OCTO App as well as for monitoring and prevention of fraudulent activities. These functions may include location services and device information such as OS version, device model and device unique identifiers. 

2.      Procedure For Enrolment And Access To CIMB Online Banking

 

2.1 To enroll for CIMB Online Banking, you need to register online at www.cimbclicks.com.my by clicking on the online registration tab.

 

i) Where you have a CIMB debit card or CIMB credit card, you must use the CRN, your ID Type, ID Number and complete the CAPTCHA (a challenge-response test) appearing on screen to register on www.cimbclicks.com.my. You must also nominate a CIMB User ID and an Online Banking Password in accordance with Clause 2.3. These steps only need to be carried out once. On subsequent occasions, you will access CIMB Online Banking using your CIMB User ID and Online Banking Password

 

 

 

2.3 Upon successful validation of your:

 

i) CRN, ID Type and ID Number and the CAPTCHA results; or

 

ii) loan/financing account number, or unit trust account number (as applicable), the CAPTCHA results and your personal particulars,

 

a TAC on SMS will be sent to you based on the mobile device number provided by you to the Bank. You must key in the TAC on SMS and then select and key in your preferred User ID that will enable your continued access and use of CIMB Online Banking. You will then be prompted to key in your Online Banking Password.

 

2.4 After completion of the steps detailed above and the on-screen confirmation by you, of the details provided by you, you will be required need to download the CIMB OCTO App and perform first time setup to CIMB OCTO App to complete the enrolment. After enrolment, there will be a 12-hour cooling - off period before you are able to access CIMB Online Banking.

 

 

 2A. Procedure for first time setup and subsequent log on to the CIMB OCTO App:

 

i) After you have downloaded and installed the CIMB OCTO App, you will be required to key in your User ID and Online Banking Password. Upon successful verification of your User ID and Online Banking Password, you will be prompted to deactivate your existing device if you have previously downloaded and installed the CIMB OCTO App on another mobile device, set the device name and to activate:

- a) Push Notification (optional), b) Biometric Authentication (only available for selected supported mobile devices) (optional), c) Quick Payment (optional), d) Passcode (optional) and e) SecureTACTM (mandatory).

 

ii) Next, you will be required to request a TAC on SMS, which will be sent to your mobile. To complete the setup successfully, you need to enter the TAC on SMS that you have requested.

 

 

iii) After successfully validating the TAC on SMS, you will be prompted to perform eKYC. You may choose to proceed with eKYC via CIMB OCTO App or visit any CIMB Bank or CIMB Islamic branch for KYC.

 

iv) Upon completion of eKYC through CIMB OCTO Appthe above steps, there will be a 12-hour cooling - off period before you are able to access the Banking Services in CIMB OCTO App. If you complete KYC at a CIMB Bank or CIMB Islamic branch, you may not be subject to the 12-hour cooling-off period.

 

 

 

v) After you have successfully set up the CIMB OCTO App, if you wish to perform selected Banking Services via CIMB OCTO App, you will be required to key in your Online Banking Password. You can also perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time without your Online Banking Password if Biometric Authentication in CIMB OCTO App and/or Passcode in CIMB OCTO App is activated.

 

 

vi) If you wish to log in to the CIMB OCTO App using Biometric Authentication, you will be required to "Login using Touch ID" or Face ID on your iOS device or "Login using my Fingerprint" or Facial Recognition on your Android device. If you have activated Biometric Authentication, you can perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time.

 

 

 

vii) If you wish to log in to the CIMB OCTO App using Passcode, you will be required to activate this function on your iOS or Android device. You will need to enter and confirm the Passcode before you proceed with TAC on SMS verification. Once it is activated, you can perform Quick Access or other selected Banking Services as may be determined by CIMB Bank from time to time that is applicable to the Passcode login function.

 

 

viii) In the event you have not logged on to CIMB OCTO App for 30 calendar days, upon launching the CIMB OCTO App, you will be required to repeat steps (i), (ii) and (iii) above in relation to first time setup of CIMB OCTO App starting from the input of your CIMB User ID and Online Banking Password.

 

 

 

ix) You are not allowed to set up the CIMB OCTO App using your CIMB User ID on more than the maximum number of mobile device determined by CIMB Bank at any one time. In addition, the same mobile phone number cannot be linked or registered to more than the permitted number of CIMB User ID as set out in this Website or as permitted by CIMB Bank on a case to case basis.

 

x) By using the CIMB OCTO App, you agree to grant us permission to access selected functions and data on your Primary Device to support the operation of the CIMB OCTO App as well as for monitoring and prevention of fraudulent activities. These functions may include location services and device information such as OS version, device model and device unique identifiers.

 

3.      Procedure for Retrieval of CIMB User ID and Reset of Online Banking Password

 

3.1 Should you forget your User ID and/or Online Banking Password, the only way for you to retrieve your User ID and/or reset your Online Banking Password is by going online at www.cimbclicks.com.my and clicking on the 'Forgot ID & Password' tab.

 

i) Where you have a CIMB debit card or CIMB credit card together with the CIMB Card Pin for such CIMB debit card or CIMB credit card, you must use the CRN, CIMB Card Pin and complete the CAPTCHA (a challenge-response test) appearing on screen for validation purposes, in order to retrieve your User ID and/or to reset and change your Online Banking Password

 

 

 

 

3.2 Upon successful validation of your:

 

i) CRN, CIMB Card Pin and the CAPTCHA results; or

3.      Procedure for Retrieval of CIMB User ID and Reset of Online Banking Password

 

3.1 Should you forget your User ID and/or Online Banking Password, the only way for you to retrieve your User ID and/or reset your Online Banking Password is by going online at www.cimbclicks.com.my and clicking on the 'Forgot ID & Password' tab.

 

i) Where you have a CIMB debit card or CIMB credit card, you must use the CRN, ID Type, ID Number and complete the CAPTCHA (a challenge-response test) appearing on screen for validation purposes, in order to retrieve your User ID and/or to reset and change your Online Banking Password

 

 

 

3.2 Upon successful validation of your:

 

i) CRN, ID Type, ID Number and the CAPTCHA results; or

 

 

3.4 There will be a 12-hour cooling - off period before you are able to access CIMB Online Banking.

 

5.Responsibility for CIMB Card Pin, CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data

 

 

5.1 You agree and acknowledge that you must at all times keep your CIMB Card Pin, CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data confidential and will not share or disclose your CRN, CIMB Card Pin, Online Banking Password, TAC on SMS, SecureTACTM, SecureTACTM Number, Passcode, User ID and Biometric Data to any person, including any officers of CIMB Bank or CIMB Islamic Bank. You are under a duty to exercise utmost care, diligence and caution to safeguard your mobile device from loss, theft or fraudulent use of your mobile device to prevent any unauthorised use of your TAC on SMS or SecureTACTM or SecureTACTM Number, sent to your mobile device.

 

 

 

5.2 You must, at all times:

 

5.2.1 observe all security measures as may be prescribed by CIMB Bank or CIMB Islamic Bank in relation to your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Primary Device and Biometric Data. You are required to adhere to the Dos and Don'ts in relation to the protection and safeguarding of your: (i) personal information, (ii) CIMB Online Banking details, (iii) CIMB Card Pin, and to protect your computer/ mobile devices and your online information by taking the recommended measures as set out at https://www.cimb.com.my/en/personal/help-support/security-and-fraud/security-and-fraud-awareness.html;

 

 

 

 

5.2.2 take all reasonable precautions necessary to ensure that no other persons have or will be granted access to your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data. Such precautions may include, among others, immediately memorising your CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID and destroying any envelope or document on which it is stated (if any);

 

 

5.2.3 not retain the CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID in any form except in memory;

 

5.2.5 ensure that others do not see you entering the CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID upon access to CIMB Online Banking; and

 

5.3 You agree that you will, at all times, be responsible for all access and/or use of CIMB Online Banking made via your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data whether it was in fact made by you or by any other persons purporting to be you. You further consent and agree that your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data will serve as a means of verifying your identity to CIMB Bank and CIMB Islamic Bank for purposes of the transactions contemplated under CIMB Online Banking. In this regard, you authorise CIMB Bank and CIMB Islamic Bank to accept, follow and act upon your instructions when verifying your identity through your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data. CIMB Bank and CIMB Islamic Bank will not be liable for acting upon such instructions in good faith. You will be solely responsible for the security and care of the computers or mobile devices used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM. Please note the risks in the event your computer or mobile device linked to your User ID to receive the SecureTACTM Number, TAC on SMS or SecureTACTM is compromised or loss.

 

 

 

5.4 If you discover or have reasonable grounds to believe that your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data and/or your computer and/or your mobile devices has/have been compromised in any way (including any loss, theft, remote takeover or interception of the SecureTACTM Number, TAC on SMS or SecureTACTM and/or any other device used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM, including your mobile telecommunication device) and/or you have received any statement, data or information sent to you by CIMB Bank and/or CIMB Islamic Bank (via Push Notification in CIMB OCTO App or by SMS or other modes of communication) which either indicates that an unauthorized transaction has taken place, or is otherwise not intended for you, you must immediately notify CIMB Bank via telephone at its Customer Resolution Unit specified in Clause 14.1. For the avoidance of doubt, all telephone calls made to CIMB Bank's Customer Resolution Unit will be logged and recorded by CIMB Bank.

 

 

5.5 Until CIMB Bank or CIMB Islamic Bank is satisfied that (i) you have fulfilled your obligations under Clauses 5.1 to 5.4 above and (ii) your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data has been compromised, you remain liable for all transactions that arise due to such compromise up to the point in time when notification is made or should have been made. For the avoidance of doubt, the point in time when notification should be made is immediately upon you discovering or having reasonable grounds to believe that your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data and/or computer and/or mobile devices have/has been compromised in any way (including any loss, theft, remote takeover or interception of the SecureTACTM Number, TAC on SMS or SecureTACTM and/or any other device used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM, including your mobile telecommunication device). If you fail to notify the Bank at such point in time, you will, in addition to being liable for all transactions conducted up to such point in time, be liable for the actual loss which occurs after such point in time, until CIMB Bank or CIMB Islamic Bank receives and records actual notification made by you, subject to Clause 5.8 below.

 

 

 

5.6 Upon CIMB Bank's receipt of your notification made pursuant to Clause 5.4 above, CIMB Bank may, suspend your access to CIMB Online Banking until a new CRN is provided for and/or a new CIMB Card Pin, Online Banking Password, TAC on SMS, SecureTACTM, SecureTACTM Number, Passcode and User ID (as the case may be) is issued or applied for and/or such reported/unreported discrepancies are resolved by CIMB Bank.

 

 

5.7 Where any unauthorised use of your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data, your computer or your mobile device is due to your own action or any fraud, disclosure, abuse or misuse, which is deliberate, you will be liable for such use even if you make a notification pursuant to Clause 5.4 above.

 

 

5.Responsibility for CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data

 

 

5.1 You agree and acknowledge that you must at all times keep your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data confidential and will not share or disclose your CRN, Online Banking Password, TAC on SMS, SecureTACTM, SecureTACTM Number, Passcode, User ID and Biometric Data to any person, including any officers of CIMB Bank or CIMB Islamic Bank. You are under a duty to exercise utmost care, diligence and caution to safeguard your mobile device from loss, theft or fraudulent use of your mobile device to prevent any unauthorised use of your TAC on SMS or SecureTACTM or SecureTACTM Number, sent to your mobile device.

 

 

 

5.2 You must, at all times:

 

5.2.1 observe all security measures as may be prescribed by CIMB Bank or CIMB Islamic Bank in relation to your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Primary Device and Biometric Data. You are required to adhere to the Dos and Don'ts in relation to the protection and safeguarding of your: (i) personal information, and (ii) CIMB Online Banking details, and to protect your computer/ mobile devices and your online information by taking the recommended measures as set out at https://www.cimb.com.my/en/personal/help-support/security-and-fraud/security-and-fraud-awareness.html;

 

 

 

5.2.2 take all reasonable precautions necessary to ensure that no other persons have or will be granted access to your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data. Such precautions may include, among others, immediately memorising your Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID and destroying any envelope or document on which it is stated (if any);

 

 

5.2.3 not retain the CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID in any form except in memory;

 

5.2.5 ensure that others do not see you entering the CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode and User ID upon access to CIMB Online Banking; and

 

5.3 You agree that you will, at all times, be responsible for all access and/or use of CIMB Online Banking made via your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data whether it was in fact made by you or by any other persons purporting to be you. You further consent and agree that your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data will serve as a means of verifying your identity to CIMB Bank and CIMB Islamic Bank for purposes of the transactions contemplated under CIMB Online Banking. In this regard, you authorise CIMB Bank and CIMB Islamic Bank to accept, follow and act upon your instructions when verifying your identity through your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data. CIMB Bank and CIMB Islamic Bank will not be liable for acting upon such instructions in good faith. You will be solely responsible for the security and care of the computers or mobile devices used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM. Please note the risks in the event your computer or mobile device linked to your User ID to receive the SecureTACTM Number, TAC on SMS or SecureTACTM is compromised or loss.

 

 

5.4 If you discover or have reasonable grounds to believe that your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data and/or your computer and/or your mobile devices has/have been compromised in any way (including any loss, theft, remote takeover or interception of the SecureTACTM Number, TAC on SMS or SecureTACTM and/or any other device used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM, including your mobile telecommunication device) and/or you have received any statement, data or information sent to you by CIMB Bank and/or CIMB Islamic Bank (via Push Notification in CIMB OCTO App or by SMS or other modes of communication) which either indicates that an unauthorized transaction has taken place, or is otherwise not intended for you, you must immediately notify CIMB Bank via telephone at its Customer Resolution Unit specified in Clause 14.1. For the avoidance of doubt, all telephone calls made to CIMB Bank's Customer Resolution Unit will be logged and recorded by CIMB Bank.

 

 

5.5 Until CIMB Bank or CIMB Islamic Bank is satisfied that (i) you have fulfilled your obligations under Clauses 5.1 to 5.4 above and (ii) your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and/or Biometric Data has been compromised, you remain liable for all transactions that arise due to such compromise up to the point in time when notification is made or should have been made. For the avoidance of doubt, the point in time when notification should be made is immediately upon you discovering or having reasonable grounds to believe that your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data and/or computer and/or mobile devices have/has been compromised in any way (including any loss, theft, remote takeover or interception of the SecureTACTM Number, TAC on SMS or SecureTACTM and/or any other device used to generate and/or receive the SecureTACTM Number, TAC on SMS or SecureTACTM, including your mobile telecommunication device). If you fail to notify the Bank at such point in time, you will, in addition to being liable for all transactions conducted up to such point in time, be liable for the actual loss which occurs after such point in time, until CIMB Bank or CIMB Islamic Bank receives and records actual notification made by you, subject to Clause 5.8 below.

 

 

5.6 Upon CIMB Bank's receipt of your notification made pursuant to Clause 5.4 above, CIMB Bank may, suspend your access to CIMB Online Banking until a new CRN is provided and/or a new Online Banking Password, TAC on SMS, SecureTACTM, SecureTACTM Number, Passcode and User ID (as the case may be) is issued or applied for and/or such reported/unreported discrepancies are resolved by CIMB Bank.

 

 

5.7 Where any unauthorised use of your CRN, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID, Biometric Data, your computer or your mobile device is due to your own action or any fraud, disclosure, abuse or misuse, which is deliberate, you will be liable for such use even if you make a notification pursuant to Clause 5.4 above.

 

6. Instructions and Authorisations

 

6.1 You will, at all times, be responsible for all Instructions (including but not limited to withdrawals, transfers or to otherwise deal with your Accounts) transmitted to CIMB Bank or CIMB Islamic Bank via CIMB Online Banking based on your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data regardless of whether they were made by you or someone purporting to be you. You agree and acknowledge that subject to CIMB Bank having received notification from you pursuant to Clause 5.4, CIMB Bank or CIMB Islamic Bank will be entitled to rely on and treat any Instructions made, submitted or effected pursuant to the use of your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data as having been made, submitted and effected by you.

 

 

 

 

 

 

6.2 All Instructions transmitted to and/or received by CIMB Bank or CIMB Islamic Bank through your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data will be deemed as regular and genuine Instructions made by you. For the avoidance of doubt, CIMB Bank or CIMB Islamic Bank is under no obligation to verify such Instructions with you to determine their authenticity but CIMB Bank or CIMB Islamic Bank may do so for its own purposes.

 

 

 

6.3 Subject to Clause 6.5, all Instructions transmitted via your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data will be irrevocable and binding on you upon transmission.

 

6. Instructions and Authorisations

 

6.1 You will, at all times, be responsible for all Instructions (including but not limited to withdrawals, transfers or to otherwise deal with your Accounts) transmitted to CIMB Bank or CIMB Islamic Bank via CIMB Online Banking based on your CRN, ID Number, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data regardless of whether they were made by you or someone purporting to be you. You agree and acknowledge that subject to CIMB Bank having received notification from you pursuant to Clause 5.4, CIMB Bank or CIMB Islamic Bank will be entitled to rely on and treat any Instructions made, submitted or effected pursuant to the use of your CRN, ID Number, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data as having been made, submitted and effected by you.

 

 

 

 

 

6.2 All Instructions transmitted to and/or received by CIMB Bank or CIMB Islamic Bank through your CRN, ID Number, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data will be deemed as regular and genuine Instructions made by you. For the avoidance of doubt, CIMB Bank or CIMB Islamic Bank is under no obligation to verify such Instructions with you to determine their authenticity but CIMB Bank or CIMB Islamic Bank may do so for its own purposes.

 

 

 

6.3 Subject to Clause 6.5, all Instructions transmitted via your CRN, ID Number, Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, Passcode, User ID and Biometric Data will be irrevocable and binding on you upon transmission.

 

14. Error Reporting and Queries

 

14.2.8 the amounts involved in the suspected error, disputed transaction, query or complaint (as applicable).

 

Notwithstanding the above, you must not, at any time and under any circumstances, disclose your Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, User ID, Passcode, CRN and CIMB Card Pin to any CIMB Bank or CIMB Islamic Bank staff or representative or any other third party.

14. Error Reporting and Queries

 

14.2.8 the amounts involved in the suspected error, disputed transaction, query or complaint (as applicable).

 

Notwithstanding the above, you must not, at any time and under any circumstances, disclose your Online Banking Password, SecureTACTM, SecureTACTM Number, TAC on SMS, User ID, Passcode and CRN to any CIMB Bank or CIMB Islamic Bank staff or representative or any other third party.

 

18. Exclusions of Liability

 

18.2.7 any loss, theft or unauthorised use of your CRN, CIMB Card Pin, Online Banking Password, SecureTACTM Number, TAC on SMS, SecureTACTM, Passcode, User ID, Biometric Data and or mobile device due to your failure to observe your obligations under these Terms and Conditions;

 

18. Exclusions of Liability

 

18.2.7 any loss, theft or unauthorised use of your CRN, ID Number, Online Banking Password, SecureTACTM Number, TAC on SMS, SecureTACTM, Passcode, User ID, Biometric Data and or mobile device due to your failure to observe your obligations under these Terms and Conditions;

 

 

The revised CIMB Online Banking Agreement can be assessed via the URL below on 30 June 2025:

 

English | Bahasa Malaysia

 

For further clarification, you may contact our Consumer Contact Centre at +603 6204 7788

 

The Management

CIMB Bank Berhad