Changeflow GovPing Banking & Finance CSBS Warns of Phishing Campaign Impersonating NMLS
Priority review Notice Added Final

CSBS Warns of Phishing Campaign Impersonating NMLS

Favicon for www.banking.nh.gov NH Banking News & Announcements
Published March 23rd, 2026
Detected March 23rd, 2026
Email

Summary

The Conference of State Bank Supervisors (CSBS) has issued a warning regarding a phishing campaign impersonating the Nationwide Multistate Licensing System (NMLS). The campaign uses fraudulent websites and emails to capture user credentials. Regulated entities are advised to be vigilant and report suspicious activity.

What changed

The Conference of State Bank Supervisors (CSBS) has identified a phishing campaign that impersonates the Nationwide Multistate Licensing System (NMLS). Threat actors are using unauthorized domains and fraudulent websites that mimic NMLS branding to capture user credentials. These emails may create a false sense of urgency, prompting recipients to click malicious links or submit sensitive information.

Financial institutions and individuals using NMLS should exercise extreme caution with unexpected emails requesting sensitive information or urgent actions. It is critical to verify sender email addresses, avoid clicking suspicious links, and only access NMLS through official channels. Any suspected credential compromise requires immediate password reset, and suspicious emails should be reported to security@csbs.org.

What to do next

  1. Verify sender email addresses for unfamiliar or misspelled domains.
  2. Avoid clicking on suspicious links or opening attachments.
  3. Report suspicious emails to security@csbs.org and reset passwords if credentials were compromised.

Source document (simplified)

  • Home
  • CSBS warns of phishing campaign impersonating NMLS

Announcement For Immediate Release Posted: March 23, 2026


Contact Ian Clark, Public Information Officer
(603) 271-4865 | ian.m.clark@banking.nh.gov

CSBS warns of phishing campaign impersonating NMLS

From the Conference of State Bank Supervisors (CSBS):

We have identified a phishing campaign impersonating NMLS (Nationwide Multistate Licensing System). These emails originate from unauthorized domains and include links to fraudulent websites designed to capture user credentials while mimicking NMLS branding.

These messages may appear credible and create a sense of urgency to prompt actions such as clicking links or entering sensitive information.

Please keep the following in mind:

  • Be cautious of unexpected emails requesting sensitive information or urgent action.
  • Verify sender email addresses for unfamiliar or misspelled domains.
  • Avoid clicking on suspicious or shortened links or opening attachments.
  • Only access NMLS through official channels.
  • Report suspicious emails to your security team or security@csbs.org. If you believe you entered credentials on a suspicious site, reset your password immediately.

Source

Analysis generated by AI. Source diff and links are from the original.

Classification

Agency
State Banking
Published
March 23rd, 2026
Instrument
Notice
Legal weight
Non-binding
Stage
Final
Change scope
Substantive

Who this affects

Applies to
Financial advisers Employers Legal professionals
Industry sector
5221 Commercial Banking 5231 Securities & Investments 5241 Insurance
Activity scope
Credential Management Information Security
Geographic scope
United States US

Taxonomy

Primary area
Financial Services
Operational domain
IT Security
Compliance frameworks
BSA/AML
Topics
Cybersecurity Consumer Protection

Get Banking & Finance alerts

Weekly digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get alerts for this source

We'll email you when NH Banking News & Announcements publishes new changes.

Free. Unsubscribe anytime.