• NEWS MIDDLEEAST
  • UAEVARTHA
Thursday, September 17, 2026
UAE Vartha - English
Advertisement
  • UAE
    • Abu Dhabi
    • Dubai
    • Sharjah
    • Ajman
    • Ras Al Khaimah (RAK)
    • Fujairah
    • Umm Al Quwain (UAQ)
  • GCC
  • Kerala
  • India
  • News
    • Business
    • Politics
    • World
    • Science
  • Tech
  • Entertainment
  • Lifestyle
  • UAE
    • Abu Dhabi
    • Dubai
    • Sharjah
    • Ajman
    • Ras Al Khaimah (RAK)
    • Fujairah
    • Umm Al Quwain (UAQ)
  • GCC
  • Kerala
  • India
  • News
    • Business
    • Politics
    • World
    • Science
  • Tech
  • Entertainment
  • Lifestyle
UAE Vartha - English
  • Malayalam News
  • UAE
  • GCC
  • Kerala
  • India
  • News
  • Entertainment
  • Tech
  • Lifestyle
Home News Business

UAE Banks Phase Out SMS Passwords, Shifting Online Payments to In-App Approvals

Web Desk by Web Desk
September 17, 2026
in Business, Tech
0
UAE banks are phasing out SMS OTPs for online payments under Central Bank rules, switching to biometric in-app approvals to eliminate SIM-swap fraud.
39
SHARES
112
VIEWS
Share on whatsappShare on Facebook

Central Bank mandate forces lenders toward biometric confirmation to curb SIM-swap fraud and phishing attacks

DUBAI, Sept. 17, 2026 : Banks across the United Arab Emirates are dismantling traditional SMS and email one-time passwords for online card payments, replacing them with encrypted in-app authorizations and biometric verification.

Shoppers completing digital checkout in the UAE will notice an immediate difference at the payment gateway. Instead of waiting for a six-digit code via text message, transactions now trigger instant notifications prompting users to authorize the charge directly inside their bank’s mobile application.

The industry-wide transition follows direct regulatory intervention by the Central Bank of the United Arab Emirates (CBUAE). Under regulatory guidelines issued to licensed financial institutions, traditional text and email delivery methods for online transaction approval are being phased out in favor of secure, device-bound protocols. The regulator set a final compliance deadline of March 31, 2026, prompting lenders to roll out app-centric verification frameworks across retail accounts.

During an online purchase, entering card details no longer brings up a code entry field. Consumers receive a prompt on the merchant screen to review the pending order on their registered smartphone. Some lenders dispatch a companion text alert advising the cardholder that an authorization request is pending.

Customers then open their banking app, navigate to pending approvals or tap a push prompt, and inspect the merchant name, charge amount, and currency. Authorization requires passing a biometric check—typically facial recognition or fingerprint scanning—or entering a bank-specific digital PIN such as a Smart Pass code. Transactions typically carry a short countdown window, expiring automatically if ignored.

The push away from SMS stems from long-standing structural vulnerabilities in telecommunications channels. Fraud syndicates operating across the region have increasingly deployed SIM-swap schemes, convincing mobile carriers to reassign victim phone numbers to attacker-controlled SIM cards. Combined with sophisticated social-engineering calls and phishing websites designed to capture six-digit codes in real time, SMS-based verification had evolved into a primary target for financial crime.

Because in-app approvals occur within an encrypted software ecosystem tied to a registered hardware device, intercepted telecommunication data cannot validate a charge. Without the authenticated smartphone and registered biometric data, unauthorized parties cannot complete online transactions.

Implementation details vary across institutions. Major lenders, including Dubai Islamic Bank, Emirates NBD, and First Abu Dhabi Bank, have transitioned card authentication pathways through iterative mobile updates, with some maintaining transitional options while customers register their biometric credentials. Financial institutions are urging cardholders who have not activated mobile banking apps or biometric permissions to complete setup promptly to avoid payment disruptions.

Tags: Central Bank of UAEDubai NewsGulf FinanceMalayalam NewsOnline SecurityUAE BankingUae News
Web Desk

Web Desk

https://media.assettype.com/gulfnews%2F2024-11-17%2Fin5yzqmb%2FTRAFFIC_455_1597837351188_17406871916_original_ratio.jpg?w=640&auto=format%2Ccompress&fit=max
Travel

Morning Bottlenecks Hit Dubai-Sharjah Corridors on E11 and E311 Arteries

Donald Trump signals direct talks between the US and Iran, yet drone strikes in Hormuz, shipping blocks, and fuel pressures test Gulf transport routes.
GCC

Gulf Chokepoints Under Strain as US-Iran Diplomacy Emerges Alongside Maritime Attacks

At ATM 2026 in Dubai, tourism ministers and airline executives outlined contingency plans and data sharing to secure post-conflict Middle East aviation.
Business

Middle East Tourism Leaders Plan Post-Conflict Aviation Rebound at ATM 2026

UAE hotel operator HMH deploys biodigesters and atmospheric water generators across properties in Sharjah and Ajman to cut food waste and single-use plastics.
Business

HMH strengthens sustainable hotel operations as UAE hotels turn to technology and circular solutions

UAE Vartha - English

© 2026 News Middle East. All Rights Reserved.

Navigate Site

  • NEWS MIDDLEEAST
  • UAEVARTHA

Follow Us

  • Malayalam News
  • UAE
    • Abu Dhabi
    • Dubai
    • Sharjah
    • Ajman
    • Fujairah
    • Umm Al Quwain (UAQ)
    • Ras Al Khaimah (RAK)
  • GCC
  • Kerala
  • India
  • News
    • Politics
    • Business
    • World
    • Science
  • Entertainment
    • Gaming
    • Music
    • Movie
    • Sports
  • Tech
    • Apps
    • Gear
    • Mobile
    • Startup
  • Lifestyle
    • Food
    • Fashion
    • Health
    • Travel

© 2026 News Middle East. All Rights Reserved.