MiCA Deadline Creates Perfect Storm for Crypto Phishing Scams
Crypto phishing scams have been on the rise since July 1, 2026, when the MiCA regulation came into effect in the European Union. The regulation requires crypto service providers to obtain an authorization before operating in the EU.
However, tens of thousands of investors across Europe are receiving legitimate-sounding emails instructing them to withdraw their balances due to a provider winding down its EU business.
This has created a convenient starting point for scammers, who can pose as staff from supervisory authorities or licensed trading venues and instruct customers to move their holdings urgently.
To avoid falling victim to these scams, crypto investors should check the official registers of authorized providers. The ESMA MiCA register shows whether a company holds an authorization, which member state granted it, and which services it covers.
A provider may be authorized without its authorization covering every activity, so it's essential to search for the legal entity name rather than the brand name. If the message gives no company name at all, that too is a red flag.