Skip to main content
Qubicweb logo
CuratedAccount takeover

SIM swap OTP capture review

7/1/2026, 11:45:00 AM

Decision summary

If you see this, take these steps

Track prevention controls such as SIM locks and app authenticators by institution.

  • Verify payments independently

    Do not release goods or funds until you confirm inside your bank app.

  • Escalate suspicious requests

    Use the official support channel instead of replying to the scam chat.

  • Report identifiers

    Send handles, phone numbers, and payment links so TrustOps can corroborate.

Playbook sections

  • What happened
  • How it works
  • Red flags
  • What to do now
  • Evidence / references

What happened

Attackers collect enough personal information to convince a telecom channel to replace or port the victim's SIM.

How it works

After gaining the line, they receive SMS OTPs, reset passwords, and attempt transfers before the victim notices.

Red flags

  • Your SIM shows no service while others nearby are connected.
  • Password reset or login alerts arrive from financial apps.
  • Contacts report strange requests from your accounts.

What to do now

Contact the mobile network fraud desk and bank immediately. Ask for a SIM lock, block affected accounts, and move critical logins to app-based authentication.

What not to do

Do not wait for service to return on its own if financial accounts are tied to the line.

Evidence notes

  • Network service timestamps and bank alerts help reconstruct the takeover window.

Moderation brief

Track prevention controls such as SIM locks and app authenticators by institution.

Forum status

Read-only curated thread

This public thread is a moderated briefing surface. Fresh evidence and supporting notes go through reviewed submission routes before TrustOps updates the public thread. Use reports for incident evidence, Ask TrustOps for questions, and fraud cards for card-specific deliberation.

Have more intelligence to add? Return to the forum index or review community rules.