{"id":5077,"date":"2025-07-03T10:06:53","date_gmt":"2025-07-03T10:06:53","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/07\/03\/chinese-student-charged-for-running-a-mass-smishing-campaign-to-harvest-victims-personal-details\/"},"modified":"2025-07-03T10:06:53","modified_gmt":"2025-07-03T10:06:53","slug":"chinese-student-charged-for-running-a-mass-smishing-campaign-to-harvest-victims-personal-details","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/07\/03\/chinese-student-charged-for-running-a-mass-smishing-campaign-to-harvest-victims-personal-details\/","title":{"rendered":"Chinese Student Charged for Running a Mass Smishing Campaign to Harvest Victims Personal Details"},"content":{"rendered":"<p>    Chinese Student Charged for Running a Mass Smishing Campaign to Harvest Victims Personal Details<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>A sophisticated smishing operation targeting tens of thousands of potential victims across Greater London has resulted in the sentencing of Ruichen Xiong, a Chinese student, to over a year in prison at Inner London Crown Court.<\/p>\n<p>The case represents a significant escalation in mobile-based <a href=\"https:\/\/cybersecuritynews.com\/hackers-attacking-investors-via-fraud-networks\/\" target=\"_blank\" rel=\"noreferrer noopener\">fraud tactics<\/a>, utilizing advanced SMS blasting technology to conduct large-scale credential harvesting operations between March 22-27, 2025.<\/p>\n<p>Xiong\u2019s operation employed a mobile SMS Blaster device transported in a Black Honda CR-V, enabling him to establish rogue base stations throughout the Greater London area.<\/p>\n<p>The equipment functioned as an illegitimate phone mast, broadcasting stronger signals than legitimate networks to force nearby mobile devices to connect to his malicious infrastructure.<\/p>\n<p>Once connected, the system would inject fraudulent text messages directly into victims\u2019 devices, bypassing traditional <a href=\"https:\/\/cybersecuritynews.com\/cisa-fbi-details-phishing-techniques\/\" target=\"_blank\" rel=\"noreferrer noopener\">SMS filtering<\/a> mechanisms employed by mobile network operators.<\/p>\n<p>The investigation was conducted by the Dedicated Card and Payment Crime Unit (DCPCU), a specialist banking industry-sponsored police unit, working in collaboration with major mobile network operators including BT, Virgin Media O2, Vodafone Three, and Sky.<\/p>\n<p>UK Finance analysts <a href=\"https:\/\/www.ukfinance.org.uk\/news-and-insight\/press-release\/police-warn-sms-scams-following-prison-sentence-criminal-who\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">identified<\/a> the sophisticated nature of the attack vector, noting that the mobile deployment strategy made traditional detection methods significantly more challenging than stationary fraud operations.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Signal Interference and Message Injection Mechanisms<\/strong><\/h2>\n<p>The SMS Blaster\u2019s technical operation relied on radio frequency manipulation to create unauthorized cellular coverage areas.<\/p>\n<p>The device generated amplified signals that appeared stronger than legitimate network infrastructure, effectively hijacking mobile device connections within approximately a one-kilometer radius.<\/p>\n<p>This technique, known as a false base station attack, exploits the automatic network selection protocols inherent in <a href=\"https:\/\/cybersecuritynews.com\/chinese-nexus-hackers-actively-exploiting-ivanti-endpoint\/\" target=\"_blank\" rel=\"noreferrer noopener\">mobile communication<\/a> standards.<\/p>\n<pre class=\"wp-block-code\"><code># Conceptual SMS Blaster Operation (for educational purposes)\nclass SMSBlaster:\n    def __init__(self):\n        self.signal_strength = \"HIGH\"\n        self.target_radius = \"1km\"\n\n    def create_rogue_base_station(self):\n        return {\"signal_power\": \"amplified\", \"status\": \"broadcasting\"}\n\n    def send_fraudulent_sms(self, target_devices):\n        for device in target_devices:\n            message = self.craft_phishing_message()\n            self.transmit(device, message)\n\n    def craft_phishing_message(self):\n        return {\n            \"sender\": \"Gov.uk\",\n            \"content\": \"Urgent: Verify your details\",\n            \"malicious_link\": \"https:\/\/fake-gov-site.com\"\n        }<\/code><\/pre>\n<p>The malicious messages were crafted to impersonate trusted government bodies and legitimate organizations, containing embedded links that redirected victims to credential harvesting websites designed to steal personal and financial information.<\/p>\n<p>This case highlights the evolving sophistication of mobile-based fraud operations and the critical importance of multi-stakeholder collaboration in combating such threats.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 91%,rgb(169,184,195) 100%)\">Investigate live malware behavior, trace every step of an attack, and make faster, smarter security decisions -&gt;\u00a0<a href=\"https:\/\/any.run\/demo?utm_source=csn&amp;utm_medium=article&amp;utm_campaign=braodo_stealer&amp;utm_content=demo_1&amp;utm_term=250625\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"><strong>Try ANY.RUN now<\/strong><\/a><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/chinese-student-charged-for-running-a-mass-smishing-campaign\/\">Chinese Student Charged for Running a Mass Smishing Campaign to Harvest Victims Personal Details<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Tushar Subhra Dutta<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/chinese-student-charged-for-running-a-mass-smishing-campaign\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Chinese Student Charged for Running a Mass Smishing Campaign to Harvest Victims Personal Details A sophisticated smishing operation targeting tens of thousands of potential victims across Greater London has resulted in the sentencing of Ruichen Xiong, a Chinese student, to over a year in prison at Inner London Crown Court. The case represents a significant [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,649],"tags":[130],"class_list":["post-5077","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-threats","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/5077"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=5077"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/5077\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=5077"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=5077"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=5077"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}