First UK SMS Blaster Conviction Jailed Fraudster, London 2026

News Desk
First UK SMS Blaster Conviction Jailed Fraudster, London 2026
Credit: City of London Police, Dylan_Agbagni from pixabay

Key Points

  • Major Conviction: Mohammed Faiyaz Iqbal, a 43-year-old resident of Maple Crescent, Preston, Lancashire, was sentenced to three years and eight months in prison on August 28, 2026, following a guilty plea.
  • Legal Breakdown: Iqbal’s initial five-year and six-month sentence was reduced by one third due to a guilty plea entered at his first hearing on March 9, 2026.
  • Historic Seizure: The case marks the first known seizure of an SMS blaster (rogue cell tower/IMSI catcher) by UK law enforcement, encountered when officers intercepted Iqbal’s vehicle in May 2024.
  • Sophisticated Setup: Officers discovered the device concealed within purpose-built wooden compartments in the rear of a van at the Trafford Shopping Centre car park, complete with integrated power sources, Wi-Fi components, and roof-mounted aerials.
  • Massive Scale: Examination of seized mobile phones revealed 7,859 compromised payment card details, alongside counterfeit UK driving licences used to set up fraudulent bank accounts.
  • Collaborative Operation: The conviction was achieved through the Dedicated Card and Payment Crime Unit (DCPCU)—run jointly by the City of London Police and the Metropolitan Police—with support from major mobile network operators, the National Cyber Security Centre (NCSC), and Ofcom.

London (Extra London News) September 2, 2026 — A complex, high-stakes cyber fraud investigation has culminated in the imprisonment of a 43-year-old Lancashire man who utilised pioneering, military-grade telecommunications interference hardware to broadcast fraudulent text messages directly to mobile devices across the United Kingdom. Mohammed Faiyaz Iqbal of Preston was handed a prison sentence of three years and eight months after executing a sophisticated smishing campaign that bypassed established mobile network security protocols. The breakthrough prosecution underscores the rapidly evolving landscape of cybercrime and highlights the increasing reliance of organised syndicates on rogue physical infrastructure to target unsuspecting members of the public at scale.

What Led to the Historic Arrest of Mohammed Faiyaz Iqbal at the Trafford Centre?

As detailed in official press releases from the City of London Police, the investigation reached a critical turning point on May 24, 2024. Officers tracked suspicious, high-volume transmissions of fraudulent text messages to a specific geographic vicinity, leading them to a van parked at the busy Trafford Shopping Centre car park.

As reported by journalists Neal Keeling and Jamie Greer of the Liverpool Echo, law enforcement officers approached the vehicle and discovered Mohammed Faiyaz Iqbal sitting inside with multiple active mobile phones positioned in the front cabin. Upon searching the rear of the vehicle, police uncovered an elaborate and concealed technical operation.

As outlined in disclosures published by the City of London Police, the equipment comprised an SMS “blaster” system carefully hidden inside purpose-built wooden compartments. The apparatus was fully operational, integrated with dedicated power sources, local Wi-Fi components, and aerials custom-installed directly into the roof of the van.

Explore more London Police News:

Sadiq Khan Convicted Over Untaxed Car Scam in London 2026

Notting Hill Carnival Arrests And Weapons Seized In London 2026

How Does an SMS Blaster Bypasses Mobile Network Security?

According to technical briefs and investigative overviews compiled by the UK Cybercrime Journal, an SMS blaster functions effectively as a portable, illegitimate mobile phone mast or IMSI catcher.

When activated, the rogue equipment forces nearby civilian mobile devices to disconnect from their legitimate network providers—such as BT, Virgin Media O2, Vodafone, Three, or Sky—by broadcasting a stronger local signal and tricking devices into connecting via an unencrypted or degraded 2G channel.

By forcing this connection, cybercriminals successfully bypass telecommunications network firewall firewalls and security safeguards designed to intercept malicious sender identities and block harmful external links. This technology allows operators to beam fraudulent text messages straight to any mobile phone within close physical proximity without requiring the victim’s phone number beforehand.

The text messages dispatched during Iqbal’s operation were engineered to impersonate trusted public and commercial entities—most notably Royal Mail and tax authorities—luring recipients into clicking links that redirected them to convincing phishing websites designed to harvest financial data and personal credentials.

What Evidence Was Uncovered During Subsequent Police Raids?

Following the roadside interception and arrest at the Trafford Centre, forensic investigators executed subsequent searches across digital and physical domains linked to the suspect.

According to findings released by the City of London Police, a forensic extraction and examination of Mohammed Faiyaz Iqbal’s mobile phones yielded a staggering 7,859 compromised payment card details.

Further intensive searches conducted at Iqbal’s primary residential address in Preston uncovered additional compromised banking materials alongside three counterfeit UK driving licences. Authorities confirmed that these fake identity documents were actively being utilized to establish fraudulent, mule bank accounts intended to process, cycle, and launder the illicit proceeds generated by the automated smishing operation.

Mohammed Faiyaz Iqbal was formally charged with a comprehensive portfolio of economic crime and telecommunications offences, which included:

  • One count of fraud by false representation.
  • One count of possession of articles for use in fraud.
  • One count of acquiring and possessing criminal property.
  • One count of possession of false identity documents.
  • One count of unauthorised use of wireless telegraphy apparatus.

As documented in court records, Iqbal entered a guilty plea during his initial appearance at the crown court hearing on March 9, 2026. When the case reached its final sentencing phase on August 28, 2026, the presiding judge calculated a baseline appropriate custodial sentence of five years and six months. However, this term was formally reduced by one third in statutory recognition of the defendant’s early guilty plea, resulting in a final custodial sentence of three years and eight months behind bars.

What Do Authorities Say About the Evolving Threat of SMS Blasters?

The landmark conviction was spearheaded by the Dedicated Card and Payment Crime Unit (DCPCU), a specialised police unit jointly sponsored by UK banking institutions and law enforcement agencies to tackle systemic fraud. The operation also drew extensive technical cooperation from the National Cyber Security Centre (NCSC) and communications regulator Ofcom.

Commenting on the wider implications of the trial, Detective Inspector Andrew Little of the City of London Police emphasised the persistent dangers posed by hardware-based mobile interception tools.

As reported by regional news outlets including MyLondon, Detective Inspector Andrew Little stated that:

“This case highlights the role of those working behind the scenes to enable fraud at scale. While individuals may be deployed on the ground, it is organisers who facilitate and sustain this criminal activity. SMS blaster devices represent a significant threat, allowing criminals to bypass protections and target members of the public with convincing scam messages.”

Adding to these warnings, representatives from major financial institutions and telecommunications entities echoed the sentiment that while the conviction marks a critical victory for multi-agency fraud-fighting alliances, it simultaneously exposes the extraordinary lengths to which determined criminal networks will go to inflict severe financial and emotional distress upon consumers.

How Can Members of the Public Protect Themselves Against Smishing and Rogue Text Attacks?

In light of the sophistication demonstrated by the Preston-based SMS blaster scheme, law enforcement and cybersecurity experts have issued renewed guidance to help consumers safeguard their personal data.

Authorities advise that members of the public should maintain a high degree of skepticism toward unexpected text messages referencing missed parcel deliveries, unpaid taxes, or urgent bank account verification alerts.

Citizens are strongly encouraged to utilise the UK’s free national spam reporting service by forwarding suspicious text messages directly to 7726. Reporting messages to this shortcode allows mobile network operators to trace the origin of the transmission, investigate malicious routing pathways, and block offending senders.

Furthermore, individuals who believe they have fallen victim to phishing scams or have inadvertently disclosed sensitive financial credentials are urged to contact their bank immediately and report the incident via the official police reporting portal at reportfraud.police.uk or by dialling 0300 123 2040 (with residents in Scotland directed to contact Police Scotland via 101).