Independent Reviews
Abstract identity silhouette protected from a hostile digital signal
Consumer Scams Published 2 Sept 2026 5 min read1 source

UK SMS Blaster Case Shows Why Scam Texts Can Look Local

A Preston man has been jailed for using a rogue mobile-antenna system from a van near the Trafford Centre to send fraudulent texts directly to nearby phones. Investigators recovered thousands of compromised payment-card records.

By VPN Rocks Editorial Team

The short version

What you need to know

  • TheBusinessDesk reports that police found an active SMS blaster hidden in a van near the Trafford Centre in May 2024. The equipment acted as a rogue mobile antenna and sent messages directly to nearby phones.
  • The messages impersonated organisations including Royal Mail and sought payment and personal details. Investigators found 7,859 compromised payment-card records on the defendant's phones; he was sentenced on 28 August 2026 after pleading guilty.
  • Do not trust a text because it names a familiar organisation or arrives while you are near a relevant place. Forward suspicious texts to 7726 and contact your bank through its official app or card number after entering payment details. A VPN does not inspect ordinary SMS traffic.

What happened in the SMS blaster case?

TheBusinessDesk reports that officers arrested Mohammed Faiyaz Iqbal in a van at the Trafford Centre car park on 24 May 2024 after linking the vehicle's location to a large volume of fraudulent text messages. In the rear, investigators found an active SMS blaster system with power supplies, Wi-Fi components and roof aerials concealed in purpose-built wooden compartments.

The report says Iqbal pleaded guilty at his first hearing in March 2026 and was sentenced on 28 August to three years and eight months in prison. The sentence follows the first known UK law-enforcement seizure of this kind of SMS blaster equipment.

How a rogue antenna changes the delivery route

The equipment acted as a rogue mobile antenna, bypassing normal telecommunications-network safeguards and broadcasting messages directly to nearby devices. The messages impersonated legitimate organisations, including Royal Mail, and tried to obtain payment and personal details.

A message delivered nearby can still be fraudulent. Its arrival time, apparent sender name or reference to a familiar organisation should not be treated as proof that a mobile operator, delivery company or bank sent it.

What investigators found — and what users should do

The report says examination of Iqbal's phones found 7,859 compromised payment-card details. Searches at his home also uncovered other compromised banking material and three counterfeit UK driving licences used to create impersonation bank accounts.

Forward a suspicious text to 7726 without opening its link. If you entered card details, contact the bank immediately through the number on the card or its official app and review pending transactions. If you entered a password, change it on the genuine service and anywhere else it was reused, then enable multi-factor authentication where available.

Where a VPN helps — and where it does not

A VPN protects internet traffic that a supported device sends through the VPN tunnel. It can be useful on untrusted Wi-Fi, but conventional SMS messages travel through the mobile network rather than that encrypted internet tunnel.

A VPN therefore cannot block a rogue cellular antenna, authenticate an SMS sender, inspect every text for fraud or reverse payment-card exposure. Mobile-network defences, cautious link handling, 7726 reporting and rapid bank contact are the relevant protections.

VPN Rocks view

The case is a reminder that scam delivery is not limited to stolen mailing lists or ordinary bulk-message gateways. Criminals can bring infrastructure close to a crowded location and try to exploit the credibility of proximity and urgency.

Consumers should use a simple rule across delivery, bank and account messages: do not let an unexpected text choose the route by which you verify it. Open the genuine app or type a known address yourself, especially when money or identity information is requested.

Primary reading

Sources and further reading

We add plain-English context and practical advice. These links let you inspect the underlying reporting, research and official guidance directly.

Useful next steps