InsighthubNews
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
Reading: India orders messaging apps to work only with active SIM cards to prevent fraud and abuse
Share
Font ResizerAa
InsighthubNewsInsighthubNews
Search
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
© 2024 All Rights Reserved | Powered by Insighthub News
InsighthubNews > Technology > India orders messaging apps to work only with active SIM cards to prevent fraud and abuse
Technology

India orders messaging apps to work only with active SIM cards to prevent fraud and abuse

December 2, 2025 4 Min Read
Share
India orders messaging apps to work only with active SIM cards to prevent fraud and abuse
SHARE

India’s Department of Telecommunications (DoT) has directed app-based telecom service providers to ensure that their platforms cannot be used without an active SIM card linked to a user’s mobile number.

To this end, messaging apps like WhatsApp, Telegram, Snapchat, Arattai, Sharechat, Josh, JioChat, Signal, i.e. Telecommunications Identified User Entities (TIUEs) that use Indian mobile numbers to uniquely identify users will have to comply with the directive within 90 days.

The amendments to the Telecommunications (Telecommunications Cybersecurity) Regulations, 2024 are seen as an attempt to counter the misuse of telecommunications identifiers for phishing, fraud and cyber fraud and ensure telecommunications cybersecurity. The DoT says the SIM binding orientation is critical to closing the security gap that bad actors are exploiting to commit cross-border fraud.

“Instant messaging and calling app accounts remain functional even after the associated SIM is removed, disabled, or moved abroad, enabling anonymous fraud, remote ‘digital arrest’ fraud, and government impersonation calls using Indian numbers,” the State Department said in a statement on Monday.

“The long-lived nature of web/desktop sessions complicates tracking and deletion, as fraudsters can control victims’ accounts from a remote location without requiring the original device or SIM. Currently, once a session is authenticated on an Indian device, it can continue operating from abroad, allowing criminals to use Indian numbers to commit fraud without any new verification.”

The newly issued directive requires:

  • App-based communication services are continuously linked to the SIM card installed on your device, and you cannot use the app without an active SIM.
  • The messaging platform’s web service instance is periodically logged out every 6 hours, allowing users to relink their devices via a QR code if necessary.
See also  X warns users with security keys to re-register by November 10 to avoid lockout

By forcing periodic re-authentication, the Indian government said the changes will reduce the possibility of account takeover attacks, remote control abuse and mule account manipulation. Additionally, repeated relinks create additional friction in the process, requiring the attacker to prove their control over and over again.

The DoT also pointed out that these restrictions will link all active accounts on the messaging app and its web sessions to a Know Your Customer (KYC) verified SIM, allowing authorities to track numbers used for phishing, investments, digital arrests and loan fraud.

It is worth noting that SIM binding and automatic session logout rules are already applicable to banking and instant payment apps that use India’s Unified Payments Interface (UPI) system. The latest instructions extend this policy to apply to messaging apps as well. WhatsApp and Signal did not respond to requests for comment.

The development comes days after the DoT announced that a mobile number verification (MNV) platform will be established to curb the proliferation of mule accounts and identity fraud resulting from unverified association of mobile numbers with financial and digital services. According to the proposed amendments, such requests to the MNV platform can be made by TIUE or government agencies.

“This mechanism allows service providers to verify, through a decentralized, privacy-compliant platform, whether a mobile phone number used for a service truly belongs to the person whose credentials are on record, thereby increasing the trust in digital transactions,” the report said.

Share This Article
Twitter Copy Link
Previous Article Here's how to book Resident Evil Requiem for the cheapest price. Here’s how to book Resident Evil Requiem for the cheapest price.
Next Article LA City Council votes against proposal to ban police from using 'less-lethal' firing devices LA City Council votes against proposal to ban police from using ‘less-lethal’ firing devices

Latest News

Silver Fox uses fake Microsoft Teams installer to spread ValleyRAT malware in China

Silver Fox uses fake Microsoft Teams installer to spread ValleyRAT malware in China

threat actor known as silver fox In attacks targeting Chinese…

December 4, 2025
Critical RSC bug in React and Next.js allows unauthenticated remote code execution

Critical RSC bug in React and Next.js allows unauthenticated remote code execution

A maximum severity security flaw has been disclosed in React…

December 3, 2025
India orders messaging apps to work only with active SIM cards to prevent fraud and abuse

India orders messaging apps to work only with active SIM cards to prevent fraud and abuse

India's Department of Telecommunications (DoT) has directed app-based telecom service…

December 2, 2025
India orders mobile phone manufacturers to pre-install Sanchar Saathi app to prevent wire fraud

India orders mobile phone manufacturers to pre-install Sanchar Saathi app to prevent wire fraud

India's Ministry of Telecommunications has reportedly asked major mobile device…

December 1, 2025
CISA adds actively exploited XSS bug CVE-2021-26829 in OpenPLC ScadaBR to KEV

CISA adds actively exploited XSS bug CVE-2021-26829 in OpenPLC ScadaBR to KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated…

November 30, 2025

You Might Also Like

The FBI warns UNC6040 and UNC6395 targeting Salesforce platforms in data theft attacks
Technology

The FBI warns UNC6040 and UNC6395 targeting Salesforce platforms in data theft attacks

5 Min Read
Malicious VSX extension 'SleepyDuck' uses Ethereum to keep command server alive
Technology

Malicious VSX extension ‘SleepyDuck’ uses Ethereum to keep command server alive

4 Min Read
New eavesdropping attack extracts Intel SGX ECDSA key via DDR4 memory bus interposer
Technology

New eavesdropping attack extracts Intel SGX ECDSA key via DDR4 memory bus interposer

4 Min Read
ASD warns of ongoing BADCANDY attack exploiting Cisco IOS XE vulnerability
Technology

ASD warns of ongoing BADCANDY attack exploiting Cisco IOS XE vulnerability

3 Min Read
InsighthubNews
InsighthubNews

Welcome to InsighthubNews, your reliable source for the latest updates and in-depth insights from around the globe. We are dedicated to bringing you up-to-the-minute news and analysis on the most pressing issues and developments shaping the world today.

  • Home
  • Celebrity
  • Environment
  • Business
  • Crypto
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
  • World News
  • Politics
  • Technology
  • Sports
  • Gaming
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service

© 2024 All Rights Reserved | Powered by Insighthub News

Welcome Back!

Sign in to your account

Lost your password?