Inside the SIM Box Scam

Quectel EC20 SIM Box — Digital Arrest Links

The420.in
4 Min Read

Chandigarh Cyber Cell recently busted a major transnational racket involving SIM Boxes. These sim box were found to be using Quectel EC20 LTE Modules.

The X handle of Chandigarh Police posted some photos; which appear to be a technology marvel. Let deep dive into whats under the hood.

Step 1: Target & Cost

An International call would be expensive for any cybercrime syndicate. In order to make a ‘local origin’ call from overseas, some arrangement is required. Also if they call manually, it is a loss of human resource. The solution is “Automated IVR” call to lakhs of targets.

Step 2: International Local Conversion & Mass Calling

Bulk VOIP calls are originated majorly through foreign soils and are communicated through “Internet” to these sim box. Quectel EC20 cellular modules along with couple of other electronic devices convert these VoIP calls to the GSM/LTE network. Lakhs of automated calls will be blasted to victims

Step 3: Resource & Man Power and recruitment in India

SIM Cards, High Speed internet and Electricity is needed for operating the SIM Box. Chandigarh Police tweet advised public to avoid involvement in setting up illegal telecom setups.

Data Protection and DPDP Act Readiness: Hundreds of Senior Leaders Sign Up for CDPO Program

The Technology

The device below shows a SIM Box setup that utilizes Quectel EC20 LTE Modules. The device has following components:

  1. RF Antennas which connects to the Tower.
  2. Quectel EC20 Chip which has an IMEI number.
  3. SIM Bank — which provides slots for placing sim.
  4. FPGA device for Multi-plexing dozens of voice streams.
  5. WAN Connection (Ethernet) — For accepting VoIP calls

An over simplified diagram is shown below

Press enter or click to view image in full size

Investigator’s Insight

  1. In call data records, the IMEI of Quectel EC20 SIM Box will be visible, which indicates the presence of a sim box.
  2. Tower Location (Cell Tower ID) will be static and maximum outgoing calls will be identified.

Deep Technical Dive

A detailed implementation of the facility is given in the blog below which may be referred to.

Features & benefits include LTE Connectivity, High speed USB Access and multi-protocol support.

Press enter or click to view image in full size

What can Telecom Service Provider do to detect?

A simple algorithm which detects the high frequency outgoing calls or location from a static location and IMEI number belonging to Quectel is what is required to identify a scam call. Government of India regulates such behaviour under its recently launched THE TELECOMMUNICATIONS ACT, 2023.

Click Here to Register Now

Case Studies of Latest SIM Box Crackdown in India

1.Bihar — SIM Box Crackdown: Capability of calling over 10,000 victims per day. Links to Cambodia, Thailand, Hong Kong, China, UAE. 400 SIM Cards seized.

2. Telangana : Telangana Police busted a sim box linked to Cambodia. Figure clearly shows a broadband connection which is very much essential for running a SIM Box.

3. Location: Bengaluru by Goa Cyber Police

4. Panna : Madhya Pradesh (Panna District) — Links to Cambodia & Thailand for executing “Digital Arrest Scam”. 1700 SIM Cards Seized.

Closing Thoughts

Bharat has some of the world’s most technocrat and expert Cops, Ministries and Departments who has the capability to bust these sophisticated network through techno-human intelligence network. There are some who work tirelessly, behind the scenes owing to which Nation remain safe.

Guess the Collateral damage done by these Devices; had it not been busted across India !

Stay Connected