UK charges five over Russian Coms, the spoofing platform behind 1.8M scam calls
BleepingComputer · Sergiu Gatlan · source ↗
UK authorities have charged five London residents following a National Crime Agency investigation into Russian Coms, a caller-ID spoofing platform used to place more than 1.8 million scam calls. Live since 2020 — first as a handset, later a web app — the service let criminals appear to call from pre-selected numbers of banks, telcos and law enforcement to strip funds and data from victims. The NCA links it to tens of millions in losses across an estimated 170,000 victims, with operators paying £1,200–£1,400 in crypto for six-month contracts.
This is spoofing-as-a-service prosecuted at the platform layer, which is the interesting part. Rather than chasing individual fraudsters, the NCA went after the tooling vendor — the same logic that animates “know your upstream” instincts in the STIR/SHAKEN world: choke the enablement layer, not just the endpoints. A criminal product priced and sold on an ordinary SaaS shape is a reminder that the spoofing economy is exactly that, an economy.
Spoofing platforms are the demand-side reason call authentication exists. Every Russian Coms takedown doubles as an argument for why unauthenticated caller ID is untenable — and a reminder that enforcement, not attestation alone, is doing real work here.