Artificial Intelligence

Toronto Police Seize ‘SMS Blasters’ – A New Cybercrime Weapon Never Seen Before in Canada

April 26, 2026 · 10 min read · By CloudAI Security
Toronto Police Seize ‘SMS Blasters’ – A New Cybercrime Weapon Never Seen Before in Canada

Toronto Police Seize ‘SMS Blasters’ – A New Cybercrime Weapon Never Seen Before in Canada

In a groundbreaking operation, Toronto Police have dismantled what they call Canada’s first SMS blaster cybercrime ring, arresting three individuals and seizing sophisticated portable devices that mimicked cell towers to send fraudulent text messages to thousands of unsuspecting mobile users.

This unprecedented investigation, dubbed “Project Lighthouse,” marks a significant milestone in Canada’s fight against evolving cybercrime tactics. The operation revealed how criminals are leveraging portable “rogue cell tower” technology on an unprecedented scale, affecting both public safety and financial security.

Understanding SMS Blasters: The Cybercrime Weapon

SMS blasters are portable cybercrime devices that function as rogue cell towers. These sophisticated gadgets—typically consisting of a radio, battery, and laptop—exploit a fundamental weakness in mobile phone technology: phones automatically connect to the strongest available signal.

“Mobile phones are designed to go to the signal that is the strongest,” explains Carey Frey, Chief Security Officer at Telus. “That’s how mobile phone technology, cellular technology, is designed to work all over the world – they pick up the strongest signals so that you have good connectivity, and these devices abuse that function.”

Once a victim’s phone connects to the SMS blaster’s network—which uses outdated 2G wireless technology—the device floods the phone with fraudulent text messages. These messages appear to come from trusted organizations like banks, government agencies, or service providers, containing links to phishing websites designed to steal personal information, banking credentials, and passwords.

The Scale of the Toronto SMS Blaster Operation

The Toronto Police investigation uncovered alarming statistics about the operation’s scope:

  • Tens of thousands of mobile devices connected to the SMS blaster over several months
  • 13 million network disruptions were identified, where devices couldn’t properly connect to legitimate cell towers
  • Disruptions lasted from several seconds to several minutes, potentially blocking emergency communications
  • The device was mobile, operated out of vehicles, allowing criminals to target different areas of Toronto and the Greater Toronto Area

“What makes this particularly concerning is the scale and impact,” said Deputy Chief Robert Johnson during a press conference. “This wasn’t targeting a single individual or a business. It had the ability to reach thousands of devices at once. And beyond the financial risk, there are real public safety implications. For instance, when devices are diverted from legitimate networks, even briefly, it interferes with a person’s ability to connect to emergency services.”

Technical Operation: How SMS Blasters Work

SMS blasters represent a significant evolution in cybercrime technology. The devices work by:

  1. Signal Interception: The blaster broadcasts a stronger signal than legitimate cell towers, tricking nearby phones into connecting to its network
  2. Network Diversion: Once connected, phones are diverted from their carrier’s legitimate network to the criminal-controlled network
  3. Mass Messaging: The device floods connected phones with fraudulent text messages containing phishing links
  4. Information Theft: Victims who click the links are directed to fake websites designed to steal personal and financial information

“SMS blasters are attractive to cybercriminals for multiple reasons,” explains Frey. “They allow scammers to send texts without needing to obtain victims’ phone numbers, and because the messages bypass wireless networks, the telecoms aren’t able to block them.”

The Investigation: Project Lighthouse

The investigation began in November 2025 when Telus, one of Canada’s major telecom providers, couldn’t locate evidence of a particular scam text in its network logs. After consulting with police, Telus hypothesized the message originated from an SMS blaster—a technology that had never been detected in Canada before.

The investigation quickly escalated, involving multiple law enforcement agencies including the Royal Canadian Mounted Police, York Regional Police, and Hamilton Police Service. The cooperation with telecommunications companies was crucial in locating the devices.

“It would not have been possible for the police to get the information they needed to locate these devices without getting data from all of the major wireless carriers at the same time,” Frey noted. “These three individuals and/or their accomplices were driving this thing around all over metro and downtown Toronto.”

The Arrests and Charges

On March 31, 2026, Toronto Police executed search warrants and made two arrests:
– Dafeng Lin, 27, of Hamilton
– Junmin Shi, 25, of Markham, Ont.

A third man, Weitong Hu, 21, of Markham, turned himself in to police shortly after. The three individuals face a total of 44 charges, including:

  • Mischief endangering life
  • Personation with intent to gain advantage
  • Fraud under $5,000
  • Use of a computer system with intent to commit an offence
  • Fraudulently intercepting a function of a computer system
  • Unauthorized possession of credit card data

Broader Implications and Safety Concerns

The SMS blaster operation raises serious concerns beyond financial fraud. The technology poses multiple threats to public safety:

  • Emergency Service Disruption: Network interference could prevent people from calling 911 or other emergency services
  • Large-Scale Network Outages
  • : Multiple SMS blasters deployed in an area could cause significant wireless network disruptions

  • Surveillance Capabilities: The devices could potentially monitor calls and texts from connected devices
  • Malware Distribution: The technology could be used to install malware on victim devices

“We didn’t see any of those behaviours in this case, but those certainly could have been there,” Frey warned. “The devices are capable of wreaking other kinds of havoc. They can surveil calls and texts, install malware on devices and interfere with 911 calls. If a large number of them are deployed in a particular area, they can even cause a small wireless outage.”

Detection Challenges and Law Enforcement Response

Detecting SMS blasters presents unique challenges for law enforcement and telecom companies. The devices are:

  • Portable: They can be moved quickly, making location tracking difficult
  • Disguised: They can be hidden in backpacks or vehicle trunks
  • Disposable: While owning the devices isn’t inherently illegal, using them for criminal purposes is
  • Technically Advanced: The devices require specialized knowledge to operate and trace

“Police are ‘pretty confident’ they’ve dealt with the risk from SMS blasters, but the broader risk of fraudulent texts remains,” Detective Sergeant Lindsay Riddell stated. “Their support was critical in helping us identify and disrupt this activity.”

Detection and Mitigation Checklist

For organizations and individuals concerned about SMS blasters, here are key detection and mitigation strategies:

For Telecom Companies

  • Monitor for unusual network patterns or sudden drops in connectivity
  • Implement triangulation systems to locate rogue signal sources
  • Share data across carriers to coordinate detection efforts
  • Report suspicious activity to law enforcement and regulatory bodies

For Law Enforcement

  • Establish cross-agency task forces for cybercrime investigations
  • Collaborate with telecom partners for real-time data sharing
  • Investigate reports of unusual network disruptions
  • Conduct surveillance of areas with high fraud reports

For Individuals

  • Be suspicious of unexpected text messages, even from seemingly trusted sources
  • Never click on links in unsolicited text messages
  • Verify the legitimacy of payment requests through official channels
  • Report suspected smishing attempts to your carrier and the Canadian Anti-Fraud Centre

For Organizations

  • Implement multi-factor authentication for all accounts
  • Educate employees about smishing and social engineering tactics
  • Monitor for unusual network behavior or connectivity issues
  • Establish incident response protocols for potential SMS-based attacks

The Future of Cybercrime: What’s Next?

The SMS blaster investigation highlights several troubling trends in cybercrime:

  1. Technology Accessibility: Sophisticated cybercrime tools are becoming more accessible and affordable
  2. Scale and Impact: Attacks are increasingly targeting large numbers of victims simultaneously
  3. Mobility: Criminal operations are becoming more mobile and harder to track
  4. Collaboration: Criminals are working more closely with telecom and financial insiders

“This is a clear example of how cyber-enabled crime is becoming more advanced, more mobile and more difficult to detect, and why policing must continue to evolve alongside it,” Johnson concluded.

FAQ About SMS Blasters

Q: What exactly is an SMS blaster?

A: An SMS blaster is a portable device that mimics a legitimate cell tower. It broadcasts a stronger signal to trick nearby phones into connecting to its network, then floods those phones with fraudulent text messages.

Q: Are SMS blasters illegal in Canada?

A: While the devices themselves aren’t inherently illegal, using them to send fraudulent messages, intercept communications, or commit fraud is illegal. The three men arrested face multiple criminal charges.

Q: How can I tell if I’ve been targeted by an SMS blaster?

A: You might experience brief signal loss, unexpected disconnections from your carrier’s network, or receive unusual text messages that seem to come from legitimate organizations but contain suspicious links.

Q: What should I do if I suspect I’ve been targeted by an SMS blaster?

A: Report it to your mobile carrier immediately and contact the Canadian Anti-Fraud Centre. Also, change any passwords you may have compromised and monitor your financial accounts for suspicious activity.

Q: Are SMS blasters only used for financial fraud?

A: While financial fraud is a common use, SMS blasters can also be used for data theft, surveillance, network disruption, and potentially even to interfere with emergency communications.

Q: How are telecom companies combating SMS blasters?

A: Telecom companies monitor network patterns, share data with law enforcement, implement triangulation systems to locate rogue devices, and work with regulatory bodies to address spectrum misuse.

Q: Is this problem unique to Canada?

A: No, SMS blasters have been detected in other countries including the United Kingdom, New Zealand, and Australia. However, this was the first major operation of its kind in Canada.

Conclusion and Recommendations

The Toronto SMS blaster investigation represents a significant victory in Canada’s fight against cybercrime, but it also serves as a warning about the evolving nature of these threats. As criminals become more sophisticated and their operations more widespread, both law enforcement and private sector organizations must continue to collaborate and adapt.

For individuals, the key takeaway is vigilance. In an era where cybercriminals can reach thousands of people simultaneously with a single mobile device, skepticism of unexpected communications and caution about clicking links in text messages are essential precautions.

The investigation also highlights the importance of public-private partnerships in combating cybercrime. The collaboration between Toronto Police, multiple law enforcement agencies, and telecommunications companies was crucial in identifying and disrupting this operation.

As Deputy Chief Johnson noted, “As the first investigation of its kind in this country, it reflects how the Toronto Police Service is adapting quickly to detect and disrupt complex cyber-enabled crime. I’m proud of the work done by our Coordinated Cyber Centre and grateful to our policing and industry partners who helped bring this investigation forward.”

The fight against SMS blasters and similar technologies is far from over, but this operation demonstrates that through cooperation, innovation, and persistence, law enforcement and industry can effectively combat even the most sophisticated cybercrime threats.

References

  • Toronto Police Service. (2026, April 23). “Arrests Made in Project Lighthouse, First-of-its-Kind SMS Blaster Investigation in Canada.” News Release. https://www.cbc.ca/news/canada/toronto/sms-blaster-police-cybercrime-investigation-9.7174756
  • Posadzki, A. (2026, April 23). “How Telus helped Toronto police crack ‘SMS Blaster’ scam-text operation.” The Globe and Mail. https://www.theglobeandmail.com/business/article-toronto-police-charge-three-in-sms-blaster-scam-text-operation/
  • Knight, C. (2026, April 23). “Toronto police seize ‘SMS blasters,’ a cybercrime weapon never before seen in Canada.” National Post. https://nationalpost.com/news/canada/toronto-police-seize-sms-blasters-cybercrime-canada
  • Telus Corporation. (2026). “Statement on SMS Blaster Investigation.” Corporate Security Communication.
  • Canadian Anti-Fraud Centre. (2026). “Smishing and SMS Fraud Prevention Guidelines.” https://www.antifraudcentre-centreantifraude.ca