THE Malaysian Communications and Multimedia Commission (MCMC) has disrupted a syndicate allegedly abusing mobile network technology to distribute fraudulent SMS messages containing scam links, in the latest enforcement action against digital crime activities.
MCMC said the syndicate used fake base transceiver station (Fake BTS) equipment, which imitates legitimate mobile network signals to send SMS messages directly to users’ devices without going through official telecommunications networks.
The illegal technology allows scam messages to appear as if they originate from genuine senders, increasing the likelihood of victims being deceived into clicking malicious links or disclosing sensitive personal information.
In an enforcement operation conducted in Johor Bahru last Friday, MCMC detected a 23-year-old Malaysian man operating a vehicle fitted with Fake BTS equipment capable of transmitting radio frequency (RF) signals that impersonated telecommunications service providers to distribute fraudulent SMS messages.
Preliminary investigations found that the syndicate allegedly targeted crowded public areas, particularly during peak hours, to maximise the spread of scam messages to potential victims.

MCMC said that up to mid-2026, it had conducted five special operations to curb Fake BTS activities, including two operations in Johor and three in Genting Highlands.
The operations resulted in the seizure of four GSM modules believed to have been used in the illegal activities, while statements were recorded from four individuals to assist investigations.
The case is being investigated under Section 239(1)(a) of the Communications and Multimedia Act 1998 (Act 588) and Regulation 16(1)(b) of the Communications and Multimedia (Technical Standards) Regulations 2000.
A conviction under Section 239 carries a maximum penalty of a RM1 million fine, imprisonment of up to 10 years, or both, while offences under Regulation 16 carry a maximum fine of RM300,000, imprisonment of up to three years, or both.
MCMC said it would continue strengthening enforcement operations with the Royal Malaysia Police (PDRM) to prevent the misuse of radio frequency spectrum and telecommunications infrastructure for fraudulent and criminal activities.
The regulator urged the public to remain cautious by avoiding suspicious SMS links, refraining from sharing banking credentials or personal details without verification through official channels, and reporting suspicious messages to authorities or telecommunications providers for immediate action. - July 29, 2026