Skip to content
Global Smishing Campaign Targets Drivers with Fake Traffic Fines

Global Smishing Campaign Targets Drivers with Fake Traffic Fines

First seen 1 May 2026, 19:08 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster May 2, 2026 at 19:05 UTC
  • Over 79,000 fraudulent SMS messages detected in a global smishing campaign.
  • Attackers impersonate transport authorities to create urgency and extract sensitive data.
  • No specific threat actor has been identified, but the campaign is highly coordinated.

Bitdefender Labs has identified a widespread smishing campaign affecting drivers in at least 12 countries, including the United States, Canada, Australia, and the United Kingdom. Between December 2025 and April 2026, over 79,000 fraudulent SMS messages and 31,900 malicious URLs were detected, with up to 40 distinct active campaigns. The messages impersonate transport authorities and toll operators, claiming unpaid fines or tolls, and create a sense of urgency with threats of legal action or additional fees. Victims are directed to fraudulent websites where they may be prompted to enter sensitive personal and banking information or download malware. The campaign is characterized by its use of multiple languages and sophisticated techniques to evade detection. Despite the scale and coordination of these attacks, no specific threat actor has been identified. Bitdefender recommends vigilance and caution when receiving such messages.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 134d ago How this analysis works

Timeline

2025-12-01
Smishing campaigns targeting drivers began.
2026-04-29
Bitdefender publishes findings on ongoing smishing campaigns.
2026-05-01
Escudodigital reports on the global impact of the smishing campaign.

More articles in this cluster (3)