WhatsApp to enforce SIM-binding from March 1
October 2, 2026
  • Read Ecopy
  • Circulation
  • Advertise
  • Careers
  • About Us
  • Contact Us
Android AppiPhone AppArattai
Organiser
  • ‌
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Europe
    • North America
    • South America
    • Africa
    • Australia
  • Editorial
  • International
  • Opinion
  • RSS @ 100
  • More
    • World Hindu Congress 2026
    • Op Sindoor
    • Analysis
    • Sports
    • Defence
    • Politics
    • Business
    • Economy
    • Culture
    • Special Report
    • Sci & Tech
    • Entertainment
    • G20
    • Azadi Ka Amrit Mahotsav
    • Vocal4Local
    • Web Stories
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Law
    • Health
    • Obituary
  • Subscribe
    • Subscribe Print Edition
    • Subscribe Ecopy
    • Read Ecopy
  • ‌
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Europe
    • North America
    • South America
    • Africa
    • Australia
  • Editorial
  • International
  • Opinion
  • RSS @ 100
  • More
    • World Hindu Congress 2026
    • Op Sindoor
    • Analysis
    • Sports
    • Defence
    • Politics
    • Business
    • Economy
    • Culture
    • Special Report
    • Sci & Tech
    • Entertainment
    • G20
    • Azadi Ka Amrit Mahotsav
    • Vocal4Local
    • Web Stories
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Law
    • Health
    • Obituary
  • Subscribe
    • Subscribe Print Edition
    • Subscribe Ecopy
    • Read Ecopy
Organiser
  • Home
  • Bharat
  • World
  • Operation Sindoor
  • Editorial
  • Analysis
  • Opinion
  • Culture
  • Defence
  • International Edition
  • RSS @ 100
  • Magazine
  • Read Ecopy
Home Bharat

India’s SIM-Binding Mandate: How the DoT is forcing messaging apps to link services strictly to active SIM cards

The Department of Telecommunications has mandated SIM-binding for messaging platforms, requiring apps to function only when the registered SIM is present in the primary device. The move aims to curb rising cyber fraud, strengthen traceability, and enhance national telecom security amid industry pushback

WEBDESKWEBDESK
Feb 28, 2026, 02:00 pm IST
inBharat, Sci & Tech
Follow on Google News
Representative image

Representative image

Facebook
Twitter
WhatsAppTelegramEmail

On November 28, the Department of Telecommunications (DoT) directed major communication platforms, including WhatsApp, Telegram, Signal, Snapchat, ShareChat, JioChat, Arattai and Josh, to ensure their services function only when the registered Subscriber Identity Module (SIM) card is inserted in the user’s primary device. The companies were given 90 days to comply, a deadline that ends on February 28, with compliance reports due within 120 days. The new system will come into effect from March 1.

🚨 BREAKING: WhatsApp to enforce SIM-binding from March 1

App will work only if the registered SIM is physically present & active in your phone
👉🏻 WhatsApp Web sessions to AUTO LOGOUT within 6 hours

~ No using WhatsApp with a number if that SIM isn’t in your device pic.twitter.com/hnFIaI0u0F

— The Analyzer (News Updates🗞️) (@Indian_Analyzer) February 27, 2026

The guidelines were issued by DoT’s AI & Digital Intelligence Unit, which has been empowered to regulate Telecommunication Identity User Entities (TIUEs), online services that use mobile numbers as identity credentials. The government warned that non-compliance could invite action under the Telecom Cyber Security Rules, the Telecommunications Act, 2023, and other applicable laws.

Speaking at the Rising Bharat Summit 2026, Communications Minister Jyotiraditya Scindia reaffirmed that the “SIM-binding regulation stands,” calling it a “need of the day” and expressing confidence that all service providers would implement the directive.

Under the new telecom security standards, messaging apps must ensure that users accessing services on secondary devices, such as web versions, are automatically logged out every six hours if the registered SIM is not present in the primary phone. However, this restriction will not apply to devices where the SIM is physically installed. Platforms must continuously verify that the account-linked SIM remains active in the main device; if it is removed, replaced, or deactivated, the services must stop functioning. The Centre clarified that users travelling or roaming will not face disruptions as long as the SIM remains active in the handset.

What is SIM-binding?

At present, most messaging applications authenticate users through a one-time password (OTP) sent to their registered mobile number during installation. Once verified, the apps continue to operate even if the SIM is removed, swapped, or deactivated. Similarly, web-based versions function through OTP or QR code verification, allowing access on devices like computers without requiring the registered SIM to remain in the phone.

The new SIM-binding rule seeks to end this practice. The government believes the existing system has enabled large-scale fraud and misuse, particularly by cybercriminals operating from outside India.
Under SIM-binding, a messaging app will remain operational only if the registered SIM card stays inserted in the original smartphone. Removing the SIM will automatically disable access to the application.

The directive follows the Centre’s notification of the Telecommunications (Telecom Cyber Security) Rules in November 2024, which mandate telecom service providers to report security incidents within 24 hours. The rules also require companies to implement robust cybersecurity frameworks, appoint a Chief Telecommunication Security Officer, and enhance compliance monitoring. Additionally, the government has been empowered to seek non-content and traffic data from telecom entities to strengthen cybersecurity measures.

According to DoT’s observations, several app-based communication services using Indian mobile numbers for user identification allow continued access without the underlying SIM in the device — a loophole that has been increasingly exploited by cybercriminal networks, especially those operating overseas.
An interministerial panel, along with several government agencies, examined concerns over the misuse of messaging platforms and the need for SIM-binding safeguards. The Department of Telecommunications (DoT) held multiple consultations with leading app-based communication service providers to assess the feasibility and necessity of the proposal. Following these deliberations, the government issued formal directions aimed at preventing the misuse of telecommunication identifiers and strengthening the security and integrity of India’s telecom ecosystem.

Also Read: UP: 12 Islamists arrested for alleged attack on Dalit family during Kuaan Poojan & Devi Jagran over DJ dispute

Under the new requirements, app-based communication services must:

Ensure that their services remain continuously linked to the SIM card associated with the mobile number used for user identification, service provisioning, or delivery. The application must not function unless the registered and active SIM is physically present in the primary device.

Ensure that, where web-based access is provided, such sessions are automatically logged out at regular intervals — no later than six hours — with users allowed to reconnect through QR code authentication.
In its notification, DoT stated that the SIM-binding directions are critical to closing a significant security loophole that cybercriminals have been exploiting for large-scale, often cross-border digital fraud. It noted that accounts on instant messaging and calling applications frequently remain active even after the linked SIM is removed, deactivated, or taken abroad. This vulnerability has enabled anonymous scams, so-called “digital arrest” frauds, and impersonation calls using Indian mobile numbers.

The crucial role of SIM-binding in preventing online fraud

Long-running web and desktop sessions have made it difficult for authorities to trace and disable compromised accounts. At present, a session can be authenticated once on a device in India and continue operating from overseas, allowing fraudsters to remotely control accounts without possessing the original handset or SIM. This loophole enables criminals to misuse Indian mobile numbers for scams without further verification.

The new auto-logout provision — applicable to web versions but not the primary mobile app — is designed to terminate extended web sessions and require periodic re-authentication through device or SIM control. By forcing repeated verification, it significantly reduces risks such as account takeovers, remote access exploitation, and mule-account operations. Regular re-authentication also increases traceability by compelling users to repeatedly demonstrate control over the registered SIM and device.

Also Read: UP: 12 Islamists arrested for alleged attack on Dalit family during Kuaan Poojan & Devi Jagran over DJ dispute

Through continuous SIM–device binding and periodic session expiry, every active account and web login will be tied to a live, KYC-verified SIM. This restores accountability and improves traceability of numbers used in phishing, lending fraud, fake investment schemes, and so-called “digital arrest” scams.

In its notification, the Department of Telecommunications stated that with cyber-fraud losses exceeding Rs 22,800 crore in 2024 alone, the enforceable measures introduced under the Telecom Cyber Security Rules are proportionate and necessary. The objective, it said, is to curb misuse of telecom identifiers, ensure traceability, and preserve citizens’ trust in India’s digital ecosystem.

Device binding and automatic session logouts are already standard security features in banking and payment applications to prevent session hijacking and unauthorised access from untrusted devices. Extending similar safeguards to app-based communication platforms reflects their growing centrality in cybercrime investigations.

Industry response and legal pushback

According to reports, Meta, the parent company of WhatsApp, has begun testing beta versions that prompt users to confirm whether their registered SIM card is present in the device. References to SIM-binding compliance have reportedly been identified in the app’s code.

Technology blog WABetaInfo revealed that the new beta includes a notification on the sign-in screen stating: “Due to regulatory requirements in India, WhatsApp needs to check that your SIM card is in your device.”
However, the directive has also sparked legal resistance. A global industry body representing major messaging platforms, including Google and Meta, has reportedly challenged the SIM-binding mandate in court, arguing that it is unconstitutional and exceeds the government’s statutory authority. As reported by Business Today, the companies have written to DoT alleging that the move goes beyond the powers granted under the Telecommunications (Telecom Cyber Security) Amendment Rules, 2025.

 

Topics: WhatsAppGoogleMetaDepartment of Telecommunicationscyber fraudDigital securitySIM BindingTelecom Cyber Security Rules
Share
Tweet
SendShareSend
✮ Subscribe Organiser YouTube Channel. ✮
✮ Join Organiser's WhatsApp channel for Nationalist views beyond the news. ✮
Previous News

Sanskrit Beyond India: How ancient Buddhist monasteries in Termez preserved a transregional language of devotion

Next News

Israel launches pre-emptive strike on Iran amid escalating nuclear concerns; US backs security measures

Related News

Representative Image

Instagram’s ‘remix’ feature under scanner: Delhi High Court questions Meta over copyright misuse

AI Generated Image

Gen Z’s Digital Trap: Likes, Followers and the Battle to Stay Authentic

EPFO on WA now (This image is generated by AI)

EPFO Now on WhatsApp: How to join the official channel and get updates

India has joined the United States and 24 other countries in a global initiative to shape secure, open and interoperable 6G networks

India enters global 6G race, joins US and 24 countries to shape secure and open next-generation networks

China-linked networks have used fake accounts and coordinated propaganda to influence political debate worldwide

X uncovers 200,000 Chinese fake accounts as Google, Microsoft and Meta track CCP’s global propaganda network

A representative image

Operation Cyber Prahar: West Bengal arrests 107 in seven days, targets cybercrime hotspots and fraud networks

Load More

Latest News

AI Generated Representative Image

India’s official map standardises names of 28 places in Ladakh; Strategic move against China’s cartographic aggression

Hindu Hate Watch: 49 Reported Cases in a Week

Hindu Hate Watch-A Weekly tracker: 49 reported cases of attacks, threats, conversion and targeting

Burial service for Christian youth leader Filibus Usman Kuje on Aug. 10, 2026 in Amaha village, Kokona County, Nasarawa state, Nigeria

Nigeria: Islamic terrorists kill one Christian every 86 minutes; Report reveals 4,216 deaths between January-September

BAPS Gets Clean Chit in Eiffel Tower Row

BAPS Gets Clean Chit in Eiffel Tower Row: No request to exclude women staff; Director to resign over operational lapse

Cocroach Abhijit Dipke

CJP wants the Election Commission to answer tough questions, but who will answer questions about CJP’s funding?

Russian President Vladimir Putin and PM Modi(File Photo)

“PM Modi has very good ideas to end Russia-Ukraine conflict”; President Putin thanks PM Modi for peace efforts

RSS shakha in Aravanchal in Cherupuzha Khand of Payyannoor Sangh zilla, Kannur, Keralam

Keralam: Swayamsevaks respond to CPM attack with increased attendance from 15 to 50 at RSS shakha in Kannur

Flydubai Attack: “Hanuman Chalisa gave me strength”, Smit Machchhar tells PM Modi as Indian pilot’s bravery saved lives

Delhi SIR exercise (A representative image)

Delhi SIR exposes voter list anomalies: 6.4 percent notices for siblings less than 9 months gap – But that’s not all

Indian Express Investigation vs Official Verification: Will the newspaper apologise?

Goa Chief Election Officer fact-checks ‘97 valid voters’ claim by Indian Express; 3 among 97 had Portuguese passports

Load More
  • Privacy
  • Terms
  • Cookie Policy
  • Refund and Cancellation
  • Delivery and Shipping

© Bharat Prakashan (Delhi) Limited.
Tech-enabled by Ananthapuri Technologies

  • Home
  • Search Organiser
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Africa
    • North America
    • South America
    • Europe
    • Australia
  • Editorial
  • Operation Sindoor
  • Opinion
  • Analysis
  • Defence
  • Culture
  • Sports
  • Business
  • RSS @ 100
  • Entertainment
  • More ..
    • Sci & Tech
    • Vocal4Local
    • Special Report
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Health
    • Politics
    • Law
    • Economy
    • Obituary
  • Subscribe Magazine
  • Read Ecopy
  • Advertise
  • Circulation
  • Careers
  • About Us
  • Contact Us
  • Policies & Terms
    • Privacy Policy
    • Cookie Policy
    • Refund and Cancellation
    • Terms of Use

© Bharat Prakashan (Delhi) Limited.
Tech-enabled by Ananthapuri Technologies