Identity Theft via SIM Cards: What to Do with Unauthorized Loan Alerts

Introduction

A growing number of Filipinos receive alarming text messages, emails, or app notifications saying they have applied for, guaranteed, or defaulted on a loan they never took out. In many cases, the problem begins with a compromised mobile number, a fraudulently registered SIM card, or identity data used by scammers to open accounts with online lending platforms, e-wallets, or other financial services.

In the Philippines, a mobile number is no longer just a communication tool. It is commonly used for one-time passwords, banking access, e-wallet verification, loan applications, Know-Your-Customer checks, and account recovery. Because of this, SIM-related identity theft can quickly become financial, legal, and reputational harm.

This article explains what SIM-card identity theft is, why unauthorized loan alerts should be taken seriously, what laws may apply in the Philippines, and what practical steps a victim should take.

What Is SIM-Card Identity Theft?

SIM-card identity theft happens when another person uses, controls, registers, duplicates, ports, or exploits a SIM card or mobile number to impersonate someone else. It can occur in several ways.

The first is SIM swap fraud, where a scammer convinces a telecommunications provider to transfer a victim’s mobile number to another SIM. Once the scammer receives the victim’s text messages, they may intercept OTPs, reset passwords, access e-wallets, and apply for loans.

The second is fraudulent SIM registration, where another person registers a SIM using stolen, fake, or improperly obtained identity documents. That SIM may later be used for scams, loan applications, harassment, or fraud.

The third is account takeover through OTP interception, where the victim still physically has the SIM but the scammer gains access to messages, device backups, malware, or linked accounts.

The fourth is identity data misuse, where the scammer uses a person’s name, phone number, ID, selfie, address, employment details, or contact list to apply for online loans or financial accounts.

In many cases, the victim first discovers the fraud only after receiving a loan approval message, debt collection notice, verification OTP, “past due” warning, or threat from a lending app.

Why Unauthorized Loan Alerts Matter

An unauthorized loan alert is not just spam. It may indicate that a person’s personal information has already been used in a financial transaction. Even if no money was received by the victim, the victim’s name may be connected to a loan record, credit profile, collection activity, or internal watchlist.

The victim may face repeated collection messages, calls to relatives or workplace contacts, damage to credit reputation, unauthorized processing of personal data, and possible exposure to further fraud. In some cases, the scammer may have access to the victim’s mobile number, email, government ID, e-wallet, or online banking credentials.

The correct approach is to treat the alert as a possible identity theft incident until proven otherwise.

Relevant Philippine Laws

Several Philippine laws may apply depending on the facts.

1. SIM Registration Act

Republic Act No. 11934, known as the SIM Registration Act, requires SIM users to register their SIMs using valid identifying information. The law was enacted to deter crimes committed through mobile numbers, including scams, fraud, and identity theft.

If a SIM was registered using another person’s identity without authority, the incident may involve false information, fraudulent registration, or misuse of identity credentials. A victim may report the matter to the telecommunications provider and request verification, deactivation, correction, or investigation of SIMs fraudulently associated with the victim’s identity.

The SIM Registration Act is especially relevant where the victim suspects that a mobile number was registered in their name without consent, or where their legitimate number was compromised through a SIM swap or unauthorized account change.

2. Data Privacy Act of 2012

Republic Act No. 10173, or the Data Privacy Act of 2012, protects personal information and sensitive personal information. Names, mobile numbers, addresses, government ID details, financial information, biometrics, selfies, and loan application data may all fall within protected personal data.

Unauthorized loan applications may involve unlawful processing, unauthorized disclosure, improper access, or failure to protect personal information. Lending companies, fintech platforms, telecom providers, and other personal information controllers have duties to process data lawfully, securely, and transparently.

A victim may invoke data privacy rights, including the right to be informed, the right to access personal data, the right to dispute inaccurate information, the right to object to improper processing, and the right to request correction or blocking of data when appropriate.

Complaints involving misuse of personal information, unauthorized processing, or failure to respond to data privacy requests may be brought to the National Privacy Commission.

3. Cybercrime Prevention Act of 2012

Republic Act No. 10175, or the Cybercrime Prevention Act, may apply when the identity theft was committed using information and communications technology. Possible cybercrime-related issues include illegal access, computer-related fraud, computer-related identity theft, misuse of devices, phishing, unauthorized account access, or online impersonation.

Where a scammer used a mobile number, digital account, online lending platform, e-wallet, email, or app to impersonate the victim, the incident may fall within cybercrime enforcement concerns. Reports may be made to cybercrime units of law enforcement agencies such as the Philippine National Police Anti-Cybercrime Group or the National Bureau of Investigation Cybercrime Division.

4. Revised Penal Code

The Revised Penal Code may also be relevant depending on the conduct involved. Possible offenses may include estafa, falsification, use of falsified documents, unjust vexation, grave threats, coercion, or other fraud-related crimes.

For example, if a person used another’s identity to obtain money from a lender, that may involve deceit and damage. If false IDs, forged signatures, fake employment records, or fabricated documents were submitted, falsification issues may arise. If collectors threaten, shame, or harass the victim or their contacts, other criminal or civil remedies may become relevant.

5. Lending Company and Financing Rules

Online lending platforms and financing companies in the Philippines are subject to regulation, including rules against abusive debt collection, unfair practices, deceptive conduct, and improper use of borrower or contact data.

A legitimate lending company should have procedures for identity verification, fraud complaints, dispute handling, and data protection. If a company continues collection despite being notified of identity theft, refuses to provide information, or harasses third parties, the victim may escalate the matter to the appropriate regulator, such as the Securities and Exchange Commission for lending or financing company concerns.

First Response: What to Do Immediately

1. Do Not Ignore the Alert

A victim should not assume the message is harmless. Even if the alert appears suspicious, it may be evidence of attempted or completed fraud. The victim should preserve the message, avoid clicking suspicious links, and begin documenting the incident.

The victim should take screenshots showing the sender, date, time, mobile number, loan reference number, app name, amount, and any threats or collection messages. Screenshots should be backed up in a secure folder. If phone calls were received, the victim should record the date, time, caller number, name of the caller, company claimed, and what was said.

2. Do Not Pay a Loan You Did Not Take

A person should be careful about paying an unauthorized loan simply to stop harassment. Payment may later be misinterpreted as acknowledgment, although the legal effect depends on the circumstances. The better first step is to dispute the debt in writing, state that the person did not apply for or receive the loan, demand proof, and request immediate suspension of collection activity while the matter is investigated.

3. Contact the Lending Company in Writing

The victim should contact the lending company or app using official channels, not links from suspicious messages. The communication should be in writing so there is a record.

The victim may request the following:

  1. The loan application date and time.
  2. The mobile number, email address, and account used.
  3. The amount allegedly borrowed and where proceeds were released.
  4. The identity documents submitted.
  5. The selfie, signature, or verification materials used.
  6. The bank account or e-wallet that received the funds.
  7. The IP address, device details, or transaction logs, if available.
  8. Immediate tagging of the account as disputed due to identity theft.
  9. Suspension of collection calls, text blasts, and contact-list harassment.
  10. Correction, blocking, or deletion of inaccurate personal data, where legally appropriate.

The victim should not provide excessive new personal information to the company unless necessary to verify identity and process the dispute. Copies of IDs may be watermarked with the purpose, date, and recipient, such as: “For identity theft dispute with [Company] only.”

4. Contact the Telecommunications Provider

If the victim suspects SIM swap, SIM takeover, unauthorized SIM registration, or loss of control over a number, the telecom provider should be contacted immediately.

The victim should ask whether there were recent SIM replacement requests, porting requests, changes in account details, unusual activity, or SIMs registered under the victim’s identity. The victim may request temporary blocking, account recovery, number security measures, or investigation.

If the mobile number is linked to banking, e-wallet, email, or government accounts, those accounts should be secured immediately after contacting the telecom provider.

5. Secure Financial and Digital Accounts

The victim should change passwords for email, banking, e-wallet, social media, and loan or shopping apps. Passwords should be unique and strong. Multi-factor authentication should be enabled using an authenticator app where available, rather than relying solely on SMS OTPs.

The victim should check e-wallet and bank transaction histories, remove unknown devices, revoke app permissions, and review account recovery emails or phone numbers. If an email account was compromised, the scammer may be able to reset multiple accounts even after the SIM problem is fixed.

6. Notify Banks, E-Wallets, and Credit-Related Institutions

If there is any chance that bank or e-wallet accounts were accessed, the victim should notify the financial institution and request monitoring, temporary restrictions, account recovery, or replacement credentials. Unauthorized transactions should be reported promptly.

The victim may also check whether the unauthorized loan appears in credit reports or credit databases, if accessible. If an inaccurate record appears, the victim should dispute it in writing and provide supporting documents.

7. File Reports with Authorities

The victim may consider filing reports with the following, depending on the facts:

PNP Anti-Cybercrime Group for cybercrime, online fraud, identity theft, phishing, SIM-related fraud, and unauthorized account access.

NBI Cybercrime Division for cybercrime investigation and documentation.

National Privacy Commission for misuse of personal data, unauthorized processing, data breach concerns, or failure of a company to respect data subject rights.

Securities and Exchange Commission for complaints against lending companies or financing companies, especially abusive collection, harassment, or unfair practices.

Bangko Sentral ng Pilipinas for concerns involving BSP-supervised financial institutions, banks, e-money issuers, or payment systems.

Telecommunications provider for SIM registration, SIM swap, account takeover, or unauthorized SIMs connected to the victim’s identity.

Barangay or local police station for blotter purposes, especially if threats, harassment, or identity misuse are ongoing.

A police blotter alone may not resolve the issue, but it helps create a dated record. For serious fraud, a formal complaint with supporting evidence is preferable.

Evidence to Preserve

Evidence is critical. The victim should preserve:

  1. Screenshots of all loan alerts, OTPs, collection messages, and threats.
  2. Call logs from collectors or unknown numbers.
  3. Emails from lending companies or financial platforms.
  4. Screenshots of app notifications.
  5. Copies of dispute letters and company replies.
  6. Telecom reports or reference numbers.
  7. Police blotter or cybercrime complaint documents.
  8. Proof that the victim did not receive loan proceeds.
  9. Bank or e-wallet statements showing no receipt of the alleged loan.
  10. Any evidence of SIM swap, lost signal, unauthorized password resets, or account login alerts.
  11. Names and numbers of collectors who called.
  12. Evidence that contacts, relatives, or employers were messaged.

The victim should avoid deleting messages even if they are distressing. They may be useful for law enforcement, regulatory complaints, or civil claims.

How to Write a Dispute Letter to a Lending Company

A dispute letter should be clear, factual, and firm. It should avoid emotional accusations and focus on legal and evidentiary demands.

A victim may write:

I am formally disputing the alleged loan under my name. I did not apply for, authorize, receive, or benefit from this loan. I believe my personal information and/or mobile number may have been misused for identity theft. Please immediately tag the account as disputed, suspend all collection activity, stop contacting my relatives, employer, and other third parties, preserve all application and transaction records, and provide proof of the alleged loan application, identity verification, disbursement account, and supporting documents. I also request correction, blocking, or appropriate restriction of inaccurate personal data relating to me, subject to applicable law.

The letter should include the victim’s full name, contact details, reference number if available, date of alert, and supporting evidence. It should be sent through official email, app support ticket, or registered channels where proof of sending can be retained.

What If Collectors Harass the Victim or Their Contacts?

Debt collection must not become harassment. A person who did not borrow money should not be threatened, shamed, or pressured into paying an unauthorized debt. If collectors contact relatives, employers, or friends using the victim’s contact list, the matter may raise privacy, harassment, and regulatory issues.

The victim should document every contact. If the collector uses threats, insults, public shaming, fake legal notices, or disclosure of personal information, screenshots and recordings should be preserved where lawful and safe. The victim may send a written cease-and-desist style notice demanding that collection activity stop while the identity theft dispute is pending.

If harassment continues, the victim may escalate the matter to regulators and law enforcement. The complaint should include the company name, app name, phone numbers used, screenshots, call logs, and proof that a dispute had already been filed.

What If the Loan Company Says the Victim Must Pay First?

A company may not simply shift the burden to the alleged borrower without addressing a credible identity theft dispute. The victim should ask for proof that they personally applied, consented, passed verification, and received the loan proceeds.

Relevant questions include:

  1. What ID was submitted?
  2. Was a live selfie or liveness check used?
  3. What mobile number and email were used?
  4. Where were the funds disbursed?
  5. Was the receiving wallet or bank account under the victim’s name?
  6. What device submitted the application?
  7. What IP address or geolocation was used?
  8. Was the SIM registered to the victim?
  9. Did the company verify ownership of the number?
  10. Were there signs of fraud or mismatch?

If the company refuses to answer or continues collection without investigation, the refusal itself may be relevant in a complaint.

What If the Victim’s ID Was Used?

If a government ID, selfie, signature, or other document was used, the victim should assume that identity documents may continue to be misused. The victim should prepare an affidavit of identity theft, report the incident, and notify relevant institutions.

For future use, ID copies should be watermarked with the specific purpose and date. For example: “For GCash account verification only, June 6, 2026.” This reduces the risk that a clean copy will be reused elsewhere.

If the ID involved is a passport, driver’s license, UMID, PhilID, PRC ID, or other government credential, the victim may consider asking the issuing agency about replacement, annotation, or recommended protective steps. Not all agencies have the same procedures, but a report can help establish that the ID was compromised.

SIM Swap Warning Signs

A victim should suspect SIM swap or mobile account compromise if any of the following occurred:

  1. Sudden loss of mobile signal without explanation.
  2. OTPs received for transactions not initiated by the victim.
  3. Password reset notices from banks, e-wallets, email, or social media.
  4. Mobile number no longer receiving calls or texts.
  5. Telecom account changes not requested by the victim.
  6. E-wallet or banking login from unknown devices.
  7. Messages saying a SIM replacement or account change was successful.
  8. Loan application alerts from unfamiliar apps.
  9. Contacts receiving strange messages from the victim’s number.
  10. Sudden inability to access accounts tied to the number.

When these signs appear, the victim should act urgently because control of a mobile number can allow rapid takeover of multiple accounts.

Possible Liability of Lending Platforms

A lending platform may face legal and regulatory consequences if it failed to verify identity properly, processed personal data without lawful basis, ignored fraud indicators, mishandled a dispute, disclosed personal information to third parties, or used abusive collection methods.

However, liability depends on the facts. A platform may argue that it followed its verification procedures and that a scammer successfully used stolen credentials. The victim’s goal should be to force a documented investigation, stop collection, preserve evidence, and correct any inaccurate records.

The platform should not rely solely on possession of a mobile number as proof of identity. In a digital lending environment, mobile number verification alone may be insufficient where fraud indicators exist.

Possible Liability of Telecom Providers

A telecom provider may become relevant if the incident involved SIM swap, unauthorized replacement, improper SIM registration, weak account verification, or failure to act after notice. If a scammer gained control of a number because of inadequate verification, the victim may have grounds to complain.

The victim should request records of SIM replacement, porting, account changes, registration details, and customer service interactions. Some information may not be released immediately due to privacy and security rules, but the request creates a record and may support later investigation by authorities.

Possible Liability of the Scammer

The scammer may be criminally liable for identity theft, fraud, falsification, cybercrime-related offenses, or other crimes depending on the acts committed. If money was obtained from a lender using another person’s identity, the lender may also be a victim of fraud, while the person whose identity was used is a victim of impersonation and misuse of personal data.

The difficulty is often identification. Scammers may use mule accounts, fake SIMs, stolen IDs, VPNs, and disposable devices. This is why transaction logs, disbursement accounts, device information, and telecom records are important.

Should the Victim Execute an Affidavit of Identity Theft?

An affidavit can be useful. It may be submitted to lenders, telecom providers, banks, e-wallets, regulators, and law enforcement. The affidavit should state the facts personally known to the victim:

  1. The victim did not apply for the loan.
  2. The victim did not authorize anyone to apply.
  3. The victim did not receive the loan proceeds.
  4. The victim received alerts or collection messages on specific dates.
  5. The victim suspects misuse of personal information or SIM-related identity theft.
  6. The victim has reported or is reporting the incident to relevant entities.
  7. Supporting documents are attached.

The affidavit should be notarized if it will be submitted formally. False statements in an affidavit may carry legal consequences, so it should be accurate and limited to facts the victim can truthfully affirm.

What to Ask from the Lending Company

A victim should ask the lending company to do the following:

  1. Mark the account as disputed.
  2. Suspend collection while investigating.
  3. Stop contacting third parties.
  4. Preserve all records.
  5. Provide application documents.
  6. Provide disbursement details.
  7. Provide verification logs.
  8. Confirm whether the loan was reported to credit databases.
  9. Correct or suppress inaccurate records.
  10. Confirm the result of the fraud investigation in writing.

The victim should also demand that the company not sell, assign, endorse, or transfer the alleged debt to a collection agency while the identity theft dispute is pending, unless the dispute status is clearly disclosed.

What to Ask from the Telecom Provider

A victim should ask the telecom provider to:

  1. Confirm whether the number had any SIM replacement or porting activity.
  2. Confirm whether there were recent account changes.
  3. Secure the mobile account.
  4. Investigate unauthorized SIM registration or use.
  5. Deactivate fraudulent SIMs where appropriate.
  6. Provide a reference number for the report.
  7. Advise on account recovery and additional safeguards.
  8. Preserve logs relevant to the incident.

If the victim lost signal around the time of the unauthorized loan, that fact should be emphasized.

What to Ask from Banks and E-Wallets

The victim should ask banks and e-wallet providers to:

  1. Check for unauthorized logins.
  2. Remove unknown devices.
  3. Reset credentials.
  4. Block or monitor suspicious transactions.
  5. Confirm whether loan proceeds entered any account under the victim’s name.
  6. Issue written confirmation if no such proceeds were received.
  7. Assist in fraud investigation if a receiving account is identified.

If loan proceeds were sent to an account not owned by the victim, that is a major fact supporting the dispute.

Dealing with Credit Reputation

Unauthorized loans can affect credit reputation if reported. The victim should dispute any inaccurate record as soon as discovered. The dispute should include the identity theft affidavit, police or cybercrime report, communications with the lender, and proof that the victim did not receive funds.

The victim should ask for written confirmation once the record is corrected, blocked, or removed. If the lender refuses, the victim may escalate to regulators or pursue legal remedies.

Civil Remedies

Depending on the harm suffered, a victim may consider civil remedies. These may include claims for damages arising from negligence, wrongful collection, reputational harm, invasion of privacy, misuse of personal data, or other wrongful acts.

Civil action requires evidence of fault, damage, and causation. It may be appropriate where the company ignored clear fraud evidence, continued harassment, disclosed the alleged debt to third parties, or caused measurable damage to the victim’s employment, business, credit, or reputation.

Criminal Complaint Considerations

A criminal complaint should be supported by organized evidence. The victim should prepare a timeline, screenshots, call logs, account records, dispute letters, affidavits, and names of suspected entities or persons if known.

If the scammer is unknown, the complaint may still be filed against “John Doe” or unknown persons, depending on the procedure followed by the receiving authority. The purpose is to document the crime and trigger investigation.

Data Privacy Complaint Considerations

A data privacy complaint may focus on unauthorized processing, failure to protect personal data, refusal to honor data subject rights, improper disclosure to contacts, or continued processing of inaccurate data after notice.

Before filing, it is often useful to send the company a written privacy-related request and allow a reasonable time for response, unless urgent harm requires immediate escalation. The complaint should show what data was misused, who processed it, what harm occurred, and what response was requested.

SEC Complaint Considerations Against Lending Companies

If the matter involves a lending company, financing company, or online lending app, the victim may complain about unfair collection practices, harassment, unauthorized disclosure, abusive communications, or failure to address a fraudulent loan dispute.

The complaint should identify the registered company name if known, the app name, the phone numbers used, screenshots of messages, proof of the identity theft dispute, and the company’s response or lack of response.

BSP Complaint Considerations

If banks, e-money issuers, payment operators, or BSP-supervised institutions are involved, the victim may use the institution’s official complaint process and then escalate if unresolved. BSP-related complaints are especially relevant where unauthorized e-wallet activity, bank account access, or electronic fund transfers occurred.

Practical Timeline for Victims

Within the first few hours, the victim should preserve evidence, avoid clicking suspicious links, secure accounts, contact the telecom provider, and contact the lender through official channels.

Within the first twenty-four to forty-eight hours, the victim should send a written dispute, notify banks and e-wallets, change passwords, enable stronger authentication, and prepare a basic incident timeline.

Within the first week, the victim should file reports with appropriate authorities, execute an affidavit if needed, follow up with the lender and telecom provider, and monitor credit or financial accounts.

Over the following weeks, the victim should insist on written investigation results, correction of inaccurate records, and cessation of collection activity. If unresolved, regulatory or legal escalation may be necessary.

Sample Incident Timeline

A victim should prepare a timeline like this:

June 1, 2026, 9:15 a.m. — Received SMS from unknown lending platform saying loan application was approved.

June 1, 2026, 9:20 a.m. — Received OTP for account not created by victim.

June 1, 2026, 10:00 a.m. — Checked bank and e-wallet accounts; no loan proceeds received.

June 1, 2026, 11:30 a.m. — Sent written dispute to lending company.

June 1, 2026, 2:00 p.m. — Called telecom provider to report possible SIM-related identity theft.

June 2, 2026 — Filed cybercrime report and prepared affidavit.

A clean timeline helps investigators and regulators understand the incident quickly.

Common Mistakes to Avoid

Victims should avoid paying the alleged loan without disputing it, deleting messages, arguing only by phone, clicking suspicious links, sending unwatermarked ID copies, ignoring OTP alerts, using the same passwords, delaying reports, or assuming that a loan app’s claim is automatically valid.

Victims should also avoid posting sensitive documents publicly on social media. Public pressure may help in some cases, but exposing IDs, account numbers, phone numbers, or reference numbers can worsen identity theft.

Preventive Measures

To reduce future risk, individuals should:

  1. Use unique passwords for email, banking, e-wallets, and apps.
  2. Enable app-based multi-factor authentication where possible.
  3. Avoid sharing OTPs with anyone.
  4. Watermark ID copies.
  5. Avoid uploading IDs to unverified apps.
  6. Regularly check SIM registration and telecom account security.
  7. Use official app stores only.
  8. Review app permissions.
  9. Avoid storing ID photos in unsecured cloud folders.
  10. Be cautious with public Wi-Fi and phishing links.
  11. Monitor bank and e-wallet notifications.
  12. Keep a separate secure email for financial accounts.
  13. Report lost phones or SIMs immediately.
  14. Avoid giving unnecessary access to contact lists.
  15. Keep software and device security updated.

Special Concern: Contact-List Harassment

Some online lending apps have been criticized for accessing contact lists and messaging third parties. If relatives, friends, coworkers, or employers receive messages about an alleged debt, the victim should collect screenshots from those recipients. The disclosure of debt allegations to third parties may raise privacy and collection-abuse concerns.

The victim should ask the company to identify how it obtained the contacts, why those contacts were processed, and what lawful basis it claims for disclosure. If the victim never applied for the loan, the use of those contacts becomes even more questionable.

Special Concern: Fake Legal Threats

Some collection messages use phrases like “final warning,” “legal case filed,” “warrant,” “subpoena,” or “barangay complaint” to scare victims into payment. A private collector cannot simply issue a warrant or cause imprisonment for nonpayment of debt. Fraud, however, is different from ordinary debt; still, a victim of identity theft should not be intimidated into paying a loan they did not take.

The victim should preserve threatening messages and verify any alleged legal document with the issuing court, barangay, prosecutor’s office, or law enforcement agency. Fake legal documents may create additional liability for the sender.

Is Nonpayment of a Loan a Crime?

Ordinary nonpayment of debt is generally a civil matter. However, fraud may be criminal if there was deceit from the beginning. In an identity theft case, the victim’s position is that they were not the borrower and did not commit fraud. The scammer, not the victim, is the person who may have used deceit.

Collectors sometimes blur this distinction. The victim should respond in writing that the debt is disputed because of identity theft and that any accusation of fraud against the victim is denied unless supported by evidence.

When to Get a Lawyer

A lawyer is especially useful if the amount is large, the company refuses to stop collection, credit records are affected, threats are made, personal data is disclosed to third parties, a formal complaint must be filed, or the victim receives legal papers.

A lawyer can help draft demand letters, affidavits, complaints, and requests for preservation of evidence. A lawyer can also evaluate whether civil damages, criminal complaints, or regulatory actions are appropriate.

Core Legal Position of the Victim

The victim’s position should be consistent:

  1. The victim did not apply for the loan.
  2. The victim did not authorize anyone to apply.
  3. The victim did not receive the proceeds.
  4. The victim disputes the debt.
  5. The victim demands proof of application, consent, verification, and disbursement.
  6. The victim demands suspension of collection.
  7. The victim demands protection and correction of personal data.
  8. The victim reserves all rights under Philippine law.

Consistency matters. The victim should avoid making statements like “I will pay later” or “I borrowed but did not receive it” unless true. The issue is not inability to pay; it is non-participation and identity theft.

Conclusion

Unauthorized loan alerts connected to a SIM card or mobile number should be treated as a serious identity theft warning. In the Philippines, the legal issues may involve SIM registration, data privacy, cybercrime, fraud, lending regulation, abusive collection, and credit reporting.

The victim’s immediate priorities are to preserve evidence, dispute the loan in writing, secure the SIM and digital accounts, notify financial institutions, report to appropriate authorities, and demand correction of inaccurate records. The victim should not be pressured into paying a loan they did not apply for, authorize, or receive.

In SIM-related identity theft, speed and documentation are crucial. The sooner the victim creates a clear paper trail, the better the chances of stopping collection, protecting credit reputation, identifying the fraud path, and holding the responsible persons or entities accountable.

Disclaimer: This content is not legal advice and may involve AI assistance. Information may be inaccurate.