DOJ charges Pakistani man with bribing AT&T employees over $1M to install malware on the company's network, in a scheme that unlocked more than 2M devices
DOJ charges Pakistani man with bribing AT&T employees more than $1 million to install malware on the company's network, unlock more than 2 million devices.
Context & Ripple Effects
This criminal case is the escalation of a fight AT&T started in court four years earlier: its civil suit against former workers and Swift Unlocks alleged the same playbook — malware loaded onto AT&T computers to unlock phones at scale. The DOJ charge converts that contract-and-tort dispute into a federal bribery prosecution, with over $1M in payments and more than 2M devices unlocked.
The story also fits a widening pattern across carriers: a former T-Mobile store owner was later convicted of hacking staff to reach internal unlocking tools for a $25M business, and a Chicago-led SIM-swap gang was indicted for impersonating customers inside Apple, T-Mobile, AT&T, and Verizon stores. Insider access at US carriers has become a repeatable criminal supply chain.
First-order effects
- AT&T employees who took bribes now face federal criminal exposure rather than just termination or civil liability, and the illicit unlock operation behind the 2M devices loses its network access immediately.
- The DOJ gains a template prosecution for insider bribery at a telecom, distinct from AT&T's earlier civil approach against Swift Unlocks.
Second-order effects
- Rivals reading the T-Mobile and AT&T cases are pushed to harden employee access to device-unlocking and internal tools, since the same insider pathway has now been monetized at both carriers.
- Resellers and grey-market unlock services that depended on compromised carrier tools lose their supply, raising prices and pushing demand toward legitimate unlock channels.
Third-order effects
- If the pattern holds, carrier insider-access fraud gets treated as organized crime — prosecuted federally alongside SIM-swapping — rather than as a civil matter between employer and ex-staffers.
- Device-unlocking infrastructure becomes a standing attack surface regulators and carriers must audit, reshaping how telecoms gate employee tooling.
The trend: Phone-unlocking fraud at US carriers is migrating from civil lawsuits to federal criminal prosecutions as DOJ dismantles insider-bribery pipelines.