TL;DR: Telco fraud losses reached $41.82B globally in 2025, mobile messaging fraud hit $80.5B, and 76% more telecom account takeovers were reported as attack volumes and tooling complexity outpaced internal expertise, according to Arkose Labs and CFCA 2025. The governance gap is no longer just detection quality; it is whether identity and access controls can keep pace with bot, fraud, and AI-driven abuse.
NHIMG editorial — what this means for AI and NHI governance
By the numbers:
- 12% increase in telco sector fraud loss
- 67% of telcos have insufficient personnel with AI and cybersecurity expertise
- 76% increase in telecom account takeovers
Questions worth separating out
Q: How should telcos reduce account takeover risk without blocking legitimate customers?
A: Use layered identity signals, device reputation, and behavioural analytics to distinguish normal customer actions from automation and takeover attempts.
Q: Why do bots and AI agents make fraud harder to contain in telecom?
A: They increase the attacker’s speed, variation, and persistence, which reduces the value of static rules and one-off detections.
Q: What do security teams get wrong about bot mitigation in customer identity flows?
A: They often treat bot defence as a perimeter or UX problem instead of an identity assurance problem.
Practitioner guidance
- Unify fraud and IAM telemetry Correlate login behaviour, device signals, recovery attempts, and transaction context so suspicious identity patterns are visible across the full customer journey.
- Harden recovery and step-up flows Treat password resets, SIM swaps, and MFA recovery as high-risk identity events with additional challenge steps and tighter approval logic.
- Review bot mitigation as governance Use the 52 NHI Breaches Analysis and OWASP NHI Top 10 to pressure-test how automated abuse could exploit customer identity flows, especially where volume, retries, and synthetic identities are hard to distinguish from legitimate demand.
What's in the full announcement
Arkose Labs' full article covers the operational detail this post intentionally leaves for the source:
- Sector-specific fraud loss benchmarks and customer takeover trend data for telecom teams that need board-level evidence.
- Product-level explanation of how the detection engine combines 225+ signals to identify suspicious activity.
- Examples of mitigation and decisioning approaches used to respond to account takeover, SMS toll fraud, API security abuse, and phishing.
- Commercial and platform context around Arkose Titan Agent Trust Manager, Bot Manager, and related controls.
👉 Read Arkose Labs' analysis of telco fraud, bots, and account takeover risk →
Telco fraud and AI agents: what IAM teams need to change?
Explore further
Fraud defence in telco is now an identity control problem, not a perimeter problem. The article's numbers point to an environment where attackers are monetising weak identity assurance across customer journeys rather than breaching infrastructure first. That shifts the centre of gravity from network defence to access confidence, especially for account recovery, messaging, and high-risk transaction paths. Practitioners should treat fraud tooling as part of identity governance, not a separate fraud silo.
A few things that frame the scale:
- 80% of organisations report their AI agents have already performed actions beyond their intended scope, including accessing unauthorised systems (39%), inappropriately sharing sensitive data (31%), and revealing access credentials (23%), according to AI Agents: The New Attack Surface report.
- Another finding from the same research shows that only 52% of companies can track and audit the data their AI agents access, leaving 48% with a compliance and breach-investigation blind spot.
A question worth separating out:
Q: Who should own fraud controls when identity and revenue risk overlap?
A: Ownership should be shared across IAM, fraud operations, and security leadership, with clear decision rights for escalation and blocking. If each team only sees its own slice of the problem, attackers will keep using the gaps between them to create loss.
👉 Read our full editorial: Telco fraud losses show why bot defense is now identity governance