SIM card swap attack steals $24 million! A 21-year-old suspect empties a crypto investor’s account

SIM卡交換攻擊

A 21-year-old Manhattan resident, Nicholas Truglia, is accused of carrying out a SIM swap attack—emptying cryptocurrency investor Michael Terpin’s account—through SIM card exchanges, causing more than $23 million in losses, and he is also facing 21 counts of felony charges. The most widely circulated detail of the case is not the massive amount that was stolen, but a tweet the suspect himself posted: “Stole $24 million, yet still can’t seem to make friends.”

How SIM Swap Attacks Empty Crypto Accounts in Just a Few Hours

A SIM swap attack is a highly targeted social engineering technique. The attacker tricks or bribes customer service representatives at telecommunications companies to transfer the victim’s mobile phone number to a SIM card controlled by the attacker. Once the attacker gains control of the phone number, they can use the “forgot password” feature to bypass two-factor authentication (2FA) through SMS verification codes, and then access email accounts, exchange accounts, and crypto wallets.

Michael Terpin said that on January 7, 2018, he was the victim of a SIM swap attack, and more than $23 million in crypto assets in his account were transferred out in a very short period of time. Afterward, he filed a civil lawsuit against Truglia, stating: “I filed this lawsuit as part of my ongoing efforts to pursue the losses from the theft.”

The Suspect’s Self-Inflation: A Complete Profile Revealed by a Sworn Statement

A sworn statement submitted by Truglia’s former partner, Chris David, details the suspect’s lifestyle habits and mental state while he was stealing, providing a wealth of firsthand information for the entire case.

Key Details Recorded in Chris David’s Sworn Statement

A Luxurious Material Life: Rolex watches, a $6,000-per-month apartment, $100k in cash kept in a closet

Calling Himself a Robin Hood: claiming he “takes from the rich, but doesn’t give to the poor”

Publicly Praising SIM Swap Behavior: boasting about having carried out a SIM swap attack on his father through a Twitter account, @erupts

Claiming He Will Never Get Caught: “How can they prove my story is wrong? No one can put me in prison. I’m willing to bet my life on it.”

Other Behavior Recorded: David’s sworn statement also mentions that Truglia has a habit of dodging restaurant bills

Among all the details, the one with the most lasting impact is that tweet—“Stole $24 million, yet still can’t seem to make friends.” This publicly shared statement, filled with self-mockery, ultimately became part of the court filing documents and also became a widely cited warning example throughout the crypto security community.

Case Outcome and Long-Term Lessons for Crypto Security

Truglia was arrested in Manhattan in November 2018, and was then extradited to California, facing 21 felony charges. His case is a representative early example of SIM swap attacks targeting holders of high-net-worth crypto assets, and it also vividly reveals the core weakness of phone-number-based 2FA verification: the attacker doesn’t need to compromise devices—just controlling a single phone number is enough to take over a large number of associated accounts.

The case prompted the crypto community to discuss more broadly the need to upgrade verification methods, encouraging more users and institutions to move away from SMS 2FA toward authenticator apps (Authenticator App) or hardware security keys.

Frequently Asked Questions

What is a SIM swap attack, and why are crypto assets especially vulnerable?

A SIM swap attack is a social engineering method in which the attacker tricks telecommunications providers into transferring the victim’s phone number to their own SIM card. Since the reset process for most crypto exchange accounts relies on SMS verification codes, once the attacker obtains control of the number, they can completely bypass 2FA, making crypto assets a highly fragile target.

What impact did Michael Terpin’s case have on crypto security?

Terpin’s lawsuit against Truglia is one of the most representative SIM swap cases in crypto security history. It drove widespread discussion across the industry about assigning responsibility to telecommunications providers, and it also pushed the crypto community to more actively advocate abandoning SMS 2FA and switching to safer hardware-based verification solutions.

How can you effectively defend against SIM swap attacks?

Key protections include: replacing SMS 2FA with a hardware security key or an authenticator app; requesting SIM lock settings or an account PIN from telecommunications providers; avoiding directly linking important crypto asset accounts to phone numbers; and regularly reviewing the verification methods of all accounts to reduce asset exposure if a phone number is transferred away.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

North Korean APT Group HexagonalRodent Steals $12M in Crypto from Web3 Developers Using AI-Powered Attacks

Gate News message, April 24 — A North Korean state-sponsored APT group dubbed HexagonalRodent has stolen over $12 million in cryptocurrency and NFTs from Web3 developers in the first quarter of 2026, according to cybersecurity firm Expel. The group compromised 2,726 developer devices and gained acce

GateNews3h ago

Gate Daily Report (April 24): US Treasury sanctions Cambodian crypto “pig butchering” scams; Tether mints an additional 1 billion USDT

Bitcoin (BTC) rebound momentum is weakening, with a temporary quote around $78,030 as of April 24. The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) sanctioned a Cambodian politician linked to a crypto “pig butchering” scam center. Tether issued another 1 billion USDT on the Ethereum network; over the past 5 days, it has issued a total of 3 billion USDT on the Ethereum network.

MarketWhisper3h ago

US DOJ Dismantles Southeast Asian Fraud Ring, Freezes Over $701 Million in Cryptocurrency

Gate News message, April 24 — The U.S. Department of Justice announced a coordinated enforcement action against Southeast Asian criminal organizations today. Federal authorities indicted two Chinese nationals, Huang Xingshan and Jiang Wenjie, who managed operations at the Shun Da fraud center in Mya

GateNews3h ago

Trump Vows to Investigate Federal Employees’ Polymarket Trades; U.S. Soldiers Arrested for Betting on Maduro

The U.S. Department of Justice arrested a U.S. military servicemember on April 23, accusing him of using classified information to place bets on the prediction market Polymarket that Venezuelan President Nicolás Maduro would be arrested, resulting in profits of more than $400k from an initial wager of more than $33k. On Thursday, U.S. President Trump said he will investigate whether federal employees have been placing bets on sports betting platforms, criticizing, “the world has become a casino.”

MarketWhisper3h ago

Arbitrum Security Council Freezes $71M in KelpDAO Attack Funds, Reigniting Decentralization Debate

Gate News message, April 24 — Arbitrum's Security Council froze approximately 30,000 ETH (roughly $71 million) in associated funds from the KelpDAO attack on April 24, triggering renewed discussion across the crypto industry about the true meaning of

GateNews4h ago

Jane Street Files Motion to Dismiss Terraform Labs' Insider Trading Lawsuit

Gate News message, April 24 — Jane Street and several individual defendants have filed a motion with the U.S. District Court for the Southern District of New York seeking to dismiss the insider trading lawsuit brought by Terraform Labs' bankruptcy estate. The quant firm argues that Terraform is atte

GateNews8h ago
Comment
0/400
No comments