Eliminating Robocalls
twilio.com
twilio.com
It has gone on all of my business cards. It's at the bottom of every email. I put it on my website.
Google does an amazing, world class, mind blowing, job of filtering out robo calls. I get maybe one a week at most.
I get more calls direct to my cell number from random call bots that hit every number with mobile carriers than I do through my Google Voice number.
It's past time for Apple to integrate spam call filtering into iOS and Android users have no excuse for not using Google Voice.
What about downloading Hiya?
Except that it's not available outside the US. The other 95% of us can pound sand, apparently.
Eventually after I realized it was silently dropping group messages because they were MMS and Google never worked on supporting MMS (images were dropped too back then) I left it for iOS and iMessage. Getting dropped from group chats meant people thought you were ignoring them and you'd miss invitations.
Google had a huge lead with voice that they wasted instead on Buzz, Allo, Talk, Hangouts which all were killed or are being killed - I wouldn't go back.
(Obviously iMessage is different because it's not actually MMS)
Google Voice is actually a safer bet as there's no doubt all sorts of legal snares they'd hit if they shut it down. Bandwidth.com runs things behind the scenes and is a competent company to do business with. They'd likely have to spin it off if they wanted to discontinue it.
I give out my GV# (I use call-screening) to everyone (esp. businesses) and put it on my gmail .sig.
I get almost no spam calls at all.
It sure looks like they do. Spammers have been calling our office lines daily (including numbers that aren't assigned to anyone and aren't given out). The spam calls come in numerical sequence. They're clearly just working through every possible phone number, in sequence.
Google being Google completely fucked up the UX on inbound call routing. Lets say you enabled data calling to try it out because why not, they actually put something in the changelog other than 'bugs and fixes'. This will immediately break inbound calling and de-select routing calls to your phone numbers over carrier. Then if you reverted the setting to carrier, it just make it so calls went nowhere.
I've had a Google Voice number as my primary for over a decade, it took me a few days to notice none of my calls were ringing inbound. It took me over a day to figure out how to re-enable it, because you couldn't just have the line paired, you had to enable inbound calling in the app to both the phone and the app.
Google still maintains two different panels for Google Voice. This has been the case for a couple years now. Both have different features, anything important like porting and setting up voicemail manually will have to happen through 'legacy Google Voice'. It's insane.
Wow, the state we're in.
Yes! I have 2 dozen numbers "blocked" on my iPhone but the robocalls keep coming. I wish there was a "Report Spam" (Gmail) equivalent on iOS that employed smarter rules so I didn't have to manually blocking one number at a time (that's likely a throwaway account anyway).
Twilio will even let you spoof “your own number” on their network for outbound calls as mentioned in the article. Yes, they at least verify the number is “yours” before doing it, but it’s not hard to get around that limitation either assuming you have access to the other person’s phone.
Networking of all times has been grossly permissive historically and a lot of it is still today. With a lax upstream bandwidth provider, I could even pretend to have your IP address quite effectively (well, I don’t know a way to get just yours, but I do know how to get yours and the adjoining few hundred next to you).
From what I've tested, T-Mobile and Verizon will both fail to deliver SMSes that aren't originated by the carrier listed in the SMS routing for a phone # (which is wholly separate from the PSTN routing of a number, and can be a source of problems when changing cell carriers).
I can hijack SMS routing entirely for inbound/outbound, but short of doing that I can't forge the from field and get the message delivered.
I get one or two bogus calls a day, down from two or three a day at peak, perhaps four or so months ago.
To my knowledge, I've had no legit incoming calls incorrectly marked as SPAM.
It seems like this is a problem that needs to be cut down at the source of the calls, not necessarily at the filtering stage on the receiving end. Aren't most of these robo-callers likely using the same providers/APIs?
I know Twilio doesn't explicitly allow robocallers on their platform, but it's hard to believe that a lot of them are not using Twilio or companies like it to automate their spam anyway. It seems this problem arose when automated / APIs connected to the telephone system were made, like Twilio, not way back when Bell was split up.
Just a few things:
- It does filter out all the spam (I get maybe a random call once a year and a random text once every 6 months)
- There is no SIM card, so it has to go through the internet, which is much less reliable
- You can call anywhere in the world very cheaply (US is free)
- The phone apps are barely usable (Hangouts on iOS for instance) (Google Voice one is blocking non-US users)
- It's a life saver in emergency situations and just when being abroad in general, and for that only it's the best provider out there.
It's not acceptable in the USA.
I used to use Google Voice when Sprint had a deal with them so I didnt have to pay but now that I am on T-Mobile I cant use it... But I noticed the same as soon as I lost Google Voice I started seeing many more robocalls. They might even notice patterns in same call to 500 people with no human interaction when they respond lol
T-Mobile DIGITS. I got a free line like a year ago, I use it when companies want to be dickbags about not accepting voip number use (because it is still one but shows up as a mobile carrier)
So no, you don't have to hand out your primary number. You can create a new one there and use that for junk companies.
Either way you asked for a VoIP number you could sign up to use places that don't allow them. That's what I originally answered.
Wait, really? I tried forwarding calls to my Google Voice and it seemed like almost every (though not every) spam call went through without getting flagged as spam.
* How To Duck Cell Phone Taxes || https://www.forbes.com/2005/06/06/cz_sw_0606cellphone.html#2... (Not sure if this is still relevant, haven't looked at my cell phone bill in years... but never switched to a local area code since I liked the filtration side effect.)
Why is this a mainly American phenomena? How do you fix this without depending on the old whack-a-mole game of product companies adding features to fight the spam war?
I know that e-mail spam is difficult to regulate and control but other kinds of telecommunications are easier, phone calls being one just by being centralised in a few companies routing them.
You mean aside from not being OK with using Google services?
STIR/SHAKEN also can break call forwarding, as a forwarded call may get stripped of the forwarded from header by an intermediary carrier, resulting in an unvalidated caller ID getting passed, causing the call to not ring the destination.
Overall, the telcom industry is stuck in the past, with security being a joke. TLS Registration & SRTP are rarely used, most carriers sling calls bare over the internet hoping for the best.
Why would that be? I know nothing of STIR & SHAKEN, but if it's meant to reduce spam, I would think all legitimate operators would want it to work in an interoperable way.
From the perspective of some analysts, collaborating with competitors over a technology that might otherwise be used as a competitive advantage is leaving money on the table, even if the end result is a worse situation for everyone. And from an analyst's perspective, shareholders are the company's customers, not the people who use their services. Which has a certain logic to it, but we'll see if these companies care more about their customers or their shareholders.
Why would I want spam calls on my network? Unless they're paying me by the call or something, that's the last thing I want.
Carriera have an incentive to increase call acceptance, and that means cut down on the bullshit robocalls that are already illegal to cellphones, but rarely enforced.
Sort of how email servers blacklist servers sending them spam except they dont have to cut them off, just eg add a second or two before they pass the call on..
Also, from what the FCC chair is saying, while nothing is forcing the carriers to play nicely, he is basically warning them if they don't work together to create/implement a spec to help with the problem, the FCC will force something (that probably won't be as easy to deal with). WSJ had a podcast interviewing him recently about it[1].
[0] https://www.fcc.gov/call-authentication
[1] (interview starts 23 minutes in) http://www.wsj.com/podcasts/instant-message/20-tesla-got-a-b...
After the net neutrality debacle, including the FBI investigation into public comment fraud [0], I'm writing off whatever "corporate difficulty" Ajit Pai is threatening as a snowball's chance in hell. As long as he's chair, that agency is squarely in the "regulatory capture" box.
[0] https://arstechnica.com/tech-policy/2018/12/fbi-investigatin...
For me, it's very very rare for an incoming voice call to be a friend - 99.9% of them are from businesses, and I prioritise them accordingly. I sometimes realise my phone is on silent, and think "Oh yeah, I was out to dinner or at the movies 3 or 4 days ago, and didn't remember to turn the ringer back on..."
Right now, I can't even use apps like Hiya that implement prefix blocking. My method right now is to forward ALL calls to a google voice number, and those are transcribed or what-have-you. If you don't leave a message, I don't care about you.
We need a signal, at the highest of levels to basically make the decision on what's going to happen to the phone network, because honestly, a brand new system is what I expect at this point, not a patch.
All other calls should go to voicemail by default.
The way Apple allows you to interact with CallKit makes this hard to implement because a blacklist of numbers is required and a blacklist of all numbers is huge.
I still want notifications for other things (especially text).
I already don’t answer numbers not in contacts (I think this is true of most people) so no real change in behavior.
I tell this to everyone I care for as well, if I don't pick up by the third ring, hang up and dial again. (This is to skip it going to voicemail and also differentiate the behavior).
I don't expect scammers to pick up this tactic because it would double their OpEx and also make it more likely that they are targeted for actually trying to call your number with intent, rather than in error.
Except my missed call log is full of back-to-back calls from random phone numbers in my prefix. Either half the folks in Metro NYC (where I haven't lived in over a decade) are calling me to report the other half got hit by a car, or this adaption has already been made.
The practice of leaving messages directly on voicemail bypassing the ability for the recipient to answer is commonly referred to as "voicedrops". I know this because a client asked for my compamy to implememt this ability, using carriers API first and successive calls as a fallback. Current regulations in the US don't explictly define this the same as a call, IIRC Canada does.
They have (had? still on 10.3 which it claims is up to date) that option under the "Repeated Calls" clicky box -- allow calls if they call back within 3 minutes.
Had to turn even that off since the spammers got smart and were getting through.
Telecoms are far from all that bad. But I understand why everyone hates their phone bill and of course agree that we need to act against predatory pricing, and such.
And then go sell location data to all sorts of shady characters?
A few examples:
https://news.ycombinator.com/item?id=17081684
https://news.ycombinator.com/item?id=18857220
https://hn.algolia.com/?query=phone%20location%20data&sort=b...
https://hn.algolia.com/?query=bounty&sort=byPopularity&prefi...
My argument was the economic utility which the infrastructure a telco provides to society. Both with pipes, technology and know-how of how to operate critical infrastructure 24/7.
I cannot wait for SpaceX' Starlink to become operational and we will see some disruption happening in (this) space.
Speaking of US telecoms, they are simply awful and abusive companies. Yes, they provide a critical service, but they sure do take their pound of flesh for it and constantly engage in activities that are harmful to society.
As an aside, I showed the email thing to a coworker pretty early on, it was pretty wild in the old days.
Granted, hangouts is almost gone now, but it demonstrates there's a way to spam almost anything and ruin it.
Facebook Messenger is about all I use, and even then rarely... I use hangouts for mostly the occasional screen share or for SMS with my google voice acct (I don't even have my actual cell phone number memorized).
Unfortunately spammers have started leaving messages, for me, in the past ~2 years. Prior to that, this heuristic worked very well!
I know that people find it annoying to go through the process of reporting the call, but I consider it to be one of those things that fall under the "All that is necessary for the triumph of evil is that good men do nothing" bucket.
It'd be nice if there were donotcall.gov apps for Android and iOS though.
I've been on the DNC for years, and a couple years ago I decided to change my number, since my old one was getting 4-5 robocalls per day, always from different numbers.
Caller ID became meaningless once VOIP was allowed to spoof it. Can we build a new system atop ANI?
I'm not really convinced this is true, because there are numbers that are categorized as robocallers, and there are others that aren't. You'd think that if they were fake then they'd be random/uniform.
Most 408-73x prefixes were originally specific to Sunnyvale CA and are therefore easy to distinguish.
I just did a quick check of the last 10 or so I received. None of them were listed as robocallers. They were all legit phone numbers of innocent people who live in my area.
They're arbitrary, not random. They switched to that from the old system of just spoofing 000-000-0000 or similar, as people blocked those.
The number reported by caller ID is entirely meaningless and not useful in terms of investigation. They just spoof random ones from your area arbitrarily.
If you have encountered any robo callers who have please let me know.
My idea was that if the robo callers get past the simple arithmetic questions I would give them harder ones like "which of these items doesn't belong? 1) ball 2) blue 3) red 4) green?" or other SAT / standardized test questions.
But I live in central Europe, Austria, and received only two SPAM calls in my whole life, both by what seemed to be actual human agents on the other side and hear from similar amounts from friends I've asked about the phenomena.
Can someone explain why it seems such hard to resolve problem elsewhere while it seems hardly a problem at all here? Is there a difference in infrastructure, a difference in legislature, ...?
I also get a number of text messages trying to phish me into buying drugs or sex. It’s totally nuts.
Not only that, but you basically need to program in all the random numbers you do business with to make sure you don't miss something important. Dentist, doctor, real estate agent, mortgage officer, the random office you're only going to visit once who did your MRI.
And still, someone can just as easily spoof one of those numbers (even purely by coincidence) and you'll pick up.
If you target the US, your sales pitch can be in one language, with roughly one set of commission paying providers, and super cheap VoIP calls. I assume that would be harder in Europe due to language, state provided services for health+education, more strict laws on loans and warranties, differing costs for local VoIP numbers, etc. You would likely have to tailor for each country.
The US is firmly gripped by the belief that "regulation doesn't work", and keeps electing people who try to prove that true via incompetence, cronyism and ideological malice.
The wheels of justice work, but they don't move very quickly. https://www.nytimes.com/2018/07/23/business/irs-phone-scams-...
This couldn’t be more obvious in our fcc chair who is basically against any kind of government regulation.
Why do we humans do that? Why doesn't failure cause introspection/examination rather than excuse making?
On a side note, it feels conspiratorial to explain failure as, "there's double agents on the inside sabotaging the effort"
There are people currently heading government agencies that lobbied or fought against those agencies. See the CFPB and EPA. It's not a conspiracy–it's reality.
Politicians underfunding programs, then suggesting we should cut or privatize them because they performed poorly, all intentionally, is a well known and mostly open fact, not a closely guarded secret conspiracy.
>"The FCC last year authorized voice service providers to block more types of calls in which the Caller ID has been spoofed or in which the number on the Caller ID is invalid." https://arstechnica.com/tech-policy/2018/10/robocallers-evol...
I would easily switch providers tomorrow if one of the features was "no spoofed numbers". This would be a giant market advantage if not prevented by this regulatory issue (whatever it is).
Verizon Wireless offers it for $2.99 a line: https://www.verizonwireless.com/support/call-filter-faqs/
Not sure about the other major carriers.
I get 10+ robo/spam calls a day (to the point where I just gave up on answering all unknown numbers over a year ago) but when I do answer the occasional one they seem surprisingly targeted. I was searching for health insurance a few months ago and that spawned 4-5 robocalls/day all about health insurance. I run a small business that gets ~5 calls/day about financing and a smattering of other cold robocalls about services people could provide. When I had a death in the family, I started getting robocalls about funeral services and life insurance.
I don't know why it's so hard to resolve (why isn't cold calling someone illegal?) but on a personal level it's relatively easy to mostly-resolve by screening calls and limiting your number's exposure (both online and to businesses that resell that information). Lack of regulation, enforcement on what regulations do exist, availability of numbers to buy (aided by metadata on who is on the other side of that number), and a heavier reliance on phones/calls in general (compared to my 1.5 years living in europe) seems to be the biggest driving factors.
Hardly. I got my first robo call (ever) within an hour of getting my first US phone number. They have been a constant annoyance for me ever since. I have never gotten a robocall outside of the US.
Additionally, people in the US have a generally high ability to pay and often have means to pay for things over the phone.
So, you don't have to pay much to try to scam people, and if you do, you're likely to get paid.
Probably the proliferation of small telephone companies helps avoid tracking and getting booted off the network.
Frequent callers/emailers who you register with your account can be given a discount.
There are 38M Spanish speakers in the US compared to 8M people in all of Austria.
It's not an insurmountable problem, you just need regulators that give a damn.
https://ico.org.uk/action-weve-taken/enforcement/?facet_type...
https://www.ofcom.org.uk/phones-telecoms-and-internet/inform...
It's like sitting down at a poker game and looking around the table. If you can't spot the mark, well you're the s/mark/product/g.
When I was young I would hear the saying: "The value of a business is directly related to the goodwill associated with it." I haven't heard that in a long time. But I have heard: "We don't care, we don't have to."
Proof's in the pudding: just as with universal healthcare we can't seem to get it together. All(most?) of Europe and Canada and Russia and Israel manage to pull it off. Too bad for US.
Every time I get a new number, I end up spending a few weeks getting calls from real people to the person who had the number before it was assigned to me.
Because politics is broken in the US. There is a ton of lobbying money that is spent to ensure this problem does not get effectively resolved.
You send a text, receive a text or vice versa. Then you can actually arrange a call if you want to catch up. I have some friends call me, and I call them back. If they don't call me back they at least send me a message telling me when they can be free. I guess this is becoming a norm among most people.
Seems like this would solve almost all of these problems.
Though it is not recommended to pick up the phone, I have had some success by picking up the phone, wasting the agent's time and letting them know that my car is real old and would not need extended warranty.
I’m perfectly fine with blocking the entire NNN beginning prefix of my number but there appears to be no way to do it (they can only do NNN-NNNN). RoboKiller says it’s a limitation in the iOS API they have access to.
The only phone spam I'm getting are people trying to sell me new energy contracts (that's something that happens when you have a company for some reason), and tons of British recruiters trying to get me to work in Belgium or Germany for some reason. Very rarely, I get a tech support call from Microsoft India. But always it's real people, not a robocall.
They are trying to get vaguely smart too - whereas before a number would call from quite far away, so you could assume it was a robocaller. Now, they can be close to your location, which is a bit spooky.
Still no robocallers for me. Maybe European data protection measures do work.
1: https://www.rijksoverheid.nl/onderwerpen/telecommunicatie/vr...
You can only call someone if they (indirectly) got the number from you. They are _not_ allowed to dial every number and it has to be done by a human, which works the same as an e-mail costing €0,05: it isn't worth it anymore.
Do they really expect us to believe the reason they bill by the minute is to fight against robocalls?
https://www.marketwatch.com/story/why-you-shouldnt-answer-th...
I've been pestered by Robocalls for the last few years. Lately, I did the mistake of shopping online for health insurance, and signing up with a provider (I ended up not purchasing it from them). Since then (three weeks ago), I've received ~20 calls per day, half of it from robots, half from humans.
These people should f*ing go to jail. All of them.
But seriously, why is it so difficult to eliminate these robocalls. Each operation has to have employees, a call center (to handle the marks), payment processing, etc. It seems like a very easy target.
https://www.gimletmedia.com/reply-all/long-distance
https://www.gimletmedia.com/reply-all/103-long-distance-part...
I've done this for years and never get robocalls.
Especially for people that are on PagerDuty, this solution just wont work.
But the DNC list doesn't do anything to stop phishing/scam calls because apparently criminals don't care about DNC laws (obviously). They always spoof local numbers, but never have a caller ID name. This means I can pretty safely ignore all calls without caller ID names, unless I'm expecting a call.
The problem is, these scammers spam voicemail inboxes too, and on my phone and carrier (Android on Koodo in Canada) the only way to dismiss the "New Voicemail" notification is to call my voicemail number and listen to it. I don't care about voicemail, so I disabled it.
What irritates me is the spoofing of numbers. That should be a felony and charged in criminal court. They steal real people's numbers briefly in my experience. Either arrest and throw the person calling in prison or blacklist that Carrier.
And fine the carrier you use for allowing it to even happen.
EDIT: on a side note you are not able to block Texas and Florida. I could block those two entire states without worries and I'd receive a lot less calls.
The simple solution would be for the network providers to validate the caller ID numbers for its subscribers, but that requires changes to punish the ones that don't do it.
I've worked with telephony for 15 years and I know the big providers do this for most common telecom protocols, but VoIP providers tend to be more lax. But that's where they shouldn't, and the ones that break this shouldn't be allowed on the network.
- Don't connect calls coming from numbers they own that they have not assigned
- Don't connect calls from a number to itself (my wife recently received a phone call from "herself". Then she received 20 more phone calls from irate people sure that she spammed them)
- Don't connect calls where the calling number is coming from an invalid area code or LATA
- Don't connect calls where the calling number is a string of only digits. There are no people or businesses with this type of name, most likely.
This would solve between 10-50% of the spam calls I get, I'm pretty sure.
I'll answer the call if I'm expecting one, if it's from someone who has texted me that they're going to call (this covers 99% of the legit calls I get), or if it's from one of a very tiny number of people who might call me due to an emergency.
Otherwise, it goes straight to voicemail and (thanks to Tasker) doesn't even make my phone ring.
> FCC Chairman Ajit Pai explains the importance of the FCC's proposed new rules banning illegal spoofed text messages and international calls. The proposed rules would enable the agency to address consumer concerns about unwanted text messages and scam calls from overseas.
Let only calls from known contacts ring, the rest auto-goes to voicemail.
Why is this so F*ING hard for Apple to implement?
That sounds like marketing BS to me. Why can’t they just create a one way fingerprint of the audio and block duplicates.
Also, I've had success running Calls Blacklist (app) on my android phone - it's set up so that it will block any call that's not from one of my contacts. I haven't had a spam call since I started using it.
Google "Robocalls Cash" and you'll see it has been featured in several news outlets.
In fact the timestamps and partial numbers are probably good enough for that.