How Kazakhstan is combating cybercrime

How Kazakhstan is combating cybercrime

Фото: AI illustration

Internet fraud remains one of the most prevalent types of crime in Kazakhstan’s digital environment. In 2026, the Ministry of Internal Affairs (MIA) has recorded a decline in the number of such incidents; however, fraud schemes continue to evolve. Criminals are increasingly moving to messaging platforms and using mule bank accounts, phishing, spoofed telephone numbers and deepfakes, El.kz reports.

Law enforcement agencies investigate criminal offences and dismantle fraudulent call centres, banks block suspicious transactions, telecommunications operators filter fraudulent calls, while criminal legislation now provides for specific liability for the transfer of bank accounts and payment cards to money mules.

Internet fraud incidents decline

According to the latest data from the Ministry of Internal Affairs, the number of registered internet fraud cases has decreased by 7% since the beginning of the year. Victims have recovered KZT 4.8 bln, while law enforcement agencies and financial institutions managed to prevent the withdrawal of an additional portion of the funds.

In cooperation with the National Bank, the unlawful transfer of an additional KZT 2.6 bln out of the financial system was prevented. At the same time, the Ministry of Internal Affairs emphasises that criminals continuously adapt their schemes, employ new technologies and use psychological manipulation.

Millions of fraudulent calls blocked before connection

One of the key areas of protection concerns telephone fraud. According to the latest data from the Ministry of Internal Affairs, over 150 mln fraudulent calls have already been blocked in cooperation with telecommunications operators.

The scale of the technical infrastructure used by criminals is demonstrated by the results of operations conducted last year. Law enforcement officers seized more than 100,000 SIM cards and 88 SIM boxes, which enabled large numbers of mobile telephone numbers to be used to contact potential victims.

Another area of focus is fraudulent call centres. With the involvement of Kazakhstan’s cyber police, the operations of seven such centres were disrupted outside Kazakhstan, while several other facilities were dismantled within the country.

Why fraudsters are moving to WhatsApp and other messaging platforms

The blocking of conventional telephone channels is forcing criminal groups to change their methods. An analysis conducted by the Prosecutor General’s Office found that a significant proportion of fraudulent calls are now made through messaging platforms, primarily WhatsApp.

Law enforcement agencies have identified 18 new types of cyber threats. These include phishing campaigns, deepfakes, calls made using spoofed numbers, unregistered SIM cards and SMS blasters capable of distributing messages on a mass scale while bypassing telecommunications operators’ infrastructure.

The first case involving the use of an SMS blaster identified in Kazakhstan was disrupted by law enforcement agencies on 4 April. This case demonstrates how rapidly criminals’ technical tools evolve in response to protective measures.

How the cyber police operates

Specialised cyber police units operate in all regions of Kazakhstan. They cooperate with banks, mobile network operators and other organisations to establish the flow of stolen funds more rapidly and to block infrastructure used by criminal groups.

A dedicated Department for Combating Cybercrime operates within the structure of the Ministry of Internal Affairs. The Ministry’s approach to combating digital crime is structured around three areas: legislative, technical and preventive measures.

The role of law enforcement agencies is gradually shifting from responding to completed thefts towards preventing such offences before they occur. To this end, the police cooperate with financial institutions, telecommunications operators and major online platforms.

Efforts to stop funds before they are  transferred out

Within the financial system, the National Anti-Fraud Centre has become one of the key instruments for combating financial fraud. The platform brings together banks, law enforcement agencies and mobile network operators, enabling them to exchange information on suspicious transactions on a 24/7 basis.

According to data published by the regulator in 2026, more than 180,000 incidents have already been registered with the Anti-Fraud Centre. Since the beginning of last year, banks have independently prevented approximately 163,000 fraudulent transactions worth more than KZT 68 billion.

A further KZT 28.9 billion in fraudulent and other unlawful transactions was prevented or blocked using information from the Anti-Fraud Centre. The system is therefore gradually becoming one of the principal mechanisms for stopping funds before they move through a chain of accounts.

Why fraudsters use money mules

Even after gaining access to a victim’s funds, criminals need to transfer the money in a way that makes it more difficult to trace. For this purpose, they use money mules — individuals who provide their bank accounts, payment cards or other payment instruments for receiving and subsequently transferring stolen funds.

Since 16 September 2025, such conduct has been subject to a separate provision, Article 232-1 of the Criminal Code. Depending on the circumstances, liability may include imprisonment for up to seven years with confiscation of property.

The number of investigations is increasing rapidly. While the Prosecutor General’s Office reported more than 400 registered cases during the first months of the year, more recent data indicate that the number has already exceeded 700.

Over the past five months alone, offenders have cashed out approximately KZT 400 million stolen from citizens through money mule accounts. Consequently, transferring one’s bank card or account to another person for remuneration may now result in criminal prosecution even where the individual was not directly involved in contacting the victim.

How banks are strengthening customer protection

Another layer of protection is being implemented directly at the level of banking applications and financial services. Kazakhstan has established requirements for biometric authentication when financial services are provided remotely.

In 2026, the regulatory framework in this area was further developed. A joint resolution of the regulators on biometric authentication by financial and payment organisations entered into force.

Banks have also been instructed to strengthen the monitoring of customers at increased risk of involvement in money mule schemes. Financial institutions are required to develop their own anti-fraud systems and cooperate with the National Anti-Fraud Centre.

AI is also being used by fraudsters

Artificial intelligence technologies present an additional challenge. They can be used to create fake images, videos and voice messages for social engineering purposes and to persuade potential victims to take specific actions.

Law enforcement agencies already classify deepfakes among emerging cyber threats. Under such schemes, an individual may be shown a fabricated video of an acquaintance, manager or other person and subsequently be asked to transfer money or disclose confidential information.

Technical safeguards address only part of the problem in such cases. Fraud frequently relies on the actions of the user, who may be persuaded to disclose a verification code, install software or transfer funds voluntarily.

Why blocking calls alone is not sufficient

Experience from recent years demonstrates that blocking one communication channel prompts fraudsters to seek another. Following enhanced filtering of telephone calls, some criminal activity has shifted to messaging platforms, while instead of conventional SIM cards, offenders are using specialised equipment and other methods to circumvent telecommunications infrastructure.

As a result, efforts to combat cybercrime are gradually developing into an integrated system. The police investigate criminal offences, the Prosecutor General’s Office analyses emerging threats, banks stop suspicious transactions, the National Anti-Fraud Centre connects participants across the financial sector, and telecommunications operators block channels used by fraudsters.

For individual users, the basic precautions remain unchanged. The Ministry of Internal Affairs recommends not disclosing SMS verification codes or bank card details to third parties, not installing software at the request of unknown persons, and, in the event of a suspicious call, contacting the relevant bank or government authority directly using its official telephone number.

El recommends

{