Skip to main content

NEW: Senator Hassan Presses Trump Mobile for Answers on User Privacy, Scam Prevention, and FCC Compliance Following Reports of Data Breach

FOR IMMEDIATE RELEASE
October 8, 2026
Contact: minority_jecpress@jec.senate.gov

NEW: Senator Hassan Presses Trump Mobile for Answers on User Privacy, Scam Prevention, and FCC Compliance Following Reports of Data Breach

Request Includes New Committee Findings on Potential Lack of FCC-Required Protections for Consumers and National Security at Trump Mobile

WASHINGTON – U.S. Senator Maggie Hassan (D-NH), Ranking Member of the Joint Economic Committee, today pressed Trump Mobile – the Trump family’s telecommunications venture – about major red flags with user data protection and the extent to which the company has met key consumer and national security requirements with the Federal Communications Commission (FCC). Ranking Member Hassan also raised serious concerns about how Trump Mobile and its partners, including Liberty Mobile Wireless, prevent scammers from abusing their services and its multiple data breaches – including a reported breach this month.

Ranking Member Hassan’s request to Trump Mobile includes new findings from the Joint Economic Committee – Minority that raise concerns that the company has not met legal requirements for operating in this sensitive and high-stakes sector. Ranking Member Hassan has also requested that the FCC review this matter and brief the Joint Economic Committee – Minority.

In her request, Ranking Member Hassan stated, “Telecommunications providers play an important role in preventing foreign adversaries and scammers from abusing cellular services, and new research detailed in this letter raises alarm bells about Trump Mobile and its partners’ ability or willingness to provide secure and reliable services in this complex space.”

Ranking Member Hassan highlighted that both Trump Mobile and Liberty Mobile, which “offer streamlined service activation that can make it easier for scammers to obtain U.S. numbers,” may not be meeting FCC requirements for customer authentication and for offering international services, which have security implications for the entire U.S. cellular network, beyond just their customers. 

The Joint Economic Committee – Minority’s research into publicly available FCC records suggests that the companies may not have made critical filings with the Robocall Mitigation Database, which are designed to hold telecoms providers accountable for stopping illegal calls and are effectively a prerequisite for providing voice services. Specifically, Liberty Mobile’s most recent filing appears to lack a required description of its know-your-customer onboarding procedures, while a search for Trump Mobile returns no responsive records. Similarly, a review of additional FCC records suggests that the companies may not have the proper authorization to provide the international services they advertise. 

Ranking Member Hassan continued, “Telecommunications carriers in the United States have a legal duty to ‘protect the confidentiality of customer proprietary information’ and ‘take reasonable measures to discover and protect against attempts to gain unauthorized access,’ but Trump Mobile has experienced at least one confirmed data breach and potentially two additional reported breaches that have led to the exposure of customer details.” 

In May 2026, Trump Mobile confirmed that customer names, email addresses, mailing addresses, and cell phone numbers were exposed due to a security lapse that it attributed to a third party. More recently, in September and October 2026, two ransomware groups separately claimed to have stolen personal details and telecommunications information associated with thousands of Trump Mobile users.

In addition, Ranking Member Hassan highlighted, “The apparent absence of authorization for Trump Mobile international services raises questions about who is providing or reselling the international telecommunications services advertised by Trump Mobile, the authority under which those services are being provided, and the company’s commitment to complying with requirements designed to safeguard national security.” 

Read the full text of Ranking Member Hassan’s request here or below. 

Dear Mr. O’Brien:  

I write today to request information on the extent to which Trump Mobile and its partners prevent scammers from abusing cellular services and adequately serve customers following a series of delays, a recent price hike, and multiple reported cyber breaches involving the unauthorized access and release of sensitive customer data. The Trump family is profiting off of this venture through a trademark and name licensing deal with Trump Mobile. Deals like these are the “Trump Organization’s bread-and-butter business,” as one publication described. Yet unlike Trump-branded vodka and steaks, for example, Trump Mobile operates in an especially sensitive and high-stakes sector. Telecommunications providers play an important role in preventing foreign adversaries and scammers from abusing cellular services, and new research detailed in this letter raises alarm bells about Trump Mobile and its partners’ ability or willingness to provide secure and reliable services in this complex space.

Since April 2026, Trump Mobile’s terms of service identify the company as a Mobile Virtual Network Operator (MVNO) – a reseller of cellular services from larger providers – that offers “voice, messaging, and wireless data services.” Trump Mobile is also closely tied to another MVNO, Liberty Mobile Wireless, a little-known, Florida-based provider founded in 2018. When Trump Mobile launched in June 2025, its terms stated that it was “powered by Liberty Mobile Wireless.” Similarly, in early 2026, executives from Trump Mobile told The Verge that Liberty Mobile was the “enabler” and “backbone” of the Trump network with “the engineering staff [and] the teams that work with the carriers.” In that same interview, Trump Mobile executives also indicated that they themselves run Liberty Mobile.  

Telecommunications carriers in the United States have a legal duty to “protect the confidentiality of customer proprietary information” and “take reasonable measures to discover and protect against attempts to gain unauthorized access,” but Trump Mobile has experienced at least one confirmed data breach and potentially two additional reported breaches that have led to the exposure of customer details. Companies can face significant consequences for failing to properly safeguard customer information and comply with data-breach notification requirements, including substantial monetary penalties. 

In May 2026, Trump Mobile confirmed that customer names, email addresses, mailing addresses, and cell phone numbers were exposed due to a security lapse that it attributed to a third party. According to reporting from the time, Trump Mobile had not yet determined if it would notify affected customers. More recently, in September and October 2026, two ransomware groups separately claimed to have stolen personal details and telecommunications information associated with thousands of Trump Mobile users, although subsequent reporting suggests that the groups may have been relying on the same underlying breach. Concerningly, the ransomware group that announced accessing customer details in October claimed that when it notified Trump Mobile of the breach, the company responded that “[w]e have no team to handle this.” One news outlet reported that the ransomware group claimed to have “gained access after infecting an employee with the Florida-based company Liberty Mobile with malware” and that as of October 5, 2026, the hackers “still have access to Trump Mobile’s backend dashboard.” The news outlet confirmed the accuracy of the leaked data with several customers whose information had been exposed. Its review of leaked data further revealed that several of the impacted customers were also employees of the Trump Organization, including the company’s vice president and chief information officer. 

Concerningly, Trump Mobile and Liberty Mobile also seem to have weak scam prevention efforts. They do not appear to have included “a description of their ‘know-your-customer’ [KYC] processes in their robocall mitigation plan,” which is required in annual Robocall Mitigation Database (RMD) filings. Liberty Mobile’s most recent filing does not appear to include KYC information, and a search for Trump Mobile and T1 Mobile LLC, its operational business name, in the database yielded no filings under those names. Keeping bad actors from using cellular services is a priority for the FCC, which has noted that efforts by scammers “to deceive American consumers start with a telephone number.” Using these numbers, scammers place fraudulent calls and scam texts – the two contact methods responsible for the highest median losses reported per individual scam victim. Given the security implications for all Americans, the RMD filing requirement is effectively a prerequisite for providing voice services, as providers are prohibited from accepting voice traffic from a domestic provider not registered in the RMD. The FCC has made it clear that compliance by MVNOs like Trump Mobile and Liberty Mobile is especially important because “[r]esellers of voice service that serve end-users are often in the best position to identify customers that are the source of apparently illegal traffic.” Noncompliance, including providing inaccurate or incomplete information, can also result in financial penalties and removal from the RMD. 

A robust customer authentication process should be especially important for Trump Mobile and Liberty Mobile, given that they offer streamlined service activation that can make it easier for scammers to obtain U.S. numbers. Both companies, for example, promise easy-to-activate cellular plans that are “contract free” and do not require credit checks. Liberty Mobile’s prepaid cellular plans are disposable, with durations of between five and 30 days that cost between $4.99 and $40. The company makes it easy to swap numbers and devices and enables customers to activate “prepackaged phones and preloaded SIMS…without ever needing the dealer’s assistance.” Liberty Mobile also claims to sell new and refurbished phones, including flip phones. The Trump Mobile service similarly promises “fast & easy activation” that takes “just minutes,” including instant eSIM activation. Its monthly plans are available at a higher price point, with the flagship service priced at $47.45 per month.

Trump Mobile’s advertising of extensive international calling options also presents another potential compliance concern with national security implications. The company advertises that customers can call more than 230 countries and territories as “part of [their] Trump Mobile plan” and describes international calling as an offering of “Trump Mobile’s long-distance service.” Yet a search of the FCC’s International Communications Filing System suggests that Trump Mobile does not hold the necessary authorization for these services under Section 214 of the Communications Act of 1934 – a requirement for both underlying carriers and service resellers. As part of the authorization process, providers must disclose foreign ownership so that authorities can assess related national security risks. The FCC has warned that “fail[ure] to obtain Section 214 authority may endanger important public interest considerations involving national security [and] law enforcement.” The FCC has further stated that an MVNO subject to foreign influence or control could enable that government to “access, monitor, store, disrupt, and/or misroute U.S. communications in ways that…can facilitate espionage and other activities harmful to the national security.” The apparent absence of authorization for Trump Mobile international services raises questions about who is providing or reselling the international telecommunications services advertised by Trump Mobile, the authority under which those services are being provided, and the company’s commitment to complying with requirements designed to safeguard national security. 

Reporting over the past year also calls into question whether Trump Mobile customers will receive the phones that they have ordered at the price that they anticipated. In June 2025, Trump Mobile began soliciting $100 deposits for its new T1 phone, which it said would be “proudly designed and built in the United States” and available by September 2025. In May 2026, the company finally declared that it had begun shipping phones, but a September 2026 report in The Verge stated that “it remains unclear just how many customers have received their phones.” Meanwhile, that same month, Trump Mobile quietly increased the price of the phone from $499 to $749. The Preorder Deposit Terms and Conditions stipulate that there is “No Price Lock” for the device, meaning that prepaid customers who have not completed their purchase could potentially be subject to a 50 percent price increase. Notably, the delayed phones are apparently not designed and built in the United States as Trump Mobile initially promised. Multiple tech reporters have described it as a near exact match for the HTC U24 Pro, a phone launched in 2024 and manufactured in China, according to The Verge. According to recent reporting, the company has not identified where it manufactures the T1 phone or where it sources most component parts. Trump Mobile continues, however, to describe the T1 phone as “proudly American” and “designed with American values in mind.”

In May 2026, a Trump Mobile executive tried to excuse struggles at the company, telling CNN, “[t]he technology business is more difficult than some may realize.” The concerns outlined above, however, require further explanation regarding your efforts to protect against scams, safeguard personal information, and deliver the product that customers expect. Please provide your responses to the questions below as soon as possible but in no event later than October 29, 2026.

  1. Please identify the facilities-based carriers on whose networks Trump Mobile operates, and please describe how Trump Mobile accesses these networks, identifying any intermediaries involved.
    1. Please provide contracts that Trump Mobile maintains with the networks directly and with any intermediaries, including MVNOs.

  1. Please describe Trump Mobile’s current relationship with Liberty Mobile Wireless, LLC, and any ways in which it has changed over time.
    1. Please explain the circumstances, including existing business relationships, that led Trump Mobile to collaborate with Liberty Mobile Wireless. 
    2. Please explain the extent to which Trump Mobile was aware of the company’s business model and operations, including its KYC practices, prior to partnering with the company. 
    3. Please provide any current or previous contracts or agreements between the companies, as well as an explanation of all the services that Liberty Mobile provides or has provided for Trump Mobile.
    4. If Trump Mobile no longer contracts with Liberty Mobile, please explain the reasoning behind this change, the effective date of the change, and what entity or entities assumed the functions that Liberty previously performed.

  1. Please describe the responsibilities of Trump Mobile with respect to subscriber verification, designing and implementing the “know your customer” processes, SIM/eSIM disbursement and activation, billing, number assignment, porting, fraud detection, CPNI implementation, 911 compliance, network security, and law enforcement requests. 
    1. If any entities other than Trump Mobile perform these functions, please identify the company or companies, detail the specific functions they perform, and provide any relevant contracts or agreements.
    2. Does Trump Mobile, or the relevant entities with which it contracts, require additional information from or take additional steps to verify high-risk customers, including customers with a high call volume or foreign-based callers? 

  1. Has Trump Mobile filed a certification and robocall mitigation plan with the RMD, an annual CPNI certification, and an FCC Form 499-A, the Annual Telecommunications Reporting Worksheet required of telecommunications providers to register with the FCC and report their revenues? 
    1. If so, please provide copies of the filings. If not, please explain. Specifically, if the company believes that it is exempt from any of these reporting requirements or that another entity satisfies these requirements on its behalf, please provide the legal and factual basis for that determination and identify the entity or entities responsible for compliance.

  1. Please describe how Trump Mobile and Liberty Mobile, respectively, facilitate international calling.
    1. Have the companies filed for International Section 214 authority? If so, please provide a copy of those filings and indicate their status.
    2. If not, do the companies intend to file for International Section 214 authority? 
    3. If not, and the companies still offer international service, please explain the legal justification that the companies have concluded permits these services without International Section 214 authority.  
    4. If the companies offer these services through an underlying provider with International Section 214 authority, please identify the company and provide documentation detailing this arrangement that any of the companies involved have submitted to the FCC. 

  1. If Trump Mobile owns, operates, or controls Liberty Mobile, please explain whether the company has provided information to the FCC regarding its KYC practices to supplement the limited information it provided in the most recent robocall mitigation plan it filed with the RMD. 
    1. If so, please provide copies of this information. If not, please explain why the company feels that its most recent submission satisfied the “RMD rules requir[ing] voice service providers to include a description of their ‘know-your-customer’ processes in their robocall mitigation plan.” 

  1. In May 2026, a Trump Mobile spokesperson said that a third-party provider was responsible for the exposure of personally identifying information, including addresses and phone numbers, of customers who had pre-ordered the T1 Trump phone.
    1. What third-party provider does Trump Mobile hold responsible for this data leak, and does it still contract with this company? If so, please explain what corrective measures Trump Mobile has taken to prevent a future incident.
    2. What steps does Trump Mobile take to secure identifying information on its customers? Please identify any other entities that also hold the data of Trump Mobile customers.
    3. How many customers had their data exposed? Of those, how many were customers who paid a $100 deposit for the T1 phone, how many completed the purchase of the T1 phone, and how many had purchased Trump Mobile wireless plans?
    4. Has Trump Mobile, or an entity working on its behalf, alerted customers with exposed data? If so, how many customers has the company alerted? If not, why not?

  1. In September and October 2026, two separate ransomware groups claimed to have stolen personally identifying information and telecommunications information associated with thousands of Trump Mobile customers, although it is not clear if they are relying on the same underlying data set.  
    1. Has Trump Mobile verified these claims? If so, 
      1. Did Trump Mobile learn of the breach(es) through the ransomware groups respective announcements, or did it detect them independently? 
      2. Has Trump Mobile notified the FCC, Federal Bureau of Investigation, and U.S. Secret Service of the breaches, as is required under applicable FCC rules? If not, why not? 
      3. Has Trump Mobile, or an entity working on its behalf, alerted customers with exposed data? If so, how many customers has the company alerted? If not, why not? 
      4. Please explain what corrective measures Trump Mobile has taken to prevent a future incident.

  1. How many T1 phones did Trump Mobile customers purchase at the initial price of $499? How many T1 phones did Trump Mobile sell at the new $749 price?
    1. What factors led Trump Mobile to increase the price of the T1 phone by $250? 
    2. How much does it cost Trump Mobile to manufacture each T1 phone, and what is the company’s gross profit margin on phones sold at $499 and $749, respectively? 

  1. Where are the T1 phones manufactured? Please list the country of origin of all component parts.

  1. Please provide documents sufficient to show any individual or entity that directly or indirectly owns 10 percent or more of the equity interests or voting interests in T1 Mobile LLC, d/b/a Trump Mobile, or otherwise exercises control over the company, including the percentage of equity and voting interests held by each such individual or entity.
    1. Please provide all agreements under which T1 Mobile LLC, d/b/a Trump Mobile, has licensed or otherwise obtained the right to use any name, trademark, logo, or other intellectual property from any individual or entity.

###