FRAUD CHECK — Squire It™
sharelivefraud.com/squire-it
LIVE FRAUD ALERT
LIVEFRAUD Check #7
FBI WARNS

Hoax emergency calls ("swatting") are being made against schools, government buildings, places of worship, transit centers, hospitals and other public locations in the United States, and there are recognizable indicators community members can watch for.

HIGH CONFIDENCEPublished 2026-08-15
S
Q
U
I
R
E
D
E
S
K
·
C
H
E
C
K
E
D
·
B
A
T
T
L
E
D
·
R
E
C
E
I
P
T
E
D
·
S

What we found

An FBI Internet Crime Complaint Center public service announcement dated 2026-08-04 describes an ongoing threat from "swatting" — hoax calls or reports to emergency services or public locations falsely claiming an immediate threat to life, such as bomb threats, shootings, or hostage situations, at a specific address. The announcement updates an earlier alert (Alert Number I-042925-PSA) and states the targets include educational institutions, government buildings, religious institutions, public transportation centers, hospitals, and other public buildings. According to the announcement, the tactic is intended to draw a large law enforcement response to an unsuspecting victim's location, and its knock-on effects include closures, evacuations and lockdowns, the spread of misinformation on social media, psychological harm, wasted emergency resources, copycat callers, and the potential for injuries or deaths. The FBI notes a shift away from the traditional pattern of targeting private individuals the caller has a grievance with, toward incidents it describes as part of a larger coordinated effort aimed at multiple victims and locations across the United States. The indicators listed for situational awareness include the use of Voice over Internet Protocol numbers — which may display as all zeros or nines, or as blocked or unavailable — and calls placed to non-emergency lines of emergency services or public locations, which the FBI says may indicate the caller cannot dial 911 directly. Other indicators named are a single incoming report rather than the multiple witness calls typical of a genuine emergency, calls originating from outside the United States, vague or shifting details with no corroborating reports, an inability to answer basic questions such as full name, phone number or current location, mispronunciation of local city, street or building names, and a calm or script-like delivery inconsistent with the emergency being described. The FBI stresses that these indicators should be read in context rather than individually. For mitigation, the announcement urges communities to discuss swatting in schools, workplaces and places of worship and to have a plan for law enforcement contact, to review their online presence for sensitive personal information, to be careful about posting or sharing photos and videos that could be exploited or manipulated, to consider services that reduce or remove publicly available personal information, and to take part in preparedness exercises. If you are on the receiving end of such a call, the FBI advises staying calm, listening, and cooperating with responding officers. The announcement asks people who believe they received a swatting call to retain names, usernames, phone numbers, email addresses, websites, platform names, photos, videos or call recordings, and to report the incident immediately to local law enforcement, calling 911 for an emergency or immediate threat to life. Leads or criminal activity can also be reported to the FBI through tips.fbi.gov, 1-800-CALL-FBI (225-5324), a local field office, or a complaint filed with IC3 at www.ic3.gov. Treat an unexpected instruction that arrives by phone as unconfirmed until you can reach the organisation or agency through a channel you already trust.
THE RULE
Readers may over-apply the indicator list and dismiss a genuine emergency call, or may assume from the coordinated-campaign language that a specific local incident is a hoax; the advisory itself cautions that indicators must be judged in context and not individually.

What we don’t know

The bench — who voted

3 INDEPENDENT AI MODELS REVIEWED THIS. 2 OF 3 — ONE MODEL DISSENTED. READ WHY.

The card names a count. Here are the seats behind it, with what each one said.

GOOGLEgemini-flash-latest · HIGH
The finding includes numerous specific factual details not contained in the provided evidence row, such as the prior alert ID (I-042925-PSA), the full list of indicators (e.g., mispronunciation of street names, script-like delivery, single witness report, out-of-country origin), detailed impact types, and specific reporting contact endpoints (tips.fbi.gov, 1-800-CALL-FBI).
GROQopenai/gpt-oss-120b · MODERATE
The finding asserts a shift away from traditional private‑target swatting toward a coordinated national effort, and lists knock‑on effects such as psychological harm, copycat callers, and potential injuries or deaths, none of which are mentioned in the evidence row summarizing the FBI announcement.
OPENROUTERopenrouter/free · MODERATE
Raised no objection; read the evidence as holds.

Reviewed by 3 independent models: 1 found it carried by the evidence, 2 did not.

▼ Protocol & challenge record
Objection (high): The final finding sentence — "Treat an unexpected instruction that arrives by phone as unconfirmed until you can reach the organisation or agency through a channel you already trust" — carries no row_id and is not in the source. It is boilerplate imported from impersonation/vishing guidance and does not fit swatting, where the hoax call goes to dispatch or a public location, not to the reader as an instruction. Worse, it cuts against the one piece of at-the-moment advice the FBI does give: "stay calm, listen, and cooperate with responding law enforcement personnel." A reader who generalises "treat phone instructions as unconfirmed" to a dispatcher or an officer at the door during a real incident is worse off. Cut it or replace it with source-anchored text.
Not resolved — preserved on the record.
Objection (medium): confidence_reasons asserts "Every descriptive statement, including the indicator list and reporting channels, is taken directly from that advisory's own wording." That is contradicted inside the same object by a finding sentence with an empty row_ids array. The stated basis for "high" confidence is therefore inaccurate as written, even if the substantive sourced material is solid.
Not resolved — preserved on the record.
Objection (medium): Definition narrowed against the source. The PSA defines swatting as hoax reports "to emergency services, public locations, or private residences." The finding's opening sentence drops private residences, and the claim line lists only institutional targets. This matters because the FBI's mitigation advice ("have a plan in place in the event of law enforcement contact at your residence") and the personal-data-exposure advice only make sense with residences in scope; as drafted, the reader is told to review their own online footprint without being told why they personally could be the address called in.
Not resolved — preserved on the record.
Objection (medium): "Shift away from the traditional pattern" is a stretch. The PSA says the FBI "has seen a shift in swatting incidents targeting" institutional locations — a shift in target mix, with no statement that individual-grievance swatting has declined or that institutional swatting now predominates. "Shift away from" imports a directional/displacement reading the source does not support. Prefer the source's own framing: traditional incidents targeted individuals; the FBI has seen incidents now targeting these institutional categories.
Not resolved — preserved on the record.
Objection (medium): The harvested source text is visibly garbled at the single most load-bearing sentence for the coordination claim: "part of a larger coordinated effort to simultaneously target multiple community members multiple victims and locations." The draft smooths this into clean prose ("a larger coordinated effort aimed at multiple victims and locations") without flagging that the underlying capture is corrupted. Either the live page differs from the harvest, or the harvest is unreliable at exactly the point where the strongest inferential claim (coordination) sits. That should be noted, and the wording verified against the live page before the coordination language is carried forward.
Not resolved — preserved on the record.
Objection (medium): Claim-to-indicator mismatch. The claim promises "indicators community members can watch for," but at least two listed indicators are not observable by community members: whether a call "originates from outside the United States," and whether the only incoming report is a single call (a dispatch-side fact). These are PSAP/dispatcher-facing indicators. The PSA itself frames them as community "situational awareness," but the draft should not let the claim imply a member of the public can apply the full list.
Resolved: Partly pre-empted: the risk_line already warns readers may over-apply the indicator list and dismiss a genuine emergency, and the finding reproduces the FBI's "in context, not individually" caveat as its own sentence. Residual fix is one clause noting some indicators are dispatch-side rather than publicly observable.
Objection (medium): Date currency and single-source support for a present-tense world claim. The claim asserts hoax calls "are being made," but the sole evidence row is one advisory dated 2026-08-04 with no incident counts, no date range, and no localities (the draft's own limitation says so). If the read date is materially later than August 2026, "ongoing" is an inherited characterisation, not a verified current state. There is also zero corroboration — no news reporting, no state fusion-centre or school-district advisory, no prior PSA text — so "high" confidence is really high confidence in what the FBI published, not in the operational picture. Say so explicitly.
Resolved: Partly pre-empted: the evidence limitation and the first two unknowns already state that no counts, period, localities or attribution are given. Residual fix is to stop calling the confidence "high" for the world-state claim and scope it to "high confidence in the advisory's contents."
Objection (low): The copycat effect is conditioned in the source ("the potential for copycat callers when media coverage of swatting also occurs"). The finding lists "copycat callers" unconditionally, dropping the media-coverage condition. Small, but it is the kind of drift that accumulates.
Not resolved — preserved on the record.
Objection (low): The draft passes through, uncritically, the technically shaky assertion that VoIP numbers "often appear as all zeros or nines, or as blocked or unavailable." All-zero/all-nine caller ID is a caller-ID spoofing artefact rather than a property of VoIP as such; the more general explanation is spoofed or absent CLI regardless of transport. Reproducing the FBI's phrasing is defensible, but an alternative-explanation note would stop readers from treating a normal-looking number as evidence against a hoax.
Resolved: Mitigated in effect by the reproduced "in context and not individually" caveat, which discourages treating any single caller-ID appearance as dispositive.
Objection (low): The claim's phrase "recognizable indicators" sits in tension with the PSA's insistence that indicators be read in context and not individually, and with the fact that the FBI offers no accuracy, base-rate or false-positive information. "Recognizable" implies discriminating power the source does not establish. "Indicators the FBI lists" is the honest formulation.
Resolved: Partly pre-empted by the risk_line and by the dedicated finding sentence on reading indicators in context; wording change to the claim line would close it.
Objection (low): The predecessor alert number I-042925-PSA is given without its date (29 April 2025). Stating it would let the reader see the ~15-month interval and judge whether this is a fresh escalation or a periodic refresh — directly relevant to the "ongoing" framing.
Not resolved — preserved on the record.
Preserved dissent
ON THE RECORDI do not accept "high" confidence as framed. The evidence is a single official advisory with no corroboration, no incident counts, no dates, no localities and no attribution, and the claim is written in the present continuous ("are being made"). That is high confidence that the FBI published this text, not high confidence about the current threat picture. The confidence label should be scoped to the document, or dropped to medium for the world-state assertion.
ON THE RECORDThe last finding sentence should be deleted outright, not merely sourced. It has no row_id, it is generic vishing advice that does not describe swatting's mechanics, and it risks encouraging a reader to second-guess a dispatcher or a responding officer — the exact opposite of the FBI's own instruction to stay calm, listen and cooperate. Carrying unsourced safety advice inside an otherwise faithfully sourced finding is the single worst defect in this draft.
ON THE RECORDThe confidence_reasons block is self-contradicting: it claims every descriptive statement comes from the advisory's wording while the object itself contains a sentence with no source. If a reviewer trusts confidence_reasons at face value, they will not notice the unsourced sentence. That is a process failure, not a wording nit.
ON THE RECORD"Shift away from the traditional pattern" is my second real objection on substance. The source reports a shift in what is being targeted, not a decline in individual-grievance swatting. As written the draft could be read as saying private individuals are now less at risk, which the FBI does not say and which would undercut the very mitigation advice about one's own online footprint.

The sources

Official sourceOngoing Threats of Swatting and Indicators for Community Members2026-08-04
The FBI's IC3 public service announcement of 2026-08-04 updates an earlier alert on swatting, lists the categories of public locations being targeted, gives six indicator categories including VoIP numbers appearing as all zeros or nines and calls to non-emergency lines, and sets out mitigation steps and reporting channels.
Authority: official. Retrieved 2026-08-15.
Limitation: The advisory gives no incident counts, dates of specific incidents, named localities, attribution to any actor or group, or any figure for financial or operational losses, so the current scale and geography of activity cannot be characterised from it.
Open the original source →

Other checks

Every check we have published →

Share this receipt
sharelivefraud.com/check/wOcgx40

Approved by ihubglobalhq on 2026-08-17, after review of the alert and its sources.

Something wrong here? Tell us and we'll correct it — corrections are published, not quietly edited.

Phishy? Send it → sharelivefraud.com/squire-it

Not affiliated with any government agency, credit bureau, bank, platform, or law-enforcement agency. Informational only — not legal or financial advice.

Naming a source is not an endorsement, and being named here is not an accusation against any company.

Powered by SquireIt™

Verify this receipt at squireit.com

Join Squire’s First Watch

Alerts before the feed. Credit when your summons becomes a receipt. A vote on what we check next. Founding names are permanent.

Get the next one

We publish a receipt for every alert, including the ones we decide not to run.

We will ask you to confirm before anything is sent. Your address is used for this and nothing else, and is never shared.