Google introduces Android protection against fake calls
Google has introduced a new feature for Android that helps detect fake calls from familiar contacts using the RCS protocol. The system automatically verifies whether a call is actually coming from the intended person's device and warns the user if it suspects number spoofing. This feature is enabled by default and does not require any additional action from the user.
Crius
Google has introduced a new feature for detecting spoofed calls on Android. This security system uses the RCS protocol to verify whether an incoming call from a saved contact is actually coming from that person's device.
Feature Rollout
The feature was announced in June 2026 and is now starting to roll out globally through the Phone by Google app on devices running Android 12 and above, beginning with Pixel models.
How It Works
The protection mechanism is based on digital verification between two devices. When a user receives a call from a contact and both are using Phone by Google, the caller’s device sends an encrypted confirmation signal via RCS to verify that the call is genuinely coming from their device. If this signal is missing—as is often the case with number spoofing attempts—Android directly contacts the real device of the contact. If the actual device reports that it is not making the call, a warning appears on the recipient’s screen advising them to end the conversation.
The entire verification process is protected by end-to-end RCS encryption, and neither audio nor call content is transmitted to Google’s servers. The feature is enabled by default and requires no additional action from the user.
Compatibility
This feature only works if both the caller and the recipient are using the Phone by Google app, which is the default dialer on most Android devices. Users with a different calling app can download Phone by Google from the Play Store and set it as their default to activate this protection.
Difference from Fraud Detection
Spoofed call detection is different from Google’s existing fraud detection feature, which analyzes audio. The latter uses built-in AI to listen to calls and identify suspicious signs, such as pressure tactics or urgent requests for money, which are typical of scam calls from unknown numbers. This feature is disabled by default and only applies to calls from unfamiliar contacts.
In contrast, spoofed call detection does not analyze audio but works exclusively at the device routing level to check if a call is truly coming from the contact’s device. This feature is enabled by default and is designed to prevent scammers from spoofing the numbers of friends and family.
Addressed Threats
Scammers are increasingly using online services to spoof the numbers of trusted contacts and employing AI to mimic the caller’s voice, as more people ignore calls from unknown numbers.
According to INTERPOL’s March 2026 report, identity spoofing fraud was named one of the main causes of global financial losses, which exceeded $400 billion last year. The US Federal Trade Commission separately reported that in 2024 alone, such scams cost Americans $2.95 billion.
Google notes that AI-generated audio deepfakes have reached a level where most people can no longer distinguish them from a real voice, so verifying the number alone is not enough to detect fraud.
Verified Financial Calls
The spoofed call detection feature builds on Google’s previously launched verified financial calls system, which uses a similar confirmation mechanism to check that incoming calls are genuinely coming from the user’s bank. This feature cross-checks calls with registered banking apps and can automatically end connections that fail verification.
Google has implemented the spoofed call detection feature using the open RCS standard, allowing other call app developers and device manufacturers to adopt similar protections across the Android ecosystem.
