Morning Overview

Never reply to a scam text, even to type STOP

Unsolicited text messages arrive with a familiar rhythm: a package that cannot be delivered, a toll that was never paid, a bank alert about a purchase that never happened. The instinct for many people is to shut it down by firing back a single word, usually the same opt-out command that legitimate marketers honor. That reflex feels tidy and final, but on a fraudulent message it does the opposite of what the sender wants a target to believe.

The problem is that a scam text is not a real subscription service, and its opt-out instruction is not bound by the rules that govern legitimate senders. Any response at all, including a curt refusal, tells the operation on the other end that a human being read the message and reacted to it. That confirmation is precisely the signal a fraud ring is fishing for.

What a reply actually confirms

Scammers blast messages to enormous lists of numbers, many of which are inactive, mistyped, or abandoned. A number that answers, even to object, is far more valuable than one that stays silent, because it proves a real person is on the line and paying attention. Security researchers note that a responsive number is often flagged, bundled, and sold onto higher-value target lists, which is why the flood of messages tends to grow rather than shrink after someone engages. The National Cybersecurity Alliance explains that replying to a smishing text confirms the number is valid and can lead to it being resold to other scammers, a dynamic it details in its guide to text message scams.

The word chosen for the reply barely matters. Typing the standard cancellation command carries the same tell as typing a full sentence, because the mechanism being triggered is confirmation of activity, not any particular content. Federal regulators warn that responding to an unwanted or suspicious text in any form can simply verify the number for the sender, guidance the Federal Trade Commission sets out in its explainer on how to recognize and report spam texts.

The bigger risks hiding behind the reply

Confirmation is only the first hazard. Some fraudulent messages are designed to lure a reply into an ongoing conversation, where a scammer can build rapport, invent urgency, and steer the target toward a malicious link or a request for money. A short exchange that starts with a wrong-number apology or a friendly greeting is a common opening move, and every answer keeps the door propped open for the next manipulation.

The links inside these texts compound the danger. Tapping one can lead to a counterfeit login page that harvests account credentials or trigger a download that plants malware on the device. The Federal Communications Commission cautions that text-based phishing is engineered to trick recipients into handing over passwords, account numbers, or other sensitive details, a threat it describes in its consumer guidance on spam texts and phishing. Silence starves that entire sequence of the engagement it depends on.

How to shut it down without engaging

The most effective response to a suspicious text is no response at all. Leaving the message unanswered denies the sender the one confirmation being sought, and it avoids every downstream trap that a reply or a tap could spring. Deleting the message afterward clears it from view without adding any risk.

Built-in tools handle the rest more safely than a manual reply ever could. Both major smartphone platforms include a block option that stops future messages from a given number without notifying the sender, and a report-junk or report-spam control that routes the message to the carrier for analysis. Using those features accomplishes the goal that typing an opt-out only pretends to, because it removes the message from the inbox while leaving the scammer guessing about whether anyone was ever there.

Reporting the message so it counts

Quiet disposal protects one person, but a quick report helps protect many. Forwarding an unwanted text to the number 7726, which spells “SPAM” on a keypad, sends a copy to the wireless carrier at no charge and feeds the industry systems that filter these campaigns. The step takes seconds and requires no direct contact with the sender.

Regulators also collect these reports to build cases against the operations behind the messages. Consumers can file a complaint through the Federal Trade Commission’s fraud portal at reportfraud.ftc.gov, where the details help investigators map large-scale smishing networks. None of these channels involve replying to the scammer, which is the entire point: they escalate the message to people equipped to act on it, rather than to the criminal hoping for a sign of life.

The underlying rule is simple enough to apply on autopilot. A legitimate company will not punish a customer for ignoring an errant text, and a fraudulent sender will only be encouraged by any answer at all. Treating every unexpected message from an unknown number as something to block, report, and delete, rather than something to respond to, removes the small opening that these schemes are built to exploit.

This article was produced with the assistance of AI and reviewed by Morning Overview editors prior to publication.


More from Morning Overview