NGNigeriaHowToNigeria services explained simply
How-to

How to Report a Stolen Phone in Nigeria — Three Parallel Tracks

A stolen phone runs on three streams that do not wait for each other. The mobile network bars the SIM and registers the IMEI. The bank places Post No Debit on every linked account. The police Division issues the extract that insurers, banks, and NIMC read at the next step. All three start on the day of the theft.

Written by NigeriaHowTo Editorial TeamEdited by Nikita Bystrykh, Founder & PublisherChecked against official sourcesUpdated October 2026Last reviewed 7 October 202612 min read

Quick answer

A stolen phone in Nigeria runs on three parallel tracks: the mobile network bars the SIM and registers the IMEI on the GSMA blocklist; the bank places Post No Debit on every linked account pending fraud-desk review; the police Division issues the extract that insurers, banks, and NIMC read as the documentary trigger for the downstream actions. The three calls — network fraud line, bank fraud line, police Division — should all be made on the day of the theft, in any order, with no stream waiting for the others. The extract is the load-bearing document at the resolution step.

Three streams that do not wait for each other

The instinct after a phone is stolen is to fix one thing at a time. The reality is that three different institutions need a call from you and none of them is a prerequisite for the others. The mobile network can bar your SIM the moment you ring them whether or not the bank has acted, whether or not you have been to the police. The bank can place Post No Debit on your account the moment you ring them whether or not the SIM is barred, whether or not the police case is open. The police Division can take the report and start drafting the extract whether or not the network has acted, whether or not the bank has acted. The three streams run independently and all three should be running before the day ends.

A stolen phone in Nigeria runs on three parallel tracks, each at a different institution, and none waits for the others. Track one — the mobile network operator (MNO): the subscriber rings the MNO's fraud line on the day of the theft (MTN 180 from an MTN line or *123*7# self-service; Airtel 300; Glo 300; 9mobile / T2 200), supplies the SIM-record verification (last recharge amount, frequently-dialled numbers, year of activation) and the device IMEI from the original packaging or a backup, and the MNO bars the SIM and registers the IMEI on the GSMA blocklist; propagation across other MNOs through the GSMA registry runs in the order of 24 to 72 hours. Track two — the bank: the subscriber rings the bank's fraud line from the number on the back of the debit card, asks for Post No Debit on every linked account pending fraud-desk review (placed within hours), and supplies the IMEI and incident date for the fraud trail. Track three — the police: the subscriber files at the Division covering the location where the phone was taken, the DPO approves a written extract setting out the incident, the IMEI where known, the fraudulent transfers attempted where they exist, and the downstream-verifiers (insurer, bank, NIMC). The extract is the documentary trigger that insurers accept for a claim, that the bank reads at fraud-desk closure to release the Post No Debit, and that NIMC accepts for re-issuance of the NIN slip if the NIN was on the device. The three calls are all same-day and can be made in any order; none requires the others as a prerequisite, and all three streams should be running before the day ends.

The reader-facing implication is straightforward. Stop trying to sequence the calls. Make whichever is easiest first — typically the mobile network because the customer-care number is easy to dial from a friend's phone — and start the next two while waiting on the first. Each call takes minutes. The whole sequence can land before lunch on the day of the theft.

The downstream-verifier on the police side splits by what the victim needs after the immediate calls. The insurer will read the extract before paying a claim. The bank's fraud desk will read it at the post-Post-No-Debit review before lifting the hold. The NIMC will read it if the victim needs to regenerate a NIN slip or close access from the stolen device. The extract is built once and read at each of these next steps.

Track one — the mobile network

The network's first action is to bar the SIM. The bar is immediate; the line is dead within minutes of the fraud-line agent processing the request. Two pieces of information matter to the agent: the MSISDN (your phone number) and the SIM-record verification (the last recharge amount, three frequently-dialled numbers, the year the line was activated). The agent reads these from the original SIM record at the network and the customer's answers have to match for the bar to be placed without escalation.

The IMEI is the second piece. Submitting the IMEI from the original device packaging or a backup adds the device identifier to the case alongside the SIM bar. Whether the IMEI is also registered to a wider blocklist that prevents the device being used on a different network's SIM depends on what the operator actually does at the back end — Nigerian operators describe IMEI registration on stolen-device cases inconsistently in their public guidance, and effective cross-network device-level blocking should not be assumed by the customer. The reliable customer-facing protection is the SIM bar on the original line; the IMEI submission is supplementary and is worth doing for the record even if its enforcement value is uncertain.

DocumentDetails
MTNCustomer-care fraud line on 180 from an MTN number, or from any number ring 0803 100 0180. Self-service short code from another MTN line is *123*7# (select the block-stolen-SIM option). Walk-in support at any MTN Service Centre for the formal SIM-swap and IMEI submission.
AirtelCustomer-care fraud line on 300 from an Airtel number (toll-free). Walk-in at Airtel Customer Experience Centres for the formal SIM-replacement step. Confirm the current off-network helpline at the Airtel support page on airtel.com.ng before calling from a non-Airtel line; published numbers have been revised more than once across the past few years.
GloCustomer-care fraud line on 300 from a Glo number (toll-free), or from another network ring 0805 002 0121. Walk-in at any Gloworld Office or Glo Service Centre for the SIM-replacement step. Confirm the current off-network helpline at the Glo support page before calling.
9mobile / T2Customer-care fraud line on 200 from a 9mobile / T2 number, or from another network ring 0809 000 0200. Walk-in at the T2 Experience Centres or 9mobile service centres for the SIM-replacement step. The 9mobile rebrand to T2 in August 2025 did not affect the customer-care numbering. Confirm the current off-network helpline at the T2 / 9mobile support page before calling.

The agent reads back the bar confirmation with a reference number. Take the reference; it is what the police extract cites and what the SIM-replacement desk reads at the service-centre step. The SIM-replacement appointment is separate from the fraud-line call — it requires the applicant to attend a service centre with a valid government photo ID and the bar reference. See SIM replacement after theft for the service-centre flow and the NIN-SIM relink that follows.

Track two — the bank

The bank-side stream runs through the fraud line published on the back of the debit card and on the bank's official website. Do not ring back any number that has appeared on the stolen phone's call history claiming to be the bank — call only from the published channel. The fraud-line agent's typical first action is to place Post No Debit on the affected account, and at most banks on any other account in the customer's profile that the fraud-desk system flags as at-risk in the same incident. The precise scope of the initial Post No Debit varies by bank's fraud-desk protocol; ask the agent which accounts have been held and which have not.

Post No Debit itself is the standard restriction mechanism the bank applies at the account-level for fraud cases.

Post No Debit (PND) is the bank-side operational mechanism for the restrictions that follow a BVN- or NIN-linked compliance issue. The bank's compliance officer places the PND against the specific account on the core-banking system; the same officer (or the bank's KYC desk) is the customer's recovery counterpart for lifting it. The customer's route runs through the bank's customer-care line first and then through the branch or the compliance team — not through NIBSS, NDIC, or CBN. Where the underlying issue is BVN-tier (a NIBSS flag against the BVN, a CBN compliance circular triggered by missing linkages, a suspicious-transaction review), the same PND cascades across every Nigerian account the customer holds at every bank through NIBSS shared infrastructure. Where the cause is bank-local (an internal dispute, a court order against one account, a signature problem), the PND stays at the affected bank. Lifting the PND is therefore a two-part procedure: clear the underlying cause, then ask the bank's compliance officer to release the hold on the core-banking system. Both steps run through the bank, with NIBSS as the back-end the bank queries but the customer never touches.

Deposits still land; outgoing transfers, withdrawals, and standing-order debits all bounce. The hold sits until the fraud desk reviews the case — typically a working day to a few working days depending on the bank's internal queue and whether any fraudulent transfers actually cleared during the unmonitored window. The customer's police extract is typically the documentary trigger the fraud desk reads at the review step before releasing the hold. The bank is the customer-facing actor; the customer reaches the fraud desk through the published customer-care or fraud line rather than through any other route.

Where fraudulent transfers cleared before Post No Debit was placed, the recovery path is separate from the immediate-bar call. The bank's fraud desk traces each transfer, contacts the receiving bank through NIBSS, and runs the formal recovery procedure. The customer's evidence — the police extract, the timeline of the theft, the SMS confirmations of unauthorised transfers — is what supports the recovery. Recoveries inside the Nigerian banking system are sometimes possible if the receiving account is still active and the funds have not been moved on. The success rate falls sharply after 24 to 48 hours, which is why the bank call on the day of the theft is critical.

The credential side around the BVN matters because the bank-side fraud trail reads against the BVN as the identity anchor and a SIM-swap-led account-takeover (the fraudster captures the BVN and personal data alongside the phone, then engineers a SIM swap on the same number) is the canonical fraud pattern that produces the heaviest losses.

The BVN is an 11-digit number generated by NIBSS at the moment of biometric capture at a Nigerian bank branch. The number is unique to the individual and identical across every bank where that individual holds an account. There are no letters, spaces or check characters in the BVN — eleven digits, nothing else.

See is BVN safe to share for the credential-side reading on the wider fraud pattern, and BVN-blocked account for the BVN-side recovery context.

Track three — the police Division

The police step is the documentary anchor for everything that comes after. The extract on the Division's letterhead, bearing the NPF stamp and the DPO's signature, is what the insurer reads at the claim step, what the bank's fraud desk reads at the post-Post-No-Debit review, and what NIMC reads if a fresh NIN slip is needed.

A police extract is a written report on Division letterhead, bearing the NPF stamp and the signature of the Divisional Police Officer (DPO) or a designated officer with the DPO's authority. The extract is the standard NPF deliverable for citizens who need a documented police record of a loss, theft, or incident — distinct from the character certificate, which speaks to the absence of a criminal record. The right counterpart is the DPO at the Division covering the geographical location where the incident occurred, not the Area Command, not the State Command, and not Force Headquarters. The procedural route runs through a letter of request addressed to the DPO setting out the applicant's interest in the incident (the document or property lost, who needs the extract downstream, why), supported by the applicant's identification (NIN slip plus a government photo ID). The DPO reviews and approves; the case officer (the Investigating Police Officer, IPO) prepares the extract; the DPO signs and stamps it. Turnaround is same-day at low-volume rural Divisions and a working week at Lagos and Abuja metro Divisions. The official fee for a routine extract is zero under the NPF General Orders that prohibit charging for routine police services to citizens; informal 'facilitation' payments are widely reported across stations and are honestly acknowledged across NPF reform commentary, but they are not a published fee and are not endorsed here. The extract content must include: applicant's full name and NIN, date and location of the incident, description of what was lost or what occurred, what the applicant has done since the incident, and a statement naming the downstream-verifier (NIS for a passport replacement, an insurer for a theft claim, a bank for a fraud trail, NIMC for a NIN-slip re-issuance).

Six content items have to be present in the extract:

  • Applicant's full name and NIN. Identity reference, spelled exactly as the NIN slip.
  • Date of theft. The specific date and time where remembered.
  • Location of theft. Named at the level of detail a reasonable reader could verify — the venue, the LGA and state, the circumstances of the location at the moment of theft.
  • Description of what was taken. The phone (make, model, IMEI where remembered) and any other items that went with it (wallet, ID cards, SIM cards, bank cards).
  • What the applicant has done since the theft. The mobile-network fraud-line call (with reference number), the bank fraud-line call (with reference number), any attempts to trace the device, any fraudulent transfers attempted with their values where known.
  • Downstream-verifier purpose. Statement that the extract is being issued for insurance claim, bank fraud-desk review, NIMC re-issuance, or court proceedings as the case requires. Some files require all four; the extract can name several purposes.

Submit a written letter of request to the DPO at the Division covering the location of theft (not where the victim lives). The Division procedure runs through the case officer (IPO), the DPO's review, and the DPO's signature with the NPF stamp. Same-day at low-volume rural Divisions; a working week at Lagos and Abuja metro Divisions.

On the fee: there is no single public fee table for police extracts that applies cleanly across all Nigerian stations. The NPF General Orders convention discourages charging citizens for routine police services, but the specific Order text is not publicly verifiable. What is observable is that the Force HQ does not publish a positive fee schedule for the extract and individual stations do not publish their own. If applying through POSSAP, pay only the amount shown on the portal at the point of payment and keep the receipt; if applying at a local Division, ask for any official charge to be written and receipted, and do not present cash facilitation payments as an official police fee. Informal "facilitation" payments are widely reported across stations and are an honest reality of the operating environment; this article does not endorse them.

Downstream — what the extract opens up at the next step

Once the three tracks are running, the documentary work continues at the receiving authorities. Each verifier reads the extract differently.

  1. 1
    Insurance claim — submit the extract to the insurerPhone-theft cover under a home-contents policy, a dedicated device-insurance policy, or an employer-provided device policy all read the police extract as the documentary trigger. Submit the claim form, the extract, the original purchase receipt where you have it, and any device-identification details. The insurer's assessor reviews and pays the agreed cover figure subject to the policy's excess and exclusions.
  2. 2
    Bank fraud-desk review — present the extract at the post-Post-No-Debit stepOnce the extract is in hand, ring the bank's fraud desk and ask for the review meeting. The desk reads the extract, cross-checks the timeline against the transactions on the account, and either releases the Post No Debit (where no fraudulent transfers cleared and the account is no longer at active risk) or escalates to the recovery procedure where transfers did clear. The extract is the documentary trigger that moves the case from the immediate-bar phase into the resolution phase.
  3. 3
    NIMC NIN-slip re-issuance if neededIf the NIN slip itself was lost alongside the phone (or if access to the NIMC MobileID app on the stolen device is a concern), the NIMC self-service portal at selfservicemodification.nimc.gov.ng issues a fresh slip. The extract is supporting documentation for the re-issuance request where the stolen-phone circumstance applies. Losing the slip does not invalidate the NIN itself — the credential lives on the NIMC database.
  4. 4
    SIM replacement at the network's service centreThe bar on the original SIM is one thing; getting a fresh SIM with the same number is another. Attend the network's service centre with a government photo ID, the bar reference number from the fraud-line call, the NIN linked to the line, and the SIM-record verification items. The new SIM inherits the existing NIN-MSISDN bond at the network level; no fresh NIN linkage is required.
  5. 5
    Court proceedings where the theft becomes a criminal caseWhere the police investigate the theft as a criminal case (the device was taken in a robbery or assault, the fraudulent transfers crossed a threshold for criminal prosecution), the extract evolves into a formal police case file. The victim becomes a complainant in the prosecution; the IPO maintains the case file; the extract is the foundation document the prosecution reads. Most simple-theft cases do not reach this stage.

What not to do during a stolen-phone case

Five things make a stolen-phone recovery harder rather than easier. Each comes up often enough to flag explicitly.

  • Do not pay anyone who rings claiming to have "found" the phone. The "phone finder" pattern is a documented fraud; the call is from the thief or a related party. There is no legitimate finder channel separate from the police.
  • Do not call back numbers that have appeared on the stolen phone's call history during the theft window. The pattern is that fraudulent transfers generate SMS-OTP confirmations to specific numbers; ringing those numbers can route the OTP back to the thief and complete a transfer.
  • Do not share any OTP that arrives on a new device or another line during the active recovery window. The bank's fraud desk does not ask for OTPs over the phone; any caller asking for one is a fraudster.
  • Do not change the BVN-linked phone number on the basis of the stolen-phone event alone. From 1 May 2026 a BVN-linked phone number may be changed only once across the customer's lifetime. The bar on the original SIM and the SIM-replacement at the network's service centre retain the original number, which is the route that preserves the lifetime change for a true future emergency.
  • Do not skip the police extract on the grounds that the bank and network calls have already happened. The extract is the documentary trigger at the resolution step for insurance, bank fraud-desk review, and NIMC re-issuance — without it those steps stall.
  • Do NOT engage anyone offering to recover the phone for a fee. The legitimate route is the police Division and the network's IMEI bar.
  • Do NOT call back numbers that appeared during the theft window. The pattern is an OTP-routing fraud.
  • Do NOT share an OTP, PIN, or password with any caller claiming to be the bank. The fraud desk never asks for credentials over the phone.
  • Do NOT use the BVN one-lifetime phone-number change on a stolen-phone recovery that does not need it. The SIM-replacement retains the original number; reserve the lifetime change for a true emergency.
  • Do NOT submit the insurance claim or the bank fraud-desk review without the police extract. The extract is the documentary anchor every downstream verifier reads.

Account restricted on the bank side after the fraud?

If the bank's Post No Debit has held and the fraud-desk review is taking longer than expected, the bank-side recovery procedure walks the compliance-officer route, the diagnostic of which restriction code sits on the account, and the formal escalation path.

Account restricted because of BVN →

Frequently asked questions

Which call do I make first — network, bank, or police?

Whichever you can reach fastest. The three streams do not depend on each other and the day-of-theft order does not affect the outcome. In practice the network's customer-care number is the easiest to dial from another phone and is often the first call. The bank fraud line is the second most urgent because a fraudulent transfer can clear within minutes if the thief has the device unlocked. The police Division is sometimes the slowest to walk into in person; the report can be initiated by phone on the day with the formal letter of request following.

What if I do not have the IMEI written down anywhere?

Two routes. Route one: the original device packaging carries the IMEI on the box and on the receipt. If you bought the phone through a formal retailer or the network's own store and kept the documentation, the IMEI is there. Route two: backup records — the device's Google or Apple account history, the bank app's device-enrolment record (some bank apps log the device IMEI at first activation), the phone insurance policy if any. Without the IMEI the mobile network can still bar the SIM (which stops the thief using your number) but the device itself stays usable on another SIM until the GSMA blocklist registers the IMEI.

Will the bank let me move money out while Post No Debit sits on my account?

No on the debit side; yes on the credit side. Post No Debit is the standard bank-side restriction for fraud-suspected accounts. Inbound transfers and salary credits still land normally; outgoing transfers, withdrawals, and standing-order debits all bounce. The hold lifts once the bank's fraud desk has reviewed the case and confirmed the account is no longer under active fraud risk. The police extract is typically the documentary trigger the fraud desk reads at the review step. See [account restricted because of BVN](/banking/account-restricted-bvn/) for the bank-side mechanism.

How long does it take for the SIM-bar to propagate across networks?

The bar on the SIM itself is immediate at the original network — the line is dead within minutes of the network's fraud-line agent processing the request. The IMEI blocklist propagation across other Nigerian networks runs through the GSMA registry and typically settles within 24 to 72 hours. During the propagation window the thief could in principle insert another network's SIM into the device; the IMEI bar closes that route as the propagation completes.

I had bank apps on the phone — what is the actual fraud risk?

The risk depends on the device-lock state at the moment of theft. A locked device with a strong PIN or biometric and apps that require a passcode for every login is comparatively low risk. An unlocked device with apps that persist login state, transaction-PIN saved in memory, and SMS-OTP routed to the SIM on the same device is high risk; the thief can sometimes authorise transfers before the bank fraud desk places Post No Debit. The defensive move is the bank call before the police call where this risk is acute. From 1 May 2026 the CBN one-device mobile-banking rule limits new-device activations to a ₦20,000 cap on the first 24 hours, which adds a structural ceiling on the speed at which a thief can drain an account even on a fresh device activation.

Do I have to wait for the police extract before contacting my insurer?

Yes for most insurers. The extract on the Division's letterhead is the documentary trigger that turns the theft from a self-reported loss into a documented event for the policy. Submit the claim form to the insurer once the extract is in hand. The insurer reads the extract content to confirm the theft circumstances match the policy coverage. Without the extract the claim is typically held in 'pending documentation' rather than rejected; with the extract the claim moves to the assessor's review.

My NIN was on the device through the NIMC MobileID app — what is the recovery for that?

The NIN itself is not on the device — it is on the NIMC database. The MobileID app is a viewer for the NIN, the Virtual NIN, and the digital slip. Disabling app access from the new device is what closes the route; the NIN remains valid and reads correctly across every other surface. Where you want a fresh paper NIN slip after the theft, the [NIN slip re-issuance](/nin/nin-slip-reissuance/) route at NIMC's self-service portal handles it. Where the SIM linked to the NIN is the one barred at the network, the NIN-SIM linkage continues to point at the same MSISDN — see [NIN-SIM relinking after SIM replacement](/nin/sim-linking-nin/) for that side.

What if the thief calls me back claiming to be a 'phone finder' who can return the device?

Do not engage and do not pay. The pattern is a well-documented fraud — the thief or a related party rings the victim from another number, claims to have found the phone, and asks for a 'finder's fee' or for the victim to call back numbers that produce SMS-OTP confirmations of fraudulent transfers. There is no legitimate 'phone finder' channel separate from the police. If a number rings the victim's other line claiming to be the finder, take the number for the police extract and end the call; never call back, never authorise a transfer to confirm anything, and never share an OTP that arrives during the conversation.

Sources

Independent guide, not affiliated with any government agency. The facts, fees and steps above are checked against the primary sources below — government, regulator and agency material first, reputable press second.

  1. 1.NCC directive on stolen-SIM blocking by MTN, Glo, 9mobile, Airtel
  2. 2.Legit.ng — How to block your SIM card if your phone is lost or stolen
  3. 3.MTN — SIM swap and lost-SIM guidance
  4. 4.POSSAP — Police Specialized Services Automation Project portal (Police Extract listing)
  5. 5.Central Bank of Nigeria — Revised Regulatory Framework for BVN Operations and Watch-List (October 2021)
  6. 6.National Economy — BVN, NIN: Understanding Post No Debit
  7. 7.BusinessDay — Why SIM swap scams are Nigeria's silent cyber war

Facts verified against the NigeriaHowTo facts registry.

About the author

NigeriaHowTo Editorial Team

Editorial Research Team

The NigeriaHowTo Editorial Team researches and maintains practical guides about Nigerian documents, online portals, government-related procedures, and everyday administrative services. The team focuses on plain-English explanations, clear structure, official-source references, practical checklists, and user safety. The team is not a government authority, legal adviser, immigration practitioner, banking professional, tax expert, education official, or medical professional — independent subject-matter review is added separately when qualified reviewers are engaged.

View full profile →