Synthetic Identity Fraud
Definition
The creation of a fictitious identity by combining real and fabricated personal data elements, such as a genuine national ID number paired with a false name and date of birth. Synthetic identities are harder to detect than full account takeovers because no real person reports the fraud.
- Composition
- Real data (e.g. national ID number) plus fabricated identity elements
- Detection difficulty
- Higher than account takeover; no real victim reports it
- Domain
- Financial and cyber fraud investigation
Common questions
Why is synthetic identity fraud harder to detect than a stolen full identity or account takeover?+
Because no single real person's complete identity is used, there is no victim actively monitoring statements or reporting the fraud early; the synthetic identity can build a legitimate-looking credit or account history over months before it is exploited, delaying detection well past the fraud's origin.
What investigative approach helps distinguish synthetic identity fraud from simple identity theft?+
Investigators look for identity elements that do not cohere as a real biography, such as a national ID number and a name/date-of-birth combination that never co-occur in any legitimate record, alongside anomalies like a credit file with no prior history suddenly appearing active.
Does synthetic identity fraud require compromising a data breach victim's full record?+
No; it typically only needs one or two genuine data elements, such as an ID number, combined with fabricated details, which is what makes it achievable even from partial or low-quality leaked data rather than requiring a complete stolen identity.
Related terms
- Command and Control (C2)
- The channel through which an attacker sends instructions to malware on a compromised host and receives data back. C2 channels range from...
- Credential Stuffing
- An automated attack that replays username-password pairs from previous data breaches against new target services, exploiting the widespread reuse of passwords across...
- Double Extortion
- A ransomware tactic in which the attacker exfiltrates data before encrypting it, then demands payment both for the decryption key and for...
- FAFT Virtual Asset Guidance
- Guidance from the Financial Action Task Force requiring member states to regulate virtual asset service providers (cryptocurrency exchanges) as financial institutions, applying...
- Image-Based Sexual Abuse (IBSA)
- The non-consensual creation, capture, or distribution of intimate sexual images. The term encompasses non-consensual intimate image sharing (formerly called revenge porn), upskirt...