Synthetic Identity Theft: The Fastest Growing U.S. Fraud Type
Synthetic identity theft, the fastest-growing U.S. fraud type, combines real stolen data (often children’s SSNs from breaches like Equifax) with fake details to create new identities. Breached data enables these schemes, causing massive lender losses and consumer harm.
- How it works and how your information is used: Fraudsters pair a legitimate SSN (sourced from dark web “fullz” or breaches) with invented names, addresses, and birth dates. They build credit slowly through small accounts. Real example: Organized rings, like one in Detroit uncovered in 2025 involving 200+ fake applications, or a 2025 federal case defrauding banks of nearly $2 million using stolen SSNs and fake licenses. Then they “bust out” with large loans before disappearing.
- Impact: Lenders lose $20 billion to $40 billion annually (Equifax 2025 estimate), driving up costs for everyone. Consumers with the linked SSN face tainted credit reports, unexpected inquiries, denied loans, or major issues (e.g., child victims discovering fraud when applying for college aid or first jobs).
- Prevention: Freeze credit (including children’s) at all three bureaus via annualcreditreport.com. Monitor reports for odd inquiries. Use SSN misuse alerts and breach notification services. Personal cyber insurance often covers recovery costs, legal fees, and lost wages. From a lender/employer perspective, financial institutions prevent losses by using AI-driven tools to detect patterned applications, flag child SSNs or anomalies, verify against breach databases, and share fraud intelligence through consortia.
- Tools: The good news is that there are great tools out there that help keep you safe; you just have to follow through on their recommendations. For example, your iPhone password manager will tell you if your password has been breached, but you have to go in and change the password. I myself am guilty of ignoring these notifications, but it’s important not to use the same password for everything and change it if you know they’ve been in a breach.
These examples show the long-term damage from data exposure. More questions about identity theft or cyber insurance – reach me at joe@c3insurance.com or LinkedIn (linkedin.com/in/joeerle).


