Veriff’s 2025 Identity Fraud Report reveals rapid rise in fraud for payment providers

by Chris Hooper, Director of Brand

Share this post

The 2025 Veriff Identity Fraud Report, our annual investigation into online fraud, has thrown out some startling findings for payments providers. 

Drawn from deep analysis of our customer data and our field research over the last 12 months, this report, which you can download here, is our most comprehensive yet and covers more industries, regions, fraud types, and use cases than ever before.

With so much data at our disposal – our AI-powered engines and fraud teams mitigate thousands of attempts to infiltrate our customers’ systems daily – there are numerous narratives to discuss here. But, no matter whether we break things down by geographic region, industry, or fraud type, the main story is predictably and sadly familiar: online fraud is on the rise.

Our main takeaway is that online fraud increased by 21% year-on-year since our 2024 report.

Here are some more key takeaways:

Fraud follows the money

Financial services, where there are the richest pickings for fraudsters, remains one of the industries most likely to be targeted by fraudulent attacks. Authorized fraud – where a user is tricked into performing an identity verification session – is orders of magnitude more prevalent for banks, crypto platforms, payments providers, and other fintech platforms, coming in at more than double the global average.

The fraud challenge is increasing

Unfortunately, what we call the net fraud rate – the sum of all types of fraud combined – remains high. According to our data, 5% of all verification attempts we encountered in 2024 were fraudulent. Moreover, in certain financial services’ sub-verticals, such as crypto platforms and payments platforms, the average amount of net fraud (all types of fraud combined) has been nearly 2x higher than the global mean – reaching as high a value as 13.4%.

Account takeover and multi-accounting are on the rise

Account takeover, where cybercriminals take ownership of online accounts using stolen passwords and usernames, and multi-accounting, the practice of opening multiple accounts to take advantage of promotions or playing bonuses, both saw a huge surge in 2024. Account takeover cases increased by 13% compared to 2023, and multi-accounting saw a 10% year-on-year increase.

Impersonation attacks still dominate

Impersonation fraud amounted to more than 82% of all the fraudulent attempts we saw this year. 16% of all fraud cases in 2023 involved people presenting altered, counterfeit, and fabricated documents, which was similar to last year. However, there was also a startling rise of adversary-in-the-middle attacks, a type of cyberattack where cybercriminals intercept, relay, or alter the communication between two parties without their knowledge while giving the impression of direct communication. These attacks went up 46% compared to 2023 and are a type of fraud tactic used with particular effect against payment platforms.

For more data, insight and tips on how to fight online fraud, download the full report.

Logo-PNG-1
Article by Veriff

More To Explore

Membership

Merchant Community Membership

Are you a member of The Payments Association?

Member benefits include free tickets, discounts to more tickets, elevated brand visibility and more. Sign in to book tickets and find out more.

Welcome

Log in to access complimentary passes or discounts and access exclusive content as part of your membership. An auto-login link will be sent directly to your email.

Having trouble signing?

We use an auto-login link to ensure optimum security for your members hub. Simply enter your professional work e-mail address into the input area and you’ll receive a link to directly access your account.

First things first

Have you set up your Member account yet? If not, click here to do so.

Still not receiving your auto-login link?

Instead of using passwords, we e-mail you a link to log in to the site. This allows us to automatically verify you and apply member benefits based on your e-mail domain name.

Please click the button below which relates to the issue you’re having.

I didn't receive an e-mail

Tip: Check your spam

Sometimes our e-mails end up in spam. Make sure to check your spam folder for e-mails from The Payments Association

Tip: Check “other” tabs

Most modern e-mail clients now separate e-mails into different tabs. For example, Outlook has an “Other” tab, and Gmail has tabs for different types of e-mails, such as promotional.

Tip: Click the link within 60 minutes

For security reasons the link will expire after 60 minutes. Try submitting the login form again and wait a few seconds for the e-mail to arrive.

Tip: Only click once

The link will only work one time – once it’s been clicked, the link won’t log you in again. Instead, you’ll need to go back to the login screen and generate a new link.

Tip: Delete old login e-mails

Make sure you’re clicking the link on the most recent e-mail that’s been sent to you. We recommend deleting the e-mail once you’ve clicked the link.

Tip: Check your security policies

Some security systems will automatically click on links in e-mails to check for phishing, malware, viruses and other malicious threats. If these have been clicked, it won’t work when you try to click on the link.

Need to change your e-mail address?

For security reasons, e-mail address changes can only be complete by your Member Engagement Manager. Please contact the team directly for further help.

Still got a question?