Fraudsters are increasingly exploiting outdated and weak state business registration systems in the United States to create synthetic businesses at minimal cost, often less than $150 per entity. These synthetic entities, fabricated using AI-generated documents and stolen data, can yield fraudulent payouts exceeding $100,000 per identity. The lack of robust identity verification and address validation in many state systems allows criminals to register fake businesses with ease, turning what was once a niche threat into a significant and mainstream risk for the financial sector.
Andrew La Marca, vice president of operations at Dun & Bradstreet, highlights that artificial intelligence tools are now being used to automate the creation of convincing bank statements and invoices, further accelerating the formation of synthetic entities. Private equity firms and lenders are advised to be vigilant for red flags during due diligence, as online registries and insufficient controls continue to facilitate this growing fraud vector. The rapid evolution of synthetic entity fraud underscores the urgent need for improved regulatory oversight and modernization of business registration processes to mitigate systemic risk.

See the actors and campaigns active against you right now.
2 events from the most recent confirmed update back to the earliest known activity.
Experts including Andrew La Marca of Dun & Bradstreet warned that lenders and private equity firms face growing risk from synthetic businesses during due diligence. Fraudsters were described as using fabricated bank statements, invoices and other records to make fake entities appear legitimate and obtain financing or other benefits.
By December 2025, security and fraud experts reported that synthetic entity fraud had rapidly escalated in the United States. They said criminals were exploiting weak state business registration controls and AI-generated or stolen documents to create convincing fake companies cheaply and at scale.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.