KYC Verification Evasions Leads to Exploitation of Virtual Cameras & App Emulators
ID: ac9c8bf3-d4a1-5f91-82a0-2777cf58bde3
STIX ID: report--ac9c8bf3-d4a1-5f91-82a0-2777cf58bde3
Feed Name: CloudSEK Blog
CloudSEK reports a Russian-language cybercrime forum tutorial detailing how to bypass selfie-based KYC on fintech platforms (notably Revolut and crypto services) by combining virtual cameras (e.g., OBS VirtualCam) with Android emulators (e.g., BlueStacks) to feed pre-recorded or manipulated imagery. The technique enables bulk fraudulent account creation and potential money laundering, prompting recommended defenses including robust liveness/facial recognition, behavioral anomaly detection, and emulator/root environment detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
