{"id":14055,"date":"2025-10-27T10:15:29","date_gmt":"2025-10-27T17:15:29","guid":{"rendered":"https:\/\/jasonsblog.ddns.net\/?p=14055"},"modified":"2025-10-27T10:15:29","modified_gmt":"2025-10-27T17:15:29","slug":"ai-passport-scares-are-pushing-for-digital-ids","status":"publish","type":"post","link":"https:\/\/jasonsblog.ddns.net\/index.php\/2025\/10\/27\/ai-passport-scares-are-pushing-for-digital-ids\/","title":{"rendered":"AI-Passport Scares Are Pushing For Digital IDs"},"content":{"rendered":"\n<p>My <a href=\"https:\/\/jasonsblog.ddns.net\/index.php\/2025\/10\/26\/the-west-is-destroying-online-privacy\/\">post<\/a> yesterday had a video where kids were using video game characters to pass the AI face check to bypass age restrictions. So along those lines, could this be a reason for citizens to accept digital IDs and a complete loss of privacy online? And pay close attention to how invasive some of the digital ID systems are below as being deployed in other countries. And my favorite is the last paragraph, as when they mention &#8220;non-custodial services&#8221; they&#8217;re talking about cryptocurrencies in your own hardware or software wallet which you sovereignly control.<\/p>\n\n\n\n<p><a href=\"https:\/\/www.therage.co\/ai-passport-kyc-digital-id\/\" target=\"_blank\" rel=\"noreferrer noopener\">https:\/\/www.therage.co\/ai-passport-kyc-digital-id\/<\/a><\/p>\n\n\n<div class=\"wp-block-ub-divider ub_divider ub-divider-orientation-horizontal\" id=\"ub_divider_b7980db9-7ace-43ad-af66-c4ee116e2a72\"><div class=\"ub_divider_wrapper\" style=\"position: relative; margin-bottom: 2px; width: 100%; height: 2px; \" data-divider-alignment=\"center\"><div class=\"ub_divider_line\" style=\"border-top: 2px solid #ccc; margin-top: 2px; \"><\/div><\/div><\/div>\n\n\n<h5 class=\"wp-block-heading\">Posts are claiming that a ChatGPT generated AI Passport passed KYC Checks at notable cryptocurrency exchanges. That&#8217;s not true, the posts author tells The Rage.<\/h5>\n\n\n\n<p>Over the past weeks, <a href=\"https:\/\/x.com\/BitcoinNewsCom\/status\/1980318289713852466\" rel=\"noreferrer noopener\" target=\"_blank\">a post<\/a> has been circulating on social media claiming that a Polish researcher had managed to pass KYC checks with a Passport created by ChatGPT.<\/p>\n\n\n\n<p>According to <a href=\"https:\/\/timesofindia.indiatimes.com\/etimes\/trending\/ai-getting-dangerous-polish-researcher-uses-chatgpt-4-o-to-generate-fake-passport-in-5-minutes\/articleshow\/120058999.cms\" rel=\"noreferrer noopener\" target=\"_blank\">the story<\/a>, which originated with The Times of India in April of this year, the researcher &#8220;used ChatGPT-4o to create a realistic fake passport in just five minutes&#8221; that was &#8220;so convincing that it bypassed basic KYC checks used by major fintech platforms such as Revolut and Binance.&#8221;<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter\"><img decoding=\"async\" src=\"https:\/\/www.therage.co\/content\/images\/2025\/10\/the-rage-kyc-fake-news-1-1.png\" alt=\"\"\/><figcaption class=\"wp-element-caption\">A screenshot of the Times of India article that&#8217;s been circulating on social media<\/figcaption><\/figure>\n\n\n\n<p>But the story appears to not be true. Borys Musielak, who generated the passport, tells The Rage: &#8220;They [the Times of India] made it up.&#8221; Musielak &#8220;never tested this passport against any KYC system,&#8221; adding that &#8220;I&#8217;m sure that it would not pass any proper KYC.&#8221;<\/p>\n\n\n\n<p>Instead, Musielak, who is an investor in the eID solution Authlogic, wrote in his <a href=\"https:\/\/x.com\/michuk\/status\/1907078798908248478\" rel=\"noreferrer noopener\" target=\"_blank\">original post<\/a> that it took him five minutes &#8220;to create a replica of my own passport that most automated KYC systems <strong>would likely accept <\/strong>without blinking.&#8221;<\/p>\n\n\n\n<p>&#8220;If someone is a pro, they could definitely produce something much better and maybe passable,&#8221; Musielak tells The Rage. &#8220;The only viable path forward is digitally verified identity, like eID wallets mandated by the EU,&#8221; Musielak originally posted. The Times of India could not be reached for a request for comment.<\/p>\n\n\n\n<p>There have however been other instances where AI-generated passports have passed KYC checks in the past. <a href=\"https:\/\/www.404media.co\/inside-the-underground-site-where-ai-neural-networks-churns-out-fake-ids-onlyfake\/\" rel=\"noreferrer noopener\" target=\"_blank\">According to<\/a> 404Media, the online service OnlyFake successfully creates counterfeit driver&#8217;s licenses and passports that the journalists used to bypass KYC checks on the cryptocurrency exchange OKX. Similarly, in 2022, researchers from the Chaos Computer Club <a href=\"https:\/\/www.ccc.de\/en\/updates\/2022\/chaos-computer-club-hackt-video-ident\" rel=\"noreferrer noopener\" target=\"_blank\">bypassed<\/a> the online verification solution Video-Ident to access sensitive health records.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"solving-kyc-fraud-with-the-erosion-of-privacy\">Solving KYC Fraud with the Erosion of Privacy<\/h2>\n\n\n\n<p>The creation of a digital identity, which would consolidate real time available information on a person in a single place, was first brought to widespread <a href=\"https:\/\/www3.weforum.org\/docs\/WEF_A_Blueprint_for_Digital_Identity.pdf\" rel=\"noreferrer noopener\" target=\"_blank\">public attention<\/a> by the World Economic Forum through its &#8220;Disruptive Innovation in Financial Services work&#8221; in 2016.<\/p>\n\n\n\n<p>According to <a href=\"https:\/\/news.mit.edu\/2024\/3-questions-proving-humanity-online-0816\" rel=\"noreferrer noopener\" target=\"_blank\">researchers<\/a> from MIT, OpenAI and Microsoft, we are facing &#8220;a &#8216;digital imposter&#8217; problem, where it is getting harder to distinguish between sophisticated AI and humans,&#8221; suggesting that &#8220;personhood credentials are one potential solution to that problem.&#8221;<\/p>\n\n\n\n<p>As the World Economic Forum <a href=\"https:\/\/www.weforum.org\/stories\/2025\/01\/how-ai-driven-fraud-challenges-the-global-economy-and-ways-to-combat-it\/\" rel=\"noreferrer noopener\" target=\"_blank\">writes<\/a>, &#8220;digital identity wallets, combined with robust biometric verification, are an effective way to combat AI-driven fraud&#8221; by incorporating &#8220;advanced technologies such as 1:1 facial verification, duplicate face check and <a href=\"https:\/\/www.authenticid.com\/glossary\/liveness-detection\/\" target=\"_blank\" rel=\"noreferrer noopener\">liveness detection<\/a>, making them far more resistant to deepfake-driven impersonation attempts and scaled attacks.&#8221;<\/p>\n\n\n\n<p>Sam Altman&#8217;s WorldCoin similarly <a href=\"https:\/\/www.identity.com\/worldcoins-orb-wants-to-prove-youre-human-but-at-what-cost\" rel=\"noreferrer noopener\" target=\"_blank\">markets itself<\/a> as a solution to identity fraud with the &#8220;biometric Orb,&#8221; in which the Orb scans your iris to verify that you are human, with the goal of providing a &#8220;universal proof of personhood.&#8221; WorldCoin has since faced lawsuits in over a dozen countries for its data collection practices.<\/p>\n\n\n\n<p>The US-based identity provider ID.me, which contracts with US Government agencies, such as the IRS, <a href=\"https:\/\/archive.ph\/uwJXb\" rel=\"noreferrer noopener\" target=\"_blank\">already collects<\/a> people&#8217;s phone location records and ulitizes Palantir to detect whether individuals are tied to organized crime. After a &#8220;torrid pandemic growth spurt,&#8221; ID.me had <a href=\"https:\/\/www.businessinsider.com\/id-me-customer-service-workers-hiring-secuirty-privacy-stress-data-2022-6\" rel=\"noreferrer noopener\" target=\"_blank\">come into critique<\/a> for its lax data protection practices, with &#8220;information like passports and social security numbers [&#8230;] posted in internal Slack channels, and some employees were hired and given access to confidential data without completed background checks. Some chattered about how easy it would be to steal users&#8217; information.&#8221;<\/p>\n\n\n\n<p>It is unclear how Governments would ensure that a state-issued digital identity document could not be fraudulently obtained. For ID.me, &#8220;identification systems did not detect bogus accounts created around the same day that included fake driver\u2019s licenses with photos of the suspect\u2019s face in a curly wig,&#8221; <a href=\"https:\/\/www.businessinsider.com\/id-me-customer-service-workers-hiring-secuirty-privacy-stress-data-2022-6\" rel=\"noreferrer noopener\" target=\"_blank\">according to<\/a> Business Insider.<\/p>\n\n\n\n<p>To combat such issuance fraud, some Governments currently rely on in-person verification. As the German journalist James Jackson explained in a <a href=\"https:\/\/x.com\/derjamesjackson\/status\/1981710915692302761\" rel=\"noreferrer noopener\" target=\"_blank\">post on X<\/a>, he &#8220;had to have three in person meetings at the citizen\u2019s office, including one to set up the password,&#8221; to obtain the German eID. It seems additionally unclear how Governments would stop the sale of digital IDs on the black market which could be used to trick verifiers in combination with AI-video software, as demonstrated by the CCC.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"on-track-to-be-tracked\">On Track to be Tracked<\/h2>\n\n\n\n<p>Through the COVID-19 pandemic, digital IDs first <a href=\"https:\/\/id4d.worldbank.org\/missionbillion\" rel=\"noreferrer noopener\" target=\"_blank\">gained momentum<\/a> to conjoin location tracking and vaccination status to &#8220;stop the spread,&#8221; and have since grown to collect a range of sensitive data on a person that greatly exceeds any information obtainable from a physical identity document.<\/p>\n\n\n\n<p>As the international think tank BBVA Research <a href=\"https:\/\/www.bbvaresearch.com\/wp-content\/uploads\/2018\/02\/Digital-Identity_the-current-state-of-affairs.pdf\" rel=\"noreferrer noopener\" target=\"_blank\">explains<\/a>, a &#8220;dynamic verification&#8221; approach &#8220;uses multiple sources (including, for instance, the user\u2019s mobile phone, his social media activity, geolocation, etc.),&#8221; noting that current trends are heading towards a mixture of both static and dynamic verification in digital IDs, focussing on &#8220;what the individual knows, what the individual has, what the individual looks like or how he behaves, and where the individual is.&#8221;<\/p>\n\n\n\n<p>In India, where Digital ID is already in place, the Adhaar system <a href=\"https:\/\/uidai.gov.in\/en\/my-aadhaar\/about-your-aadhaar.html\" rel=\"noreferrer noopener\" target=\"_blank\">collects<\/a> a person&#8217;s fingerprints, iris scans, and photograph, paired with demographic information, such as names, addresses, email addresses, and phone numbers \u2013 a system currently being <a href=\"https:\/\/www.theguardian.com\/world\/2025\/oct\/14\/india-id-system-divide-opinion\" rel=\"noreferrer noopener\" target=\"_blank\">eyed<\/a> by Prime Minister Keir Starmer as a model for a digital identity implementation in the UK.<\/p>\n\n\n\n<p>In Kenya, the collection of DNA samples, as well as a person&#8217;s voice waves and earlobe geometry is mandatory <a href=\"https:\/\/blog.mozilla.org\/netpolicy\/2019\/02\/08\/kenya-government-mandates-dna-linked-national-id-without-data-protection-law\" rel=\"noreferrer noopener\" target=\"_blank\">for the issuance of a digital ID<\/a>, while the EU&#8217;s digital identity wallet can <a href=\"https:\/\/ec.europa.eu\/digital-building-blocks\/sites\/spaces\/EUDIGITALIDENTITYWALLET\/pages\/694487811\/Benefits\" rel=\"noreferrer noopener\" target=\"_blank\">additionally hold<\/a> a person&#8217;s employment, education, social security, and health records.<\/p>\n\n\n\n<p>The US is currently laying out the path toward a digital identity with REAL ID, a 9\/11 era program born out of the <a href=\"https:\/\/www.congress.gov\/bill\/109th-congress\/house-bill\/418\/text\" rel=\"noreferrer noopener\" target=\"_blank\">Real ID Act<\/a>, established to &#8220;rapidly implement regulations for State driver&#8217;s license and identification document security standards, to prevent terrorists from abusing the asylum laws of the United States, to unify terrorism-related grounds for inadmissibility and removal.&#8221;<\/p>\n\n\n\n<p>REAL ID was enforced in May 2025 by the Department of Homeland Security, and is meant to eventually evolve into a singular digital identity document via the mobile drivers license. As the American Association of Motor Vehicle Administrators (AAMVA) <a href=\"https:\/\/docs.house.gov\/meetings\/HM\/HM07\/20231205\/116640\/HHRG-118-HM07-Wstate-GrossmanI-20231205.pdf?utm_source=ActiveCampaign&amp;utm_medium=email&amp;utm_content=Refuse+the+REAL+ID+in+2024&amp;utm_campaign=December+13%2C+2023+CCHF+eNews\" rel=\"noreferrer noopener\" target=\"_blank\">testified<\/a> before the House of Representatives Committee on Homeland Security in 2023, &#8220;AAMVA anticipates the [mobile Drivers License] mDL will eventually be used as a singular identity credential.&#8221;<\/p>\n\n\n\n<p>In August, Treasury <a href=\"https:\/\/www.therage.co\/treasury-digital-identity-defi\/\">asked the public for comments<\/a> on the implementation of digital IDs to combat illicit finance in non-custodial services, highlighting that the US Government is actively exploring the implementation of digital IDs.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>My post yesterday had a video where kids were using video game characters to pass the AI face check to bypass age restrictions. So along those lines, could this be a reason for citizens to accept digital IDs and a complete loss of privacy online? And pay close attention to how invasive some of the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6,7],"tags":[],"class_list":["post-14055","post","type-post","status-publish","format-standard","hentry","category-tech","category-world"],"blocksy_meta":[],"featured_image_src":null,"author_info":{"display_name":"Jason","author_link":"https:\/\/jasonsblog.ddns.net\/index.php\/author\/jturning\/"},"_links":{"self":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/14055","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/comments?post=14055"}],"version-history":[{"count":1,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/14055\/revisions"}],"predecessor-version":[{"id":14056,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/14055\/revisions\/14056"}],"wp:attachment":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/media?parent=14055"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/categories?post=14055"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/tags?post=14055"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}