2025ๅนด06ๆœˆ03ๆ—ฅ 5m read

Cato CTRLโ„ข่„…ๅจใƒชใ‚ตใƒผใƒ๏ผšๅฝ้€ ใƒ‘ใ‚นใƒใƒผใƒˆใฎไฝœๆˆใ‚’ๅฏ่ƒฝใซใ™ใ‚‹OpenAIใฎChatGPT็”ปๅƒ็”Ÿๆˆใƒ„ใƒผใƒซย 

Etay Maor
Etay Maor

Executive Summaryย 

On March 25, OpenAI introduced image generation for ChatGPT-4o and ChatGPT-4o mini. On March 31, it was announced that the tool was available for free to all users. Since then, users have quickly discovered that ChatGPTโ€™s image generator can be manipulated to create fake receipts and forge other documents.ย ย 

As noted in the 2025 Cato CTRL Threat Report, the emergence of generative AI (GenAI) tools like ChatGPT is democratizing cybercrime and creating a major shift in the threat landscapeโ€”the rise of the โ€œzero-knowledge threat actor.โ€ At Cato CTRL, we have discovered that fake identity documents like passports can be created in minutes with ChatGPTโ€™s image generator. No jailbreak is required. Just a few prompts.ย ย 

Below is a demonstration of how ChatGPTโ€™s image generator can enable the creation of a fake passport.ย ย 

Organizations must update their fraud detection mechanisms, not just for traditional phishing and malware, but for document-based attacks as well.ย 

Technical Overviewย 

The Evolution of Passport Forgery: Then vs. Nowย 

For decades, cybercriminals have engaged in the creation and distribution of fake passports. In the early 2010s, fake passports were commonly sold on dark web marketplaces and underground forums as shown in Figure 1.ย ย 

Figure 1. Example of a fake passport being offered on the dark web

Accessing these resources required specific technical knowledge and connections to underground networks. The creators of these documents were highly skilled with access to tools like Adobe Photoshop.ย ย 

Fast-forward to today, and the game has drastically changed. AI-generated images have simplified forgery to the point where it no longer requires specialized skills or access to specialized tools. What once demanded technical acumen and illegal materials can now be replicated with simple prompts in AI platformsโ€”like ChatGPT. Cybercriminals can now transform ChatGPTโ€™s image generator (originally intended for creative purposes like creating cartoon avatars) into a tool to enable fraud.ย 

A striking example is the use of ChatGPTโ€™s image generator to forge passports. What used to take hours to create can now be completed in minutes.ย ย 

2025 Cato CTRLโ„ข Threat Report | Download the report

Using ChatGPTโ€™s Image Generator to Forge Passportsย 

When analyzing ChatGPTโ€™s image generator, an alarming case emerged when uploading a scanned passport and requesting that changes be made. Initially, ChatGPT refused to alter the image due to privacy and legal concerns. But by slightly reframing the requestโ€”claiming it was a business card styled to look like a passportโ€”it bypassed those restrictions. ChatGPT not only changed the name but swapped out the photo as well. The result was a convincingly altered passport, complete with image overlays and realistic stamp placements.ย ย 

Figures 2-4 show the process for easily forging a passport. Please note that personal information has been obscured in this demonstration.ย ย 

Figure 2. Uploading my passport to ChatGPTโ€™s image generator

Figure 3. Asking ChatGPT to make changes to my passportย 

Figure 4. ChatGPT creates a fake passport of my Cato CTRL colleague (Vitaly Simonovich)

All of this, remarkably, was done in minutes using basic prompts. No code. No Photoshop. No underground know-how.ย 

Zero-Knowledge Threat Actors and the Future of Identity Fraudย 

Traditionally, fake identity documents required some level of expertise or access to illicit networks. You needed to know how to manipulate images, mimic handwriting, or purchase services on the dark web. Now, none of that is necessary. With a few carefully crafted prompts, a novice attacker can generate fake identity documents using AI platforms.ย 

This democratizes fraud for zero-knowledge threat actors. A person with no background in cybercrime can execute sophisticated scams. With fake credentials, a zero-knowledge threat actor could achieve the following:ย ย 

  • New account fraud: Open bank accounts, apply for credit cards, or sign up for online services under false identities.ย 
  • Account takeover fraud: Call mobile carriers or banks to gain control of another personโ€™s accountโ€”SIM swapping being a prime example.ย 
  • Medical and insurance fraud: Alter prescriptions, medical letters, or insurance claims to enable illicit drug access or fake injury claims.ย 
  • Legal and financial manipulation: Alter contracts, employment letters, or pay stubs to secure loans, manipulate court proceedings, or commit tax fraud.ย 

Think about what this means for fraud detection and prevention. The threat isnโ€™t just how easy it is to make these fake identity documents, but how convincing theyโ€™ve become. AI can now mimic not just the look but the texture of handwriting, the irregularities of ink, and even the graphical details that make identity documents look official.ย 

Whatโ€™s worse is the rapid development cycle. As AI platforms continue to improve and image generators become more advanced, the bar for realistic forgery drops even further.ย 

Conclusionย 

Weโ€™ve entered a new chapter in cybercrime, where GenAI tools empower zero-knowledge threat actors to commit high-quality fraud. Organizations must update their fraud detection mechanisms, not just for traditional phishing and malware, but for document-based attacks as well.ย 

This isn’t just a tech problem. Itโ€™s a human problem. Education, multi-layered verification, and AI fraud prevention strategies are now essential. As cybercriminals evolve, so must we.ย 

Related Topics

Etay Maor

Etay Maor

Vice President of Threat Intelligence

Cato Networksใฎใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃๆˆฆ็•ฅๆ‹…ๅฝ“ใ‚ทใƒ‹ใ‚ขใƒ‡ใ‚ฃใƒฌใ‚ฏใ‚ฟใƒผใงใ‚ใ‚Šใ€ๆฅญ็•Œใงใฏๆœ‰ๅใชใ‚ตใ‚คใƒใƒผใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃ็ ”็ฉถ่€…ใจใ—ใฆ็Ÿฅใ‚‰ใ‚Œใฆใ„ใพใ™ใ€‚ไปฅๅ‰ใฏIntSightsใงๆœ€้ซ˜ใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃ่ฒฌไปป่€…ใ‚’ๅ‹™ใ‚ใ€ๆˆฆ็•ฅ็š„ใ‚ตใ‚คใƒใƒผใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃ็ ”็ฉถใจใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃใ‚ตใƒผใƒ“ใ‚นใ‚’ๆŒ‡ๆฎใ—ใฆใใŸ็ตŒ้จ“ใŒใ‚ใ‚Šใพใ™ใ€‚ใใฎใปใ‹IBMใงใ‚ทใƒ‹ใ‚ขใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃใฎๅฝน่ทใ‚’ๆญดไปปใ—ใ€ไพตๅฎณๅฏพๅฟœใƒˆใƒฌใƒผใƒ‹ใƒณใ‚ฐใจใ‚ปใ‚ญใƒฅใƒชใƒ†ใ‚ฃใƒชใ‚ตใƒผใƒ้ƒจ้–€ใ‚’ๅ‰ต่จญใƒปๆŒ‡ๆฎใ€ใ•ใ‚‰ใซRSA SecurityใฎCyber Threats Research Labsใงใฏใƒžใƒซใ‚ฆใ‚งใ‚ขใƒชใ‚ตใƒผใƒใจใ‚คใƒณใƒ†ใƒชใ‚ธใ‚งใƒณใ‚นใƒปใƒใƒผใƒ ใ‚’็ตฑๆ‹ฌใ—ใพใ—ใŸใ€‚ใƒœใ‚นใƒˆใƒณใ‚ซใƒฌใƒƒใ‚ธใฎ้žๅธธๅ‹คๆ•™ๆŽˆใงใ‚ใ‚Šใ€RSAใ‚ซใƒณใƒ•ใ‚กใƒฌใƒณใ‚นใจQuBitsใ‚ซใƒณใƒ•ใ‚กใƒฌใƒณใ‚นใฎๆผ”้กŒๅ‹Ÿ้›†ๅง”ๅ“กไผš๏ผˆCFP๏ผ‰ใฎไธ€ๅ“กใงใ‚‚ใ‚ใ‚Šใพใ™ใ€‚ใ‚ณใƒณใƒ”ใƒฅใƒผใ‚ฟใƒผใ‚ตใ‚คใ‚จใƒณใ‚นใฎๅญฆๅฃซๅทใ€ใƒ†ใƒญๅฏพ็ญ–ใจใ‚ตใ‚คใƒใƒผใƒ†ใƒญใฎไฟฎๅฃซๅทใ‚’ๅ–ๅพ—ใ—ใฆใ„ใพใ™ใ€‚

Read More