Published October 29, 2025 | Version v3

Digital Impersonation Risk During OnlyFans Account Creation: Multiplicative Security Controls and Exponential Attack Complexity (version 2)

Authors/Creators

Description

The article analyzes the digital impersonation risks during OnlyFans account creation, focusing on how the platform’s multi-layered verification system leverages multiplicative security to exponentially increase attack complexity. OnlyFans, handling billions in transactions and over 2 million creators, uses a sequential, independent set of security controls: document verification, biometric verification, banking verification, and age verification. Each layer must be passed in sequence, and bypassing one does not aid in bypassing others, resulting in a multiplicative reduction in the probability of successful fraud.

The mathematical model shows that if each control has a bypass probability (e.g., 10%), the overall success rate for an attacker drops exponentially as more controls are added (e.g., 0.1% for three controls at 10% each). Attack difficulty, measured as the inverse of success probability, grows exponentially with each added layer.

The article provides scenario analyses for attackers of varying sophistication, estimating aggregate bypass rates from 0.003% (unsophisticated) to 4.5% (worst-case with stolen documents and compromised banking). Banking verification is highlighted as the most critical layer, providing a significant security multiplier due to regulatory requirements and independent verification.

Empirical evidence supports the model: despite a 244% increase in digital document fraud and the rise of deepfakes, there are no documented cases of successful verification bypass on OnlyFans. Attackers instead prefer phishing, account takeover, or buying verified accounts.

Files

Digital_Impersonation_OnlyFans_Risk_Integrated_Analysis_Version_2.pdf

Files (393.2 kB)