Fraudsters bypass login checkpoints post-verification—here's why identity must be monitored continuously, not just checked once.