ETFOptimize | High-performance ETF-based Investment Strategies

Quantitative strategies, Wall Street-caliber research, and insightful market analysis since 1998.


ETFOptimize | HOME
Close Window

2022 Holiday Bad Bot Research: 50% Increase in Bad Bot Traffic, 6x Increase in Gift Card Fraud, and 3x Spike in Fake Account Creation

Kasada Shares Key Insights on Automated Threats Exploiting Retailers at Most Critical Time of Year

Kasada, provider of the most effective and easiest way to defend against advanced bot attacks, today released new research about four major cybersecurity threats impacting the holiday shopping season: gift card fraud, fake account creation, Freebie Bots, and scraping attacks.

Key Highlights Include:

  • 50% increase in bad bot traffic
  • 6x increase in automated online gift card lookup attempts
  • 3x spike in fake account creation the week before Black Friday
  • $1.1M of products purchased by Freebie Bots for $134, within one community
  • 43% surge in web and API scraping attacks
  • 49% of holiday bot attacks originate from the United States

Kasada observed a 50% increase in bad bot activity during Black Friday week (the five days from Thanksgiving to Cyber Monday). Bot operators frequently used customized open-source development tools, headless browsers, and new Solver Services to conduct their attacks at scale.

The full 2022 Holiday Bad Bot Report for this year’s shopping season is available here.

“Retailers have to deal with bot attacks every day, but the increased activity we’ve seen during the holiday shopping season truly highlights just how extreme the problem is,” said Sam Crowther, CEO and founder of Kasada. “As they say, follow the money. If there is an opportunity for profit, bots will be there, looking for every way possible to exploit a retailer’s business. It is critically important for retailers to employ solutions that can adapt quickly to the increasing sophistication of modern bots.”

Gift Cards Grow in Popularity with Consumers and Fraudsters

According to the National Retail Federation (NRF), holiday gift card spending is expected to reach $28.6B this year. Since gift cards have fewer protections than other payment methods, fraudsters favor them, as they can anonymously obtain quick cash through irreversible transactions, or by reselling stolen cards.

Kasada’s threat intelligence saw a 6x spike in automated gift card lookups this holiday shopping season, a key indicator that fraudsters are using bots to identify and steal gift card balances. Recipients may be in for a surprise when their gift card already has a balance of zero, before they get to use it.

Increase in Fake Account Creation Leads to Increase in Fraud

Kasada’s research found large numbers of fake user accounts being created; there was a 3x increase the week before Black Friday and a 40% increase from Black Friday to Cyber Monday. Fraudsters generally create fake accounts in the run-up to Black Friday so they have well-established aged accounts that blend in with legitimate customer accounts.

During the holiday season, retailers run promotions that offer coupons and goods as incentives for new accounts. The 40% increase in account creation on Cyber Monday reflected bot-driven efforts to obtain and abuse as many promotions as possible.

Freebie Bots on the Rise, Purchasing Mispriced Goods at Massive Discounts

Freebie Bots, which scan hundreds of retailer sites for mispriced items and purchase them in mass quantities, continue to surge this holiday season.

Within one community, Freebie Bots successfully purchased over 40,000 mispriced products during the Thanksgiving shopping weekend, totaling over $1.1M in retail value – for just $134. Freebie Bots were used to rapidly purchase erroneously priced items such as LED strips, dog collars, and dinosaur toy hand puppets that could then be resold for a large profit.

Scraping Attacks Increase, Slowing Site Performance and Enabling Fraud

Kasada found a 43% increase in scraping attacks, with more than 3 million scraping requests made each day, in the days leading up to Black Friday.

Scraping bots capture real-time data that is used by competitors to undercut pricing. In addition, fraudsters use scraping as the basis for counterfeit websites that trick unsuspecting consumers into making a fraudulent purchase or providing their credentials. In its 2022 State of Bot Mitigation Report, Kasada found that nearly 40% of companies reported a 10% or greater loss of revenue due to web and API scraping.

Almost Half of Holiday Bot Attacks Originate from the United States

Over the course of the holiday shopping season to date, Kasada found that 49% of all bot-driven attacks originated from the United States. The United Kingdom, Canada, Australia and South Korea rounded out the top five.

To download the full Kasada 2022 Holiday Bad Bot Report, click here.

About Kasada

Kasada stops the bad bots that other solutions cannot. Its modern, proactive solution adapts as fast as attackers do, making automated attacks unviable. Unlike legacy rule-based systems, Kasada is easy-to-use, offering long-lasting protection from bot attacks across web, mobile and API channels. Its invisible defenses eliminate the need for ineffective CAPTCHAs, ensuring a frictionless user experience. Kasada is based in New York and Sydney, with offices in Melbourne, Boston, San Francisco and London. For more information, please visit www.kasada.io and follow on Twitter, LinkedIn, and Facebook.

Contacts

Stock Quote API & Stock News API supplied by www.cloudquote.io
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the following
Privacy Policy and Terms Of Service.


 

IntelligentValue Home
Close Window

DISCLAIMER

All content herein is issued solely for informational purposes and is not to be construed as an offer to sell or the solicitation of an offer to buy, nor should it be interpreted as a recommendation to buy, hold or sell (short or otherwise) any security.  All opinions, analyses, and information included herein are based on sources believed to be reliable, but no representation or warranty of any kind, expressed or implied, is made including but not limited to any representation or warranty concerning accuracy, completeness, correctness, timeliness or appropriateness. We undertake no obligation to update such opinions, analysis or information. You should independently verify all information contained on this website. Some information is based on analysis of past performance or hypothetical performance results, which have inherent limitations. We make no representation that any particular equity or strategy will or is likely to achieve profits or losses similar to those shown. Shareholders, employees, writers, contractors, and affiliates associated with ETFOptimize.com may have ownership positions in the securities that are mentioned. If you are not sure if ETFs, algorithmic investing, or a particular investment is right for you, you are urged to consult with a Registered Investment Advisor (RIA). Neither this website nor anyone associated with producing its content are Registered Investment Advisors, and no attempt is made herein to substitute for personalized, professional investment advice. Neither ETFOptimize.com, Global Alpha Investments, Inc., nor its employees, service providers, associates, or affiliates are responsible for any investment losses you may incur as a result of using the information provided herein. Remember that past investment returns may not be indicative of future returns.

Copyright © 1998-2017 ETFOptimize.com, a publication of Optimized Investments, Inc. All rights reserved.