惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

T
Tailwind CSS Blog
S
Secure Thoughts
D
Darknet – Hacking Tools, Hacker News & Cyber Security
T
Tor Project blog
T
Tenable Blog
Know Your Adversary
Know Your Adversary
Webroot Blog
Webroot Blog
V
Vulnerabilities – Threatpost
WordPress大学
WordPress大学
S
Security @ Cisco Blogs
J
Java Code Geeks
S
SegmentFault 最新的问题
A
Arctic Wolf
Simon Willison's Weblog
Simon Willison's Weblog
T
Threatpost
Forbes - Security
Forbes - Security
爱范儿
爱范儿
T
The Blog of Author Tim Ferriss
S
Securelist
MongoDB | Blog
MongoDB | Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
月光博客
月光博客
Blog — PlanetScale
Blog — PlanetScale
博客园 - 【当耐特】
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
SecWiki News
SecWiki News
aimingoo的专栏
aimingoo的专栏
腾讯CDC
U
Unit 42
Google DeepMind News
Google DeepMind News
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
大猫的无限游戏
大猫的无限游戏
Latest news
Latest news
I
InfoQ
V2EX - 技术
V2EX - 技术
The Cloudflare Blog
V
V2EX
The Register - Security
The Register - Security
博客园 - Franky
Security Archives - TechRepublic
Security Archives - TechRepublic
Security Latest
Security Latest
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
云风的 BLOG
云风的 BLOG
Jina AI
Jina AI
Microsoft Security Blog
Microsoft Security Blog
小众软件
小众软件
N
Netflix TechBlog - Medium
量子位
M
MIT News - Artificial intelligence

DEV Community

Authentication Security Deep Dive: From Brute Force to Salted Hashing (With Java Examples) Why AI Systems Don’t Fail — They Drift Spilling beans for how i learn for exam😁"Reinforcement Learning Cheat Sheet" I Replaced Chrome with Safari for AI Browser Automation. Here's What Broke (and What Finally Worked) How Python Borrows Other People's Work The $40 Architecture: Processing 1 Billion API Requests with 99.99% Uptime Vibe Coding: A Workflow Guide (From Zero to SaaS) Most webhook security guides protect the wrong side. The scary part is delivery. Headless CMS for TanStack Start: Build a Blog with Cosmic EU Age Verification App "Hacked in 2 Minutes" — What Actually Happened Comfy Cloud’s delete function does not actually remove files Running AI Models on GPU Cloud Servers: A Beginner Guide Event-driven media intelligence with AWS Step Functions and Bedrock I scored 500 AI prompts across 8 quality dimensions — here's what broke How to Call Google Gemini API from Next.js (Free Tier, No Backend Needed) The Portal Protocol: Reclaiming Human Connection in the Age of AI How to Fix Your Team's Scattered Knowledge Problem With a Self-Hosted Forum Intro to tc Cloud Functors: A Graph-First Mental Model for the Modern Cloud Designing Multi-Tenant Backends With Both Ownership and Team Access I Built a Neumorphic CSS Library with 77+ Components — Here's What I Learned PostgreSQL Performance Optimization: Why Connection Pooling Is Critical at Scale Cómo construí un SaaS multi-rubro para gestionar expensas en Argentina con FastAPI + Vue 3 🚀 I Built an Ethical Hacking Scanner Tool – Open Source Project I Replaced /usage and /context in Claude Code With a Single Statusline A Pythonic Way to Handle Emails (IMAP/SMTP) with Auto-Discovery and AI-Ready Design I Collected 8.9 Million Polymarket Price Points — Here's What I Found About How Markets Really Move EcoTrack AI — Carbon Footprint Tracker & Dashboard Everyone's Using AI. No One Agrees How. 5 self-hosted ebook managers worth trying in 2026 Building Your First AI Agent with LangChain: From Chatbot to Autonomous Assistant Common SOC 2 Failures (Real World) Stop Vibe-Checking Your AI App: A Practical Guide to Evals How to Use SonarQube and SonarScanner Locally to Level Up Your Code Quality Your Next To-Do App Is Dead — I Replaced Mine with an OpenClaw AI Sign a Nostr event in 60 lines of Python using coincurve — no nostr-sdk, no nbxplorer, no rust toolchain ITGC Audit Explained Like You’re in Big 4 Patch Tuesday abril 2026: Microsoft parcha 163 vulnerabilidades y un zero-day en SharePoint Stop scraping everything: a better way to track competitor price changes Listing on MCPize + the Official MCP Registry while routing payments OUTSIDE the marketplace — how I kept 100% of my x402 revenue Building an AI-Powered Risk Intelligence System Using Serverless Architecture Why We Ripped Function Overloading Out of Our AI Toolchain Testing AI-Generated Code: How to Actually Know If It Works SaaS Churn Is Killing Your Business. Here Is What to Do About It (Without a Support Team) The Speed of AI Is No Longer Linear - And Self-Improving Models Are Why How to Implement RBAC for MCP Tools: A Practical Guide for Engineering Teams From Standard Quote to Persuasive Proposal: AI Automation for Arborists I built a CLI that scaffolds complete multi-tenant SaaS apps Axios CVE-2025–62718: The Silent SSRF Bug That Could Be Hiding in Your Node.js App Right Now The dashboard that ended our friendship Data Pipelines Explained Simply (and How to Build Them with Python) The Hidden Cost of AI Systems Nobody Talks About. undefined vs undeclared, and how typeof behaves Switching from file-based jobs to NATS/Kafka in Rust without changing code io_uring Adventures: Rust Servers That Love Syscalls Why Agentic AI is Killing the Traditional Database The POUR principles of web accessibility for developers and designers Quantum Neural Network 3D — A Deep Dive into Interactive WebGL Visualization How To Install Caveman In Codex On macOS And Windows Automation Pipeline Reliability: Why Your Workflow Breaks When Nobody Is Watching I Built an 'Open World' AI Coding Agent — It Works From ANY Folder From Freelancing to Product: A Tech Service Company's SaaS Transformation China's AI Giants: Adding Tencent Hunyuan & ByteDance Doubao to AI University (74 Providers) On the Vibe Coders and Their Lies clerk: Auto-Summarize Your Claude Code Sessions AI Weekly — 2026/04/10–04/17 | The Model Lockdown Is Here, but the Toolchain Is the Real Battleground AI 週報 — 2026/04/10–2026/04/17 模型封鎖潮來了,但工具鏈才是真戰場 Maybe this is how Open-Source apps are born... 🚀 Fine-Tune LLMs with LoRA and QLoRA: 2026 Guide tRPC v11 + Next.js App Router: End-to-End Type Safety Without the Boilerplate ShadCN UI in 2026: Why I Stopped Installing Component Libraries and Started Owning My Components SaaS Billing in React Server Components: Stripe + Supabase Without a Single `useEffect` Join our DEV Weekend Challenge — $1,000 in Prizes Across TEN winners! Submissions Due April 20 at 6:59 AM UTC. Implementing FSRS Spaced Repetition in Flutter + Supabase — Adding Memory Science to an AI Learning App "I Texted My Localhost From the Train — Claude Code Fixed the Bug Before I Got Home" I Built a Sales Prep AI and It Went Deeper Than Expected Design to Code #2: One JSON, Eleven Outputs Solving the 100M-Row Problem: A Summary Table Pattern for High-Volume Push Notification Logs Flutter Web With Wasm: What Actually Changes For Developers I Built 50 Royalty-Free Soundtracks for My Side Project in a Weekend Using AI Music Generation The Vibe Coding Security Checklist: 7 Things to Check Before You Ship Stop Letting Googlebot Guess Fix Your React App's SEO Right Desconstruindo o Streaming do LinkedIn: Como Criar um Engine de Extração de Vídeo de Alta Performance com HLS e FFmpeg (EDA Part-1) EDA (Exploratory Data Analysis) Explained With Real Life — Why Looking at Your Data Is the Most Important Step in Machine Learning Brand Relationship Management at Scale: Our 4-Touch Outreach System for 200+ Brands Why String.fromEnvironment() Might Return an Empty String in Dart JGuardrails 1.0.0 — Hardening Java LLM Apps Against Jailbreaks, Toxicity, and Prompt Injection Plan and Schedule a Full Week of Threads Content From One Claude Conversation Coding Cat Oran Ep3, Five Tables Changed Everything Updated: BFF Pattern I'm done watching freelancers get buried by 200 proposals. So I'm building the alternative. This is my first post BFS Algorithm in Java Step by Step Tutorial with Examples Tracking LLM Pricing Monthly: An Open Dataset for 22 AI Models How We Measure Content ROI on a Comparison Site: Revenue Attribution Without Perfect Data Introducing Nova AI Ops: The AI-Native Operating System for SRE Teams I built a free desktop video downloader for Windows — Grabbit How Talkie OCR Helps Vision-Impaired & Dyslexic Users Read the World Around Them VRCFaceTracking安装和iPhone面捕配置教程,有bug Even CrowdStrike Can't See Your Agents The Automation Gold Rush: What n8n Workflows and Claude Are Opening Up for Developers Right Now
LLMs broke ad fraud detection. Here's what that means.
Yisrael Gott · 2026-05-10 · via DEV Community

Every digital ad bought today is paid for under the assumption that something on the other end is human. That assumption used to be defensible. It isn't anymore.

Ad fraud is projected to cost brands $172 billion globally by 2028, up from roughly $84 billion in 2023 (Statista, citing Juniper Research). About 22% of global digital ad spend is currently lost to fraud. The Imperva 2024 Bad Bot Report found that 49.6% of all web traffic is non-human — 32% malicious bots, the rest benign automation. The ANA's programmatic transparency study found that $20 billion of the $88 billion programmatic ecosystem is waste, much of it Made-For-Ads sites that detection vendors have not been able to shut down.

Those numbers don't reflect a detection failure. They reflect a structural one. The detection layer has been losing for years. LLMs are about to make the loss permanent.

How detection currently works
The major fraud-prevention vendors — DoubleVerify, Integral Ad Science, Human Security, Pixalate — operate in two stages. Pre-bid filtering blocks known bad IPs, suspicious domains, and suspicious traffic patterns before an ad serves. Post-bid analysis measures what got through and refunds advertisers for invalid traffic.

This is real work. It's not nothing. IAS has published data showing campaigns running with their fraud protection at 0.7% Invalid Traffic, versus 10.9% for unprotected campaigns. That's a 15x improvement. Detection vendors aren't selling snake oil — they're selling a real service that genuinely reduces fraud at the margin.

The issue isn't that detection doesn't work. The issue is what detection has been built on.

The signal layers that detection relies on
Strip away the marketing language and detection comes down to recognizing patterns of bad behavior:

IP reputation. User agent strings. Click cadence and inter-click timing. Dwell time and scroll patterns. Device fingerprints (font lists, canvas hashes, GPU info, plugin sets). Behavioral baselines built from session data. Geographic plausibility. Pixel-level mouse movement and entropy.

Each of these layers was designed to catch a category of bot — early scripted bots, then headless browsers, then more sophisticated automation frameworks. Detection vendors have done remarkable engineering work to keep these layers tuned as fraudsters got more sophisticated.

But every one of those signals can now be generated by an LLM-driven agent at trivial cost.

Why LLMs structurally break this
An LLM agent operating with a real residential IP, a real consumer browser, and a behavioral model trained on actual human session data does not look like a bot at any signal layer detection currently uses. The IP is real. The user agent is real. The click cadence matches a behavioral baseline because the agent is mimicking one. Dwell times are realistic because the model can read content and pause appropriately. Scroll patterns are smooth because they're synthesized from real scroll data.

The economics matter here. Generating sophisticated bot traffic in 2018 was an arms race because it required real engineering — botnets, proxy rotation, fingerprint spoofing toolchains. Each round of detection improvement forced another round of fraudster investment. That arms race was expensive enough on the offense side to keep some equilibrium.

LLMs collapsed the cost of the offense side by orders of magnitude. An agent that runs a synthetic browsing session, reads an ad, generates a plausible click pattern, and even passes basic post-click engagement signals can now be deployed for cents per session. The defense costs the same as it always did.

DoubleVerify's 2024 Global Insights Report found that 54% of advertisers say generative AI has degraded media quality. They report a 19% year-over-year increase in Made-For-Ads impression volume in 2023. The trajectory is not subtle.

The arms race was always asymmetric — offense moves first, defense reacts. LLMs make the asymmetry permanent.

What this means for advertisers
Detection vendors will keep selling defense, and the defense will keep partially working. The 0.7% vs 10.9% IAS data is real. Detection is meaningful at the margin and will remain so.

But the structural ceiling on detection is real and getting lower. The honest implication is that advertisers who continue to pay-per-impression are increasingly subsidizing AI-vs-AI loops where neither side benefits from the underlying message reaching anyone who would have cared about it. The brand pays for impressions. A bot consumes them. A different bot reports them. A detection vendor catches some fraction. The remainder is paid for and disappears.

That's not a problem detection can solve. It's a problem with the unit of payment.

What might work instead
The interesting question is what happens when the unit of payment changes from "impression" or "click" to "verified human attention with proof of comprehension."

A few existing models gesture at this. Paid attention systems like Brave Rewards pay consumers to view ads, but without comprehension verification — the unit of value is still "exposure," which AI users can fake. Verified panel businesses like Wynter and NewtonX run paid B2B research panels that verify identity and pay for structured feedback, but they sell research, not advertising — the buyer is doing pre-campaign message testing, not running the actual ad campaign through the panel.

The space that doesn't yet exist at scale is verified-engagement advertising — where a brand pays only when a real, identity-verified human reads their content and proves they understood it. The unit of value becomes proof of comprehension, not exposure or claimed attention.

I'm building one version of this at Nexertise. The platform pays senior professionals to read short B2B content (3-5 minutes), pass a comprehension check, and submit structured feedback. Identity is verified at signup via Stripe KYC. Brands only pay when the comprehension check passes. We're pre-launch and recruiting senior engineers as founding members for the May 21st pilot — if the framing of this essay resonates and you're an engineer at a top tech company, the signup page is at https://www.nexertise.com/founding.

That's not the only possible structural answer. It's the one I find most defensible against the failure mode this essay describes.

What I don't know
The structural approach has its own failure modes. The most obvious failure mode: a user runs an LLM on the content and pastes the answer to the comprehension check. The comprehension check alone can't stop this — and the platform isn't built to assume it can. The defense is structural rather than puzzle-based.

Content is rendered to canvas, not DOM, so it can't be trivially fed to an LLM without OCR overhead. Invisible prompt-injection canaries flag any session that ingests the page through an LLM. Paste detection and keystroke dynamics catch out-of-distribution input patterns. Focus telemetry registers tab-switches to ChatGPT or similar tools. Payments sit in escrow until reviewed, with risk scores sorted highest-first. Identity is bound at signup via Stripe KYC; three strikes against a verified identity ends the account permanently, and the same person can't re-verify.

Each layer alone is defeatable. Defeating all of them at once, repeatedly, while staying under the strike threshold, is the specific economic problem the architecture is designed to make unprofitable. Whether it succeeds at scale is an empirical question the pilot will start to answer.

Supply also has to scale faster than demand, because audiences deplete per-advertiser. And the comprehension-check itself has to be designed carefully — too easy and it's gameable; too hard and you scare off legitimate readers.

I'm not certain I have the right answer. I am certain the question is unavoidable.

Detection-based defense in advertising was built for a world where the cost of generating realistic human-looking engagement was high enough to maintain equilibrium. That world ended sometime in 2023 and we haven't fully absorbed the implications yet.

— Yisrael Gottlieb. 20-year-old solo founder. Built Nexertise with Claude Code over 5 months. Just applied to YC. yisrael@nexertise.com