VOOZH about

URL: https://thenewstack.io/theyre-among-us-malicious-bots-hide-using-nlp-and-ai/

⇱ They’re Among Us: Malicious Bots Hide Using NLP and AI - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2022-08-15 03:00:47
They’re Among Us: Malicious Bots Hide Using NLP and AI
contributed,sponsor-imperva,sponsored,sponsored-post-contributed,
Security

They’re Among Us: Malicious Bots Hide Using NLP and AI

Expect to see more bad bots adapting to human language, social and behavior patterns. For organizations, this will require a shift in defenses.
Aug 15th, 2022 3:00am by Oren Graiver
👁 Featued image for: They’re Among Us: Malicious Bots Hide Using NLP and AI
Feature image via Pixabay.
Imperva sponsored this post.

Can you tell the difference between a human and a bot online? While it sounds easy enough, technological advancements in artificial intelligence (AI), machine learning (ML), and natural language processing (NLP) are making this task increasingly complex.

Oren Graiver
Oren is a senior innovation manager at Imperva responsible for incubating new ideas and innovations. For more than 15 years, he's designed cybersecurity products that solve complex customer challenges. Oren helped build and grow products for technology companies across the globe as a product manager at Mavenir (formerly Comverse Technology, Inc.), Checkmarx, Check Point Software Technologies Ltd., and as a co-founder and chief product officer at Proximo Tech.

I analyze and research cybersecurity trends to predict and protect some of the world’s largest brands from sophisticated threats. Over the course of my career, I’ve seen a shift with more attacks carried out by bad bots — software applications that are programmed and controlled by bot operators to perform automated tasks with malicious intent.

Research from Imperva found that bad bots accounted for over a quarter of all internet traffic in 2021. They are used by a wide range of malicious operators including competitors who scrape websites for proprietary information and prices, scalpers who purchase entire inventories of limited-edition items, attackers looking to obtain sensitive data and more.

Most of these bad bots mask themselves by attempting to interact with applications similar to a legitimate user. In fact, increasingly sophisticated bots have the ability to mimic human behavior by cycling through random IPs, entering through anonymous proxies and changing identities.

Unfortunately, that means detecting malicious bad bot activity that abuses APIs and application business logic will get harder until defenses are equipped to identify these sophisticated threats.

Imperva helps organizations protect critical applications, APIs, and data, anywhere, at scale, and with the highest ROI. With an integrated approach combining edge, application security, and data security, Imperva protects companies through all stages of their digital journey.
Learn More
The latest from Imperva

How Bots Are Becoming More ‘Human’

Not all bots are bad, and there are many examples of good bots that provide beneficial services. Chatbots, for example, are ubiquitous and appear on nearly every type of website to assist with consumer-facing roles such as sales, customer service and relationship management.

Powered by advanced AI, many chatbots now recognize psychological, behavioral and social patterns to provide the end user with a more humanlike experience. Further, natural language processing, a machine learning technology that helps bots understand text, data and social patterns, enables automation to respond with adapted semantics so it conveys realistic human behavior.

3 Ways Bad Bots Are Committing Fraud 

While innovations in ML, AI, and NLP benefit our daily lives, bad bot operators could exploit these innovations for malicious purposes. Some examples include:

Pretexting

Pretexting is a type of social engineering technique that manipulates victims into divulging personal information. A bot operator could use NLP to train a bad bot to adapt to the social and behavioral patterns of a target to impersonate them and assume their identity.

The bot operator could then use the bad bot to communicate with the target’s friends or coworkers via email, social media or text to obtain sensitive information that could be used for other more nefarious attacks such as account takeover, identity theft or data leakage.

Distributed Denial of Service (DDoS)

In a DDoS attack, bad actors attempt to make a server or network resource unavailable to users.

Malicious operators looking to disrupt a business’s operations or knock it offline can train an army of bad bots with NLP to learn the language patterns of a business’s customers. This army of bots could then be used to flood an organization’s social media with complaints, overwhelm customer service phone lines or chat services, or slow down website performance leading to downtime.

Account Creation

In this type of online fraud, bad actors use bots to automate account creation to spam messages, amplify propaganda or abuse promotions.

Using NLP, bad actors can masquerade as legitimate user accounts to sabotage a brand or its competitors.

Protecting Applications and APIs from Humanlike Bots

Recognizing the difference between good and bad bots is essential in a bot prevention solution, but that job is becoming more challenging as bad bot behaviors mirror sophisticated human actions.

It is reasonable to predict that bad actors will continue to find new ways to use sophisticated NLP technologies to turn a profit and cause disruption. In the near future, we’ll see more bad bots interacting with humans to gain their trust — adapting to the language, social and behavior patterns of their targets.

For organizations, this will require a shift in defenses and for applications and APIs to be developed with bots in mind. Some proactive steps organizations can take to manage bot traffic include:

  • Implement CAPTCHA technology for traffic that comes from outdated browser versions.
  • Block IPs hosted on providers and proxy services such as Host Europe GMBH, Dedibox SAS, Digital Ocean, OVH SAS and Choopa, and LLC.
  • Review web traffic data for unexpected traffic spikes or increases in failed login attempts, as those could be signs of bad bot traffic.
  • Understand the ways your site can become a target. Does your site have ​​credit card forms, pricing information or exposed APIs? Those are all website functionalities that can be exploited by automated attacks.

In taking these proactive steps, organizations are well on their way to creating a successful bad bot management strategy that protects the customer experience, their brand reputation and the business’s bottom line.

Imperva helps organizations protect critical applications, APIs, and data, anywhere, at scale, and with the highest ROI. With an integrated approach combining edge, application security, and data security, Imperva protects companies through all stages of their digital journey.
Learn More
The latest from Imperva
TRENDING STORIES
Oren is a senior innovation manager at Imperva responsible for incubating new ideas and innovations. For more than 15 years, he's designed cybersecurity products that solve complex customer challenges. Oren helped build and grow products for technology companies across the...
Read more from Oren Graiver
Imperva sponsored this post.
SHARE THIS STORY
TRENDING STORIES
TNS owner Insight Partners is an investor in: Pragma, Checkmarx.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.