HUMAN Uncovers Pushpaganda: AI-Driven Ad Fraud and Scareware Threat

  • HUMAN's Satori researchers identified a novel ad fraud and scareware threat called Pushpaganda, which generated invalid organic traffic from real mobile devices via deceptive push notifications.
  • At its peak, the scheme involved 113 domains and approximately 240 million bid requests in a single week, initially targeting users in India before expanding to Australia, the U.S., and other regions.
  • Threat actors exploited Google Discover feeds using advanced SEO techniques to inject AI-generated deceptive news stories, luring users into enabling push notifications that delivered scareware and financial scams.
  • Google confirmed it had already rolled out a fix for the issue prior to HUMAN's report.

HUMAN's discovery of Pushpaganda highlights the escalating sophistication of ad fraud schemes, leveraging AI to manipulate trusted digital surfaces. This incident underscores the critical need for real-time threat intelligence and collaborative defenses as platforms and advertisers navigate an increasingly complex digital trust landscape.

Threat Evolution
How threat actors will adapt Pushpaganda tactics to evade detection and continue exploiting user trust through AI-generated content.
Platform Response
The pace at which Google and other platforms can implement robust defenses against similar ad fraud schemes targeting personalized content feeds.
Industry Collaboration
Whether HUMAN's threat intelligence sharing with partners like Google will set a precedent for broader industry cooperation in combating AI-driven digital threats.