Automated bot farms have become a central tool in modern information warfare, leveraging artificial intelligence to manipulate public opinion, influence elections, and erode trust in institutions. According to Thales, automated bot traffic accounted for 51% of all web traffic in 2024, marking the first time in a decade that bots have surpassed human activity online. These bots, often state-sponsored by countries such as Russia, China, and Iran, use sophisticated techniques to mimic human behavior, making them increasingly difficult to detect. AI-driven bots can generate content at a scale and speed unattainable by humans, flooding online platforms with misinformation and pushing authentic conversations to the margins. By creating the illusion of consensus, these bots can make fringe viewpoints appear mainstream, amplifying divisive narratives and undermining democratic debate. The phenomenon known as the 'liars dividend' emerges as people begin to distrust all online content, knowing that fakes and bots are pervasive. In one notable case, 45 bot-like accounts on X posted over 440,000 times before a UK election, reaching more than 3 billion views, and continued their activity after the vote. Experiments have shown that even when users are asked to identify bots, they are often unsuccessful, with a 58% error rate observed in political discussions on Mastodon. The evolution of bots is further accelerated by AI, which enables them to mimic human actions such as typing, scrolling, and pausing, making detection even more challenging for security teams. Generative AI tools have lowered the barrier to entry for attackers, allowing even those with limited technical skills to launch large-scale credential stuffing campaigns, scrape websites, or orchestrate scams. The scale and sophistication of these operations mean that both brute-force and stealth attacks are on the rise, with bots capable of blending seamlessly into normal traffic. The impact of these campaigns is global, with Russia leading efforts to weaken democratic processes in the US and Europe through targeted disinformation. As bots become more prevalent and harder to distinguish from real users, the challenge for cybersecurity professionals intensifies, requiring new strategies and technologies to detect and mitigate automated threats. The growing reliance on AI in bot operations signals a paradigm shift in the threat landscape, demanding heightened vigilance and adaptive defenses from organizations and governments alike. The erosion of trust in digital information poses a significant risk to democratic institutions and public discourse, making the fight against AI-driven disinformation a top priority for the cybersecurity community. The combination of technical sophistication, global reach, and psychological impact underscores the urgent need for comprehensive countermeasures. As the arms race between bot operators and defenders escalates, the future of online trust and security hangs in the balance.

Track how attackers are adapting to this technology.
1 event from the most recent confirmed update back to the earliest known activity.
Initial story creation
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.