Monday, June 15, 2026

Security Boulevard Logo

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Creators Network
    • Latest Posts
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming Webinars
    • Calendar View
    • On-Demand Webinars
  • Events
    • Upcoming Events
    • On-Demand Events
  • Sponsored Content
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
    • Techstrong.tv Podcast
    • TechstrongTV - Twitch
  • Library
  • Related Sites
    • Techstrong Group
    • Cloud Native Now
    • DevOps.com
    • Security Boulevard
    • Techstrong Research
    • Techstrong TV
    • Techstrong.tv Podcast
    • Techstrong.tv - Twitch
    • Devops Chat
    • DevOps Dozen
    • DevOps TV
  • Media Kit
  • About
    • Sponsor

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Security Bloggers Network 

Home » Security Bloggers Network » Alt: Arkose Labs’ Latest Research Report Highlights the Top Attack Patterns & Industry Trends of Q1 2022

SBN

Alt: Arkose Labs’ Latest Research Report Highlights the Top Attack Patterns & Industry Trends of Q1 2022

by Anna Lundberg on May 18, 2022

Arkose Labs’ latest research report “Q2 2022 State of Fraud and Account Security” reveals a growing threat to consumers’ digital accounts. Modern digital businesses must keep pace with the top attack trends as identified in the report. They must also use smarter fraud prevention solutions that can help them protect consumers’ account security, long-term.

In the digital-first world, our online activities – work, social media, gaming, dating, for example – have begun defining our digital personas and how others perceive us. Increasing consumer reliance on digital channels has expanded the attack surface and opened up new attack vectors.

Attackers are capitalizing on these opportunities to exploit consumers and cause losses to businesses. They attempt account takeover attacks to hack into genuine consumer accounts and create fake new accounts for high monetization potential, downstream. These attacks damage consumer trust and leave businesses to remediate the losses, once the damage is done.

Attackers maneuver resources according to the target industry

Some industries, such as social media platforms are prime targets for human-driven attacks. On the other hand, for travel companies, there was at least one bot session for every good user session. 

Let us take a closer look at how various industries were attacked in Q1 2022.

  • Social media and dating: Social media platforms are a hotbed for human-led attacks. In Q1 2022, human attacks increased five-fold over Q4 2021. For every three sessions on social media and dating platforms, one was an attack.
  • Travel: Compared to Q4 2021, volumetric attacks drove 2.5 times more attacks in Q1 2022. Attackers were after inventory information; as a result, automated web scraping was the top most attack vector in the travel industry.
  • Gaming: Another industry under attack from human attackers in Q1 2022 was gaming – with nearly 300% more fraud in Q1 2022, driven largely by bot attacks. New fake account registration spiked 86% from Q4 2021. Gaming platforms are no stranger to attacks that shift between bots and human fraud farms, with one in every five attacks being human-driven. 
  • Fintech: Given the monetization potential associated with financial accounts, 75% of the attacks in this industry segment were account takeover attempts. As many as 97% of these attacks were automated.
  • Retail: Another industry where account takeover attacks were rampant was retail. Of all the attacks during Q1 2022 on online retail companies, 80% were ATO attempts. The industry also saw 65% increase in new fake account registrations over Q4 2021, primarily for coupon abuse. Overall, there were 30% more attacks in the first quarter of 2022 than the two years prior.
  • Technology platforms: Attackers targeted tech platforms with new account fraud. The motive of creating fake accounts in hordes was to monetize promos and free trials. Bot attacks increased with a 25% rise over the last quarter.

As for the metaverse companies, attackers are going all guns blazing after them. Using click-farms to appear legitimate, attackers are abusing the communication channels of metaverse companies. The attacks on metaverse pioneers rose 40% over Q4 2021. Our research indicates that microtransaction abuse and unfair play are major threats metaverse companies must watch out for.

Attackers use bots, click-farms, and both to maximize exploits

Bot attacks – one of biggest threats digital businesses face today – rose consistently during Q1 2022. During this quarter, bot-driven attacks were 40% higher than the Q1 average over the last three years. These bot-driven attacks were primarily used for large-scale scraping and low-and-slow ATO attempts.

Intelligent bots – that have advanced human-like capabilities and are better trained for nuanced interactions with fraud defense mechanisms – are making bot detection increasingly harder. These intelligent bots leave complex signatures that need three times the data to collect, analyze, and correlate for a single signature. This extra effort puts additional burden on fraud and security teams.

Attackers extensively use automation to launch volumetric and complex attacks – 93% of all attacks in Q1 2022 were bot-driven. However, they are quick to adapt and use a mix of bots, human click farms, or both, to maximize the exploits with hybrid cyborg attacks. Attackers mobilize their resources, which was abundantly visible in the attacks across industries. While bots enable attackers to overwhelm workflows, they use human click farms for low-and-slow attacks. For instance, attackers used human click farms in 90% attacks on communication channels in gaming, dating, and tech. Click farms are also the attackers’ first choice for in-game abuse, spam and scams, and account takeovers. Persistent attackers usually deploy a mix of both – starting with bots and switching over to click farms when bots get deterred.

For long-term protection, keep pace with the latest attack trends

It is important to note that attackers have easy access to commoditized resources needed to launch sophisticated attacks. The cybercrime ecosystem – that fuels and profits from these criminal activities – has reduced the barriers to entry even for the rookie attackers. It makes criminal toolkits, 24×7 support, and ‘fraud-as-a-service’ available to the attackers to help them launch sophisticated attacks at scale, and in no time.

Our research shows that in the first quarter of 2022, automated account takeover attacks were 30% higher than the average in the last three years. Further, 4% of all logins were attempted credential stuffing attacks. One in every four new accounts was fake and automated scraping attacks spiked 250% quarter-on-quarter. These statistics indicate the growing threat to consumers’ digital accounts. They also underscore the critical need to enhance consumers’ account security right at the account level.

It is therefore, in the interest of modern digital businesses to keep pace with the current technologies and use smarter fraud prevention solutions that can adapt to the evolving attack tactics for long-term protection.

To learn more about the top attack trends of Q1 2022 and effective ways to counter them, please view the ‘Q2 2022 State of Fraud and Account Security Report’.

*** This is a Security Bloggers Network syndicated blog from Arkose Labs authored by Anna Lundberg. Read the original post at: https://www.arkoselabs.com/blog/new-fake-accounts-and-atos-were-the-top-attack-trends-in-q1-2022-arkose-labs-latest-research-report/

May 18, 2022May 18, 2022 Anna Lundberg account takeover, New Account Origination
  • ← 4 Keys for Successful Training
  • 8 brief bold lessons for CEOs to hire, retain, and grow the scarce tech talent →

Techstrong TV

Click full-screen to enable volume control
Watch latest episodes and shows

Tech Field Day Events

Upcoming Webinars

Agentic Software Delivery in 2026: How To Bridge The Gap Between AI Ambition and Delivery Confidence
The Cost of Exposure: Managing the Operational Risks of Executive Security Incidents
Untangling the EU Cyber Resilience Act
The Software Supply Chain Just Got Harder to See
Building a Resilient Security Culture in the AI Era with AWS & Datadog

Podcast

Listen to all of our podcasts

Secure by Design

2 weeks ago | Jack Poller

Senator Sanders Wants to Own AI Companies — and Hand America’s Adversaries the Keys

3 weeks ago | Jack Poller

NIST’s Nine: The PQC Signature Race Moves to Round Three

3 weeks ago | Jack Poller

The Quantum Arms Race: Why Washington Just Wrote a $2 Billion Check to Nine Companies

4 weeks ago | Jack Poller

Beyond Moore’s Law: The Hyper-Acceleration of Autonomous AI Cyber Capabilities

1 month ago | Jack Poller

The Exception Economy: When Security Teams Stop Protecting and Start Negotiating

Press Releases

GoPlus's Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

GoPlus’s Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

Subscribe to our Newsletters

Most Read on the Boulevard

Zscaler Launches Industry-First Zero Trust Security for Agentic AI
ServiceNow Fixes Flaw That Could Lead to Unauthorized Access to Instances
Oracle Issues Emergency Guidance as PeopleSoft Flaw Linked to Widespread Data Theft
Linux Kernel Bug Caused by Single Character Opens Path to Root Access
Futurum Group Report Sees Cybersecurity Spending Reaching $521.7B by 2031
Atomic Arch npm Campaign Adds Malicious Dependency
ServiceNow Breach Explained: API Exposure, Risks & Security
Top 8 AI App Dev Platforms in 2026
CISA BOD 26-04: Frequently asked questions about the new risk-based patching directive
South Korea Fines Coupang $400M Over Data Breach Affecting Millions

Industry Spotlight

Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks
Cloud Security Cybersecurity Data Privacy Data Security Featured Incident Response Industry Spotlight Malware Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threats & Breaches Vulnerabilities 

Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks

April 12, 2026 Jeffrey Burt | Apr 12 Comments Off on Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks
The Day the Security Music Died
AI and Machine Learning in Security Cybersecurity Featured Industry Spotlight Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

The Day the Security Music Died

April 8, 2026 Alan Shimel | Apr 08 Comments Off on The Day the Security Music Died
The Lock, Not the Alarm: How Palo Alto’s Koi Acquisition Rewrites Endpoint Security
Featured Industry Spotlight Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Uncategorized 

The Lock, Not the Alarm: How Palo Alto’s Koi Acquisition Rewrites Endpoint Security

February 18, 2026 Jack Poller | Feb 18 Comments Off on The Lock, Not the Alarm: How Palo Alto’s Koi Acquisition Rewrites Endpoint Security

Top Stories

Google Sues Chinese Threat Group Using Gemini AI in Phishing Scams
Cloud Security Cybersecurity Data Privacy Data Security Endpoint Featured Identity & Access Mobile Security Network Security News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threat Intelligence Threats & Breaches 

Google Sues Chinese Threat Group Using Gemini AI in Phishing Scams

June 14, 2026 Jeffrey Burt | 12 hours ago 0
ServiceNow Fixes Flaw That Could Lead to Unauthorized Access to Instances
Cloud Security Cybersecurity Data Privacy Data Security Featured Identity & Access Incident Response Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Vulnerabilities 

ServiceNow Fixes Flaw That Could Lead to Unauthorized Access to Instances

June 11, 2026 Jeffrey Burt | 4 days ago 0
Zscaler Launches Industry-First Zero Trust Security for Agentic AI
AI and ML in Security Cybersecurity Featured News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Zero-Trust 

Zscaler Launches Industry-First Zero Trust Security for Agentic AI

June 10, 2026 Jon Swartz | 4 days ago 0

Security Humor

Randall Munroe’s XKCD 'Soniferous Aether'

Randall Munroe’s XKCD ‘Soniferous Aether’

Download Free eBook

[su_panel border="0px solid #ddd" radius="0" text_align="center" padding-top="0px" padding-bottom="0px"]
Managing the AppSec Toolstack
[/su_panel]

Security Boulevard Logo White

DMCA

Join the Community

  • Add your blog to Security Creators Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: [email protected]

Useful Links

  • About
  • Media Kit
  • Sponsor Info
  • Copyright
  • TOS
  • DMCA Compliance Statement
  • Privacy Policy

Related Sites

  • Techstrong Group
  • Cloud Native Now
  • DevOps.com
  • Digital CxO
  • Techstrong Research
  • Techstrong TV
  • Techstrong.tv Podcast
  • DevOps Chat
  • DevOps Dozen
  • DevOps TV
Powered by Techstrong Group
Copyright © 2026 Techstrong Group Inc. All rights reserved.
×

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.