How ad fraud works
Google pay per click advertising service has four key steps as shown:
1. User clicks on web ad
2. Ad click is registered by Google
3. Google pays money to web owner
4. Advertiser pays Google
However, a cybercriminal can set up a new website and then use a botnet to automatically click on the Google web ads. Since it can be hard to distinguish if a real human being or a botnet is clicking on the ad link, the website owner can fraudulently extract a river of cash from Google and ultimately from advertisers.