Home Data-Driven Thinking Secure Ads Layer: The Ad Fraud Solution You’ve Never Heard Of

Secure Ads Layer: The Ad Fraud Solution You’ve Never Heard Of

SHARE:

jamesaveryddtData-Driven Thinking” is written by members of the media community and contains fresh ideas on the digital revolution in media.

Today’s column is written by James Avery, CEO at Adzerk.

Fraud is the ad industry’s not-so-secret problem. It impacts publishers just as much as advertisers. Advertisers have finite budgets to spend filling placements each year, and the amount that gets wasted on fraud hurts the payouts of legitimate publishers.

It’s not as simple as blocking unwanted domains from accessing a site or demand-side platform because fraudsters adapt faster than publishers and advertisers can detect their exploits. But a century-old solution using a secure sockets layer (SSL) may hold the key to stopping fraudsters in their tracks. Since it creates a boundary between those who serve and display advertisements, I call it the secure ads layer.

We are all familiar with fraudsters’ ploys. They can repeatedly make ad requests to a site, not only refreshing a page but also mimicking valid user agents to avoid detection. They can build sites that look legitimate but are filled with stolen content, with ad units stacked on top of each other. Fraudsters can even make ad requests from inside a 1×1 pixel.

And they’re probably using new techniques now that the industry doesn’t even know about.

Impact On Publishers’ Bottom Lines

Fraudsters also use countless adware and malware plugins that insert or replace ads on legitimate publisher sites. Often, these toolbars are presented as Trojan horses to end users, promising to donate revenue to charities of their choice or deliver some marginal benefit to their web browsing experience. Of course, the revenue is directed to the plugin creator while the publisher loses the value of its inventory.

This is not just a short-term loss of revenue – the overall value of a publisher’s inventory will diminished through fraud. It contributes to ever-shrinking CPMs, and it’s only getting worse.

Ultimately, trying to solve ad fraud through various “patches” that detect fraudulent activity and block users or patterns is like trying to put out a forest fire with a cup. You might see some short-term successes, but you’re guaranteed to lose the war

The core issue is that ad platforms use domain as the main identifier when identifying traffic. This can be easily spoofed on nearly all major platforms, and in many platforms it can just be passed in as a query string on the request. As long as a fraudster can masquerade as a different domain, there will always be ad fraud.

Better Than A Domain

There is, however, a potential solution based on technology that goes back to 1874. It uses the same basic principle as SSL.

SSL is a fairly well-known technology, although the average user probably doesn’t know that it works because of a technique called public key cryptography. A browser can use a public key to confirm that a certificate was signed with the corresponding private key, without having access to the private key.

One use of public key cryptography is the ability to sign a message and then verify that the message wasn’t tampered with. What I envision is for publishers to host a set number of valid public keys, perhaps stored at a central repository or just exposed through a simple endpoint, such as a  /_keys folder off their main domain. The publishers would give the corresponding private keys to vendors, such as their ad server and SSP, who they’ve already vetted.

Say The New York Times adopts a secure ads layer. Whenever impressions are served on nytimes.com, their private key is used to sign the full URL, a time stamp and the ad request’s user ID (cookie). The buyers, including the exchanges, DSPs or networks, would then use the Times’ public key to verify that the URL was indeed certified by the publisher.

Not only does this secure ad requests for publishers, it’s a huge opportunity for DSPs because they could enable buyers to purchase verified traffic and choose publishers based on their verified keys, as opposed to domain.

This technology could be a game-changer for programmatic advertising, but to get this done, we need the support of the major ad servers, exchanges and DSPs.

Secure ad traffic is better for advertisers and publishers. The secure ads layer is something everyone could implement without any proprietary technology or extra cost.

Follow Adzerk (@adzerk) and AdExchanger (@adexchanger) on Twitter.

Tagged in:

Must Read

Roblox Opens Up Advertising To Kids Under 13

Roblox is making its under-13 audience available to advertisers for the first time. And it named youth-focused ad marketplace SuperAwesome as its exclusive advertising partner for under-13 users.

Comic: Header Bidding Rapper (Wrapper!)

Outgoing Prebid President Mike Racic On His Departure And The Org’s Next Act

Prebid is turning the page on what might be called its second chapter as the organization navigates some major changes in the digital advertising landscape and within its own ranks.

Meta is giving advertisers the ability to connect their third-party analytics tools directly to its ad platform via API.

How Apparel Brand Tuckernuck Devised The 'Why' Behind Its CTV Ad Performance

Performance CTV tech company Keynes launched an AI-powered platform. Tuckernuck says it can finally “pop open the hood” and see what’s working.

Privacy! Commerce! Connected TV! Read all about it. Subscribe to AdExchanger Newsletters
Salt Lake City, Utah, U.S.A. - February 24th 2021: Martinelli Gold Medal Sparkling Blush for festive occasions and gatherings. Fermented Apple Cider from the state of California.

How Juice Brand Martinelli’s Gets To The Core Of Retail Media Incrementality

ROAS who? Martinelli’s is testing how crisp its retail media spend really is by using a new metric called incremental ROAS.

A scale with the letters AI on one side and a pencil and ruler on the other. The pencil and ruler represent the concept of measurement and precision

Measured Has A New Tool That Lets Marketers Chat With Their Incrementality Data

Media measurement provider Measured launched an MCP integration that allows brands to ask ChatGPT, Claude, Gemini and other AI platforms how their media is performing.

Roku Revamps Its Home Screen To Appease Both Consumers And Advertisers

Roku unveiled its new home screen, which includes new features designed to further personalize the home screen experience for each viewer.