That $30 Streaming Box Might Be Moonlighting as an Ad Fraud Bot
For years, security researchers have warned that ultra-cheap Android-based streaming boxes—the kind promising every movie and channel imaginable for a single upfront payment—often come loaded with malware that quietly turns your home internet connection into a proxy for hire, letting strangers route their traffic through your network without your knowledge.
A new investigation takes that warning a step further. Researchers found that many of these devices are also being used to impersonate mobile phone browsers, automatically visiting and clicking on ads embedded in networks of AI-generated websites built specifically to look legitimate to ad platforms. The scheme appears designed to siphon money from advertisers and online merchants who pay for clicks and traffic that were never generated by real human users.
The result is a two-pronged fraud operation baked directly into hardware sold openly on major online marketplaces: your streaming box becomes both a bandwidth-for-rent proxy and a bot farm faking mobile engagement, all while you're none the wiser because the box still plays your shows just fine.