3 Sources
[1]
GenAI bots could well be scraping your web apps, researchers warn
Not all bots are bad, but many extract huge amounts of data without permission New research from Barracuda has identified "gray bots", alongside good and bad bots that crawl the web and extract data - and while the "good bots", like SEO and customer service bots look for information, "bad bots"
[2]
Barracuda Says Generative AI Gray Bots Hit Websites 500K Times Daily
Barracuda Says Generative AI Gray Bots Hit Websites 500K Times Daily Generative AI scraper bots target websites 24 hours a day with up to half a million requests for information, according to the latest Barracuda detection data. In a new report, Barracuda threat analysts highlight the relentless
[3]
Generative AI 'gray bots' pound websites up to half a million times a day, Barracuda new research highlights
Generative AI scraper bots target websites 24 hours a day with up to half a million requests for information, according to the latest Barracuda detection data. In a new report, Barracuda threat analysts highlight the relentless behavior of generative AI (Gen AI) bots, which form part of an emerging
Share
Copy Link
New research from Barracuda reveals the emergence of 'gray bots', AI-powered scrapers that inundate websites with up to half a million daily requests, posing potential risks to data privacy, web performance, and copyright.

Recent research conducted by Barracuda has unveiled a new category of web crawlers known as "gray bots," which are powered by generative AI technology. These bots occupy a space between benign and malicious automated programs, raising concerns about their impact on web applications and data privacy
1
.Gray bots are designed to extract large volumes of data from websites, potentially for training AI models or collecting web content such as news, reviews, and travel offers. While not overtly malicious, their activities blur the lines of legitimate online behavior
2
.Barracuda's detection data reveals the significant impact of these AI-powered bots:
3
.The prevalence of gray bots poses several challenges for website owners and organizations:
Data Privacy: Websites containing sensitive customer information, such as those in healthcare or financial services, may be at risk of unauthorized data extraction
1
.Web Performance: The high volume of requests can overwhelm web applications, potentially disrupting operations and degrading overall performance
3
.Copyright Infringement: Gray bots may collect copyright-protected data to train AI models, potentially violating intellectual property rights
1
.Analytics Distortion: The presence of gray bots can skew website analytics, making it difficult for organizations to assess genuine traffic and user behavior accurately
1
.Related Stories
To protect against GenAI gray bots and unauthorized data scraping, organizations can consider the following strategies:
Implement robots.txt: This code can be added to websites to signal that scraping is not permitted. However, it's important to note that this measure is not legally binding and relies on bot owners respecting the guidelines
3
.Deploy Advanced Bot Protection: Utilize bot protection systems capable of detecting and blocking generative AI scraper bot activity. Features such as behavior-based detection, adaptive machine learning, and real-time blocking can help mitigate the threat
3
.As the landscape of AI-powered web crawling evolves, organizations must remain vigilant and adapt their application security strategies to address the unique challenges posed by gray bots.
Summarized by
Navi
05 Feb 2026•Technology

22 Mar 2025•Technology

29 Apr 2026•Technology

1
Technology

2
Policy and Regulation

3
Technology
