Tuesday, September 8, 2026

Automated Bots Overtake Human Users in Global Internet Traffic for the First Time

Automated bots have officially overtaken human users in global internet traffic for the first time, marking a major shift in how the web is accessed and used.

Recent data from Cloudflare Radar shows that bots now generate 57.5% of all HTTP requests to HTML pages. In comparison, human activity has dropped to 42.5%.

The trend is even more pronounced in the United States, where bot traffic accounts for 71.5% of web requests. This sharp imbalance highlights the rapid adoption of AI-driven automation in one of the world’s most digitally connected regions, as reported by CSN.

Automated Bots Overtake Human Users

Multiple industry reports confirm this transition. The 2025 Imperva Bad Bot Report revealed that automated traffic crossed the 50% threshold in 2024, reaching 51% of global web activity.

Similarly, Cloudflare’s network, which supports nearly 20% of the internet, recorded bot traffic at 53% compared to 47% human traffic by late 2025.

Cloudflare's Automated Bots Overtake Human Users
Cloudflare’s Automated Bots Overtake Human Users

Cloudflare CEO Matthew Prince had earlier predicted that bots would surpass human traffic by 2027. However, the shift has occurred significantly ahead of schedule, driven largely by the explosive growth of AI systems and automated agents.

One key factor behind this surge is the behavior of AI-powered tools. A typical human user may visit a handful of websites to research a product.

In contrast, an AI agent can query thousands of pages within seconds. This large-scale automated browsing is primarily fueled by LLM training crawlers, AI scrapers, and autonomous search agents powered by technologies such as OpenAI GPT, Anthropic Claude, and Google Gemini.

AI-driven traffic alone increased by 187% in 2025, growing nearly eight times faster than human-generated traffic. This rapid expansion is reshaping internet infrastructure and significantly impacting how online services operate.

However, the rise of bots introduces serious cybersecurity concerns. Approximately 37% of all bot traffic is classified as malicious, including credential stuffing, content scraping, and distributed denial-of-service (DDoS) attacks. In contrast, only 14% of bots are considered legitimate, such as search engine crawlers and indexing services.

This imbalance is also disrupting digital analytics. Publishers and advertisers are increasingly facing distorted traffic metrics, where automated interactions inflate engagement figures and obscure genuine user behavior. As a result, businesses are finding it harder to measure real audience reach and performance.

To address these challenges, new countermeasures are emerging. Cloudflare has begun blocking AI crawlers by default unless content owners compensate them, introducing early versions of pay-to-crawl models. These frameworks aim to restore control over how automated systems access and use online content.

As AI ecosystems continue to expand, the dominance of bots is expected to grow further. The internet is rapidly transitioning toward an “agent-driven” environment, where machines increasingly interact with other machines. This shift will require significant changes in cybersecurity strategies, traffic validation, and digital monetization models to maintain trust and stability across the web.

Follow us on Google NewsLinkedIn, and X to Get Instant Updates and Set GBH as a Preferred Source in Google.

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

PoisonedRefresh Malware Backdoors F5 BIG-IP Servers With Memory-Only PHP Web Shells

A sophisticated Linux implant linked to compromised F5 BIG-IP...

Natural Resources Wales Data Breach Exposes Sensitive Employee Diversity Data

Natural Resources Wales (NRW) has reported a personal data...

ConnectWise ScreenConnect Remote Access Flaw Impacts Guest File Transfer Sessions

ConnectWise has announced a security issue affecting file transfer...

Global Phishing Campaign Abuses Google Infrastructure to Evade Security and Steal Credentials

A large-scale phishing operation is abusing trusted Google services...

OpenAI Commits $1 Billion in Daybreak AI Cyber Tools to Protect Critical Infrastructure

OpenAI has announced a $1 billion global commitment to...

Tengu Mirai-Style Linux Bot Hides as Kernel Worker to Launch DDoS and Proxy Attacks

A newly analyzed Linux malware sample, dubbed Tengu, combines...

The 12 Best Wireless / Wi-Fi Security Solutions, Compared and Priced

Best value overall: Ubiquiti. Published hardware pricing, no mandatory...

The 12 Best Network Sandboxing Solutions, Compared and Priced

Best value overall: ANY.RUN. It publishes its pricing, offers...

Related Articles

Recent News