Ad tech stocks
TEAD0.60▲ +16.69%CDLX2.71▼ -7.82%186013.51▲ +7.48%PSKY9.59▼ -7.21%U43.20▲ +5.56%APPS11.59▲ +4.41%APP279.81▼ -3.66%STGW8.43▲ +3.56%RDDT147.50▲ +3.55%ZETA32.61▲ +3.29%TRU62.76▲ +2.68%SFOR44.85▼ -2.50%CCO2.41▲ +2.50%OMC75.45▲ +2.47%INUV0.58▲ +2.38%LFTO15.45▼ -2.22%NFLX68.30▼ -1.84%WPP382.90▲ +1.81%CART43.89▲ +1.79%MNTN10.35▲ +1.77%PUBM19.05▲ +1.68%DSP12.51▲ +1.58%IBTA40.01▲ +1.54%ILLM0.66▲ +1.54%IHRT2.13▲ +1.44%SAX35.96▲ +1.41%GOOGL339.26▼ -1.40%SCOR4.75▲ +1.39%SPOT493.77▲ +1.31%SNAP5.47▲ +1.30%035420191200.00▼ -1.29%BIDU85.75▼ -1.29%4755681.70▼ -1.26%AAPL328.95▼ -1.22%AZRN0.82▼ -1.20%SIRI25.57▼ -1.18%ROKU150.53▼ -1.15%PUB95.34▲ +0.87%MGNI25.46▲ +0.79%SST2.64▲ +0.76%47511238.50▲ +0.57%HAVAS17.55▼ -0.57%CRTO15.28▲ +0.53%RAMP37.70▲ +0.47%META728.53▲ +0.46%TBLA3.35▼ -0.45%NEXN9.04▲ +0.44%24331308.00▲ +0.38%CPNG13.83▼ -0.29%0700431.00▼ -0.23%OUT27.68▼ -0.23%DEC24.68▲ +0.16%PERI8.68▼ -0.12%PINS18.91▲ +0.08%BABA107.47▼ -0.07%WBD30.93▼ -0.06%DV13.48▼ -0.04%TTD12.16▼ -0.04%43243564.00▲ +0.03%SNOW339.53▼ -0.01%VER12.08▲ 0.00%
Ticker byClearTrust

Invalid traffic & fraud

Click injection

Click injection is mobile ad fraud where a malicious app detects another app being installed and fires a fake ad click just before the install completes, stealing the credit.

The short answer, from the AdTech Sumo glossary

In app marketing, the ad network credited with the last click before an install usually gets paid (see attribution). Click injection hijacks that rule. A bad app already on the phone, often a flashlight or cleaner app, notices when the user starts installing something else, then quickly sends a fake click on behalf of a fraudulent source. The real install, which the user chose organically or because of a different ad, is credited to the fraudster.

The mechanism relies on the phone broadcasting install activity to other apps, which is why it historically affected Android most. Google's Play Install Referrer API gives MMPs timestamps for when the click happened and when the install started, so a "click" logged after the download began is a strong signal.

The classic detection signal is click-to-install time (CTIT): a real user needs time to see an ad, visit the store and download, but injected clicks show abnormally short gaps, often a few seconds. Injection is classed as attribution fraud and SIVT. It is different from click spamming, which floods clicks hoping to get lucky, and shows long, flat CTIT distributions instead.

Think of it like this

It is like someone standing at the checkout who, just as you pay, shouts "I recommended this shop to them!" and pockets the referral bonus.

An example

An MMP sees 12,000 installs from one network in India where 70% of clicks arrive less than 10 seconds before the install begins, compared with a typical spread of minutes to hours. The installs are rejected as injected.

Related terms

Sources: AppsFlyer glossary: click injection, MRC Invalid Traffic Detection and Filtration Guidelines Addendum (2020 update)