Home / Use cases / Stopping Question Bank Harvesting

Stopping Question Bank Harvesting

Harvesting bots page through your assessment catalog, capture every item, and sell the bank before your next testing window opens.

What the attack looks like

Automation targeting online assessment is rarely a single bot. It is an operation: rotating proxies, realistic browser fingerprints, and pacing tuned to stay under naive rate limits. By the time the damage shows up in your dashboards, the operator has already moved on.

Why generic defenses fall short

Simple rate limits and CAPTCHA walls catch careless scripts and punish real candidates. Modern bot operations solve challenges in bulk through farms and spread requests across thousands of addresses.

How ExamFence stops it

ExamFence layers behavioral analysis, device fingerprinting, and network intelligence into a single risk score per session. Decisions happen before the request reaches your application, and scores adapt as operators change tactics. You keep the value of your scores; candidates never notice.

Start with the audit

The free bot-traffic audit shows what share of your traffic is automated, where it concentrates, and what it costs you. It takes minutes to start and runs read-only against your logs or tags.