This isn’t a unique idea, but thanks anyway to Zenarus for being the first to dare to share this idea.
Many people in these industries thought of this when QR verification first appeared. However, as the many people mentioned, this isn’t a simple matter. It only makes sense if you can do it at a low cost.
The direction is absolutely right. Google accounts are essential for the industry. The solution will indeed come through this path, but not in such a superficial way!
With this approach, you can only create a few long lasting accounts, and the cost would be very high.
You could create a new emulator for each Gmail with a unique fingerprint and proxy, but in that case, why create Gmail elsewhere and then verify in emulator? We might as well create it directly inside emulator.
I have my own antidetect browser and automation software, which I can confidently call industry-leading class. Currently, using my own mobile proxies, I’m achieving around a 40% rate of avoiding QR codes. That’s acceptable for now, because once a Gmail account is successfully opened, now it’s much easier to work with that account afterward.
It seems Google moved the security barrier to the beginning (QR verification) to reduce costs and loosen the checks in later stages. So if you successfully create a Gmail account, it’s now easier to activate services like Cloud or Ads.
In short, 40% is acceptable for now, but this won’t last. At this point, we need to solve this issue through the approach being discussed here, but in a deeper, more comprehensive way.
Instead of trying to complete QR verification inside emulators, may be we can create Gmail accounts directly in emulator, automation there is also possible!
I plan to start working on this topic soon. If I make any progress, I’ll be happy to share updates with you all.
Hm good post, but lets actually ask for once, why the reliance on google accounts?
The anti fraud measures from the companies have the purpose to make fraud expensive rather than impossible and for now, the cheapest way I can technically see will have a total cost of warmup bandwidth proxy cost + anti detect sub cost + sms verification cost , somewhere 1-2usd per account doing realistic math. Lets say 50 cents to 1usd, even.
This requires however, exporting cookies, session tokens and IP range, extra overhead, else the profile wont live long after someone else logs in.
I have made a bot too, I share more or less the same results as you do, if I have xxx amount of cookies, I get sms only, but thats for now and it wont last, Google is officially rolling out the QR code everywhere, it is just a matter of time, they said so themselves.
The QR code, from what I have seen, does generate a link, by that links url , google knows whether the machine where it has been gnerated has an account of not(usually not unless youre leaking stuff left and right), then , wherever that QR code is opened, that device is also checked for potential google accounts (they do track you when you download/install Chrome) but it will allow you to create one if the mobile scanning the code has a clean IP that is in the vicinity of the computer that tries to create an account. That will work for sure, as it is not unusual to have a laptop/pc + mobile device. So technically, an emulator that passes as "real" device even running via vpn could be fine. Question is does the emulator or mobile device really have to scan the code or not, since it only generates a link, and google cant know whioch devbice scanned that qr code.
Or well, clickfarms which do hard resets on android phones non stop, thatd do the trick.
Itll likely come down to the folks with click farms to way way up their ante.
But ehy do we need gmail accounts when theyre prone to closure, if its all about "continue with google" federated login only, that can be done with any other provider and a clean AD setup, you just have to sign up manually.
If its for services where google requirtes a google account specifically, then be ready for much more non automation things like random BIN for services and god knows what.
Also remember, Google can and does read your emails, thats why gmail is free, its part of the deal, so if you are doing say Trustpilot reviews and theres only ever TP emails in there and no sign of normal human usage, that accounts gonna be banned.
Maybe this deserves a separate thread, why and who relies on gmails and google accounts in the first place. I cannot think of much more than federated login.