Online advertising has become the backbone of the Internet economy by
revolutionizing business marketing. It provides a simple and efficient way for
advertisers to display their advertisements to specific individual users, and
over the last couple of years has contributed to an explosion in the income
stream for several web-based businesses. For example, Google's income from
advertising grew 51.6% between 2016 and 2018, to 136.8billion.Thisexponentialgrowthinadvertisingrevenuehasmotivatedfraudsterstoexploittheweaknessesoftheonlineadvertisingmodeltomakemoney,andresearcherstodiscovernewsecurityvulnerabilitiesinthemodel,toproposecountermeasuresandtoforecastfuturetrendsinresearch.Motivatedbytheseconsiderations,thispaperpresentsacomprehensivereviewofthesecuritythreatstoonlineadvertisingsystems.Webeginbyintroducingthemotivationforonlineadvertisingsystem,explainhowitdiffersfromtraditionaladvertisingnetworks,introduceterminology,anddefinethecurrentonlineadvertisingarchitecture.Wethendeviseacomprehensivetaxonomyofattacksononlineadvertisingtoraiseawarenessamongresearchersaboutthevulnerabilitiesofonlineadvertisingecosystem.Wediscussthelimitationsandeffectivenessofthecountermeasuresthathavebeendevelopedtosecureentitiesintheadvertisingecosystemagainsttheseattacks.Tocompleteourwork,weidentifysomeopenissuesandoutlinesomepossibledirectionsforfutureresearchtowardsimprovingsecuritymethodsforonlineadvertisingsystems.