Your question is Detect Viral Spike vs Botnet. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
What statistical methods would you use to differentiate between a legitimate viral traffic spike and a botnet attack in DoubleVerify ad traffic data?