We don't know. Yes, such bots are likely economically feasible. But there may also be more profitable ways to commit fraud. From what I understand, Prolific, for instance, takes this serious and builds in safeguards. I would expect this to be a race; monitoring may keep use safe until a given point.