Meta's Adversarial Threat Report: Taking Down Cyber Espionage Activities in South Asia

📷

According to Meta, it took action on at least one network of more than 100 shady Facebook and Instagram accounts that were linked to state-affiliated individuals in Pakistan and targeted Indian military personnel. According to Meta's adversarial threat report, which had been released on Wednesday, this was one of the three cyber espionage activities in South Asia that Meta claimed to have become aware of on its platform.

The corporation also took action against the Indian-based hacker collective Patchwork, which had been targeting military personnel, activists, and minority groups in Bangladesh, Pakistan, India, Sri Lanka, the Tibet region, and China.

Patchwork: Indian-Based Hacker Collective Targeting Military Personnel and Activists Brought to Justice by Meta

Company news today: Meta initiated legal action against around 120 Facebook and Instagram accounts connected to a Pakistani hacking gang that primarily targeted citizens of Pakistan and India, including military personnel in both countries and members of the Pakistan Air Force. According to Meta in the report, our investigation traced it to Pakistani actors with ties to the state.

Although this group's activity was persistent and targeted a variety of online services, Meta claimed that it was relatively low in sophistication. To spread malware through highly targeted operations designed to deceive targets into clicking on harmful links and downloading Android or Windows malware, they mainly depended on a web of attacker-controlled websites.

In addition to employing a variety of strategies, such as the use of customised applications and infrastructure, the group associated with state actors in Pakistan also assumed fictitious personas to gain the trust of the people they targeted. These personas included recruiters for both real and fake defence companies and governments, military personnel, journalists, and women looking to find love.

Patchwork, an Indian hacker network with over 50 identities, used a variety of intricate fictional personas to trick people into clicking on harmful links and downloading harmful programmes. According to the latest business report by Meta, some of them pretended to be journalists from the United Kingdom or the United Arab Emirates who were employed by both real and fraudulent news organisations, as well as military officials or defence intelligence experts.