John Scott-Railton Profile picture
Feb 15, 2023 11 tweets 10 min read Read on X
WHOA: Team of Israeli ex-spies boast of manipulating 33 elections w/ #hacking & #bots.

Tricked into demoing #telegram hacking & bot army to undercover investigators.

By @skirchy @manisha_bot @davidtpegg @carolecadwalla & @burke_jason
theguardian.com/world/2023/feb… ImageImageImageImage
2/ “After you’ve created credibility, what do you do? Then you can manipulate"

Good to see @Meta take action on these accounts.

Honestly though we are at the absolute tip of the iceberg. ImageImage
3/ Here he is demoing access to the #Gmail of a purported key political insider in #Kenya just days before the election.

This tech & tactics is kerosene on the flames of democracy. Image
4/ “I know in some countries they believe #Telegram is safe. I will show you how safe it is”

Yikes.

Unclear how he is gaining access to these #Gmail & Telegram accounts, but the talk of #SS7 is a good hint.

And yet another reminder: SMS is not a safe second factor. ImageImage
5/ Great to see mercenary election manipulators exposed. Solid journalism.

Trust me, this is a window into a *much bigger industry* active in elections around the world.

So rare to see it caught.
6/ The fact that so much political activity happens on a handful of platforms makes the tooling for political manipulation really interoperable.

Also radically lowers barriers to entry.

Making mercenary election manipulation scaleable & easy to export. Image
7/ Of course, we don't know whether these guys have successfully changed the outcome of any election.

The guy here is also pretty clearly boasting & trying to sell.

But the mere fact of mercenary election manipulators running around is damaging, even when they don't win.
8/ Even if mercenary election manipulators don't successfully throw an election (e.g. successfully shift mass sentiment), bots, hacking & turbocharged dirty tricks can distort political culture.

Opposing parties have to adjust.

And the net result is harm to democracy.
9/ UPDATE: @haaretzcom reports the mercenary political manipulators targeted 🇺🇸US politicians.

Like @GavinNewsom in #California

Topic: #diablocanyon nuclear plant

Were taxpayer funds routed to #TeamJorge for that op?

STORY haaretz.com/israel-news/se… ImageImageImageImage
10/ Powerful coda to this remarkable story
11/ Really remarkable undercover work went into this story.

Huge credit to @omerbenj @GurMegiddo & @FredMetzo for pulling off such a feat.

These are paranoid people confessing to illegal things, it cannot have been easy.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with John Scott-Railton

John Scott-Railton Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @jsrailton

Apr 22
BREAKING: US @StateDept imposes visa restrictions on 13 mercenary spyware proliferators / immediate family.

First known application of policy rolled out in Feb.
state.gov/promoting-acco…
Image
2/ Visa restrictions are a promising tool in the fight against mercenary spyware.

Spyware developers & investors want big returns.

But they also want to spend some of that money on travel to the US & their kids' Ivy League tuition.

3/ As the visa announcement ricochets around mercenary spyware land...

A *lot* of shady players are surely having a little panic.

...wondering if their name is or will be on a list.
state.gov/promoting-acco…
Read 4 tweets
Apr 19
SEEN THESE ADS?

Producer is a declared foreign agent, paid ~$6.8m to make Kremlin propaganda on #Ukraine, etc.

He's claimed in filings that those videos wouldn't target the US audiences.

By @taylorgiorno_ & @annalecta opensecrets.org/news/2022/08/r…
Image
Please REPLY if you are seeing "Zelenskyy Unmasked" ads in the US.

In FARA registrations, Ben Swann claims Russian millions are *not* for content targeting the the US.

So who is funding this massive advertising spend to attack #Ukraine?

FARA Example: efile.fara.gov/docs/7151-Supp…
Image
3/ Anecdotally I keep hearing that viewers of my tweets about Russian hacking & election interference are being shown the ads.👇
Read 5 tweets
Apr 18
Report: Russia seeking to interfere in US elections & undermine support for #Ukraine.

Tactics include propaganda-laundering.👇 1/

By @selectedwisdom
blogs.microsoft.com/on-the-issues/…
Image
2/ Rigged courts. Election Fraud... Sound familiar?

It's the work of another #Russian propaganda operator highlighted by @Microsoft that amplifies socially divisive narratives.
Image
Image
@Microsoft 3/ The now-familiar hack-and-leak targeting of US political figures = dynamic to watch as 2024 elections approach.

I think media still struggles to responsibly cover "leak"-branded political hacks.

No doubt Russia has made the same observation.

Ft. @MsftSecIntel. Image
Read 4 tweets
Apr 14
Good morning to everyone except the "OSINT" accounts that spent last night spreading fake, alarmist & unconfirmed content.
2/ OSINT: Open Source INtelligence.

Owes its good reputation to groups like @Bellingcat that carefully VERIFY material before using it in analysis.

But today, if you find "OSINT" in the handle, there's a good chance that you will find neither verification nor analysis.
3/ How to run an "OSINT"-branded grift:

1️⃣Copy unverified spicy videos from Telegram channels, other accounts etc.

2️⃣ Strip sourcing because, hey, don't want to help competitor "OSINT" accounts get clout.

3️⃣Add hyperbolic & alarming caption.

4️⃣ Amplify.
Read 4 tweets
Apr 13
Be wary of OSINT-branded accounts recycling faked & old footage of airstrikes, explosions, interceptions etc.

It happens every time, but in New Twitter they have a direct financial incentive to push out inflammatory nonsense.

There's more 1/
2/ The annoying practice of some OSINT-branded accounts of repeating headlines ginned up & borrowed from somewhere without citation as if it's their own...

Is reckless & dangerous during fast moving conflict where there is huge potential for *consequential* misunderstandings.
3/ Exercise extreme caution in what you amplify & believe.

Twitter is awash with a flood tide of falsehoods tonight.

Some is the work of people trying to farm revenue.

And some is disinformation seeking to seed specific false perceptions.
Read 7 tweets
Apr 10
IMPORTANT: has @Apple recently sent you a #MercenarySpyware threat notification?

This is serious. Seek expert help.

If you're a journalist, activist, dissident, academic, etc. etc: ✅contact the @accessnow Digital Security Helpline.

accessnow.org/help/
2/ @Apple's notifications continue to play critical role in helping #MercenarySpyware targets get help & take action.

And they keep leading to accountability.

To date, Apple says they have notified users in 150 countries.

That's a jaw-dropping illustration of the scale of the mercenary spyware proliferation.

You can learn more about the notifications here: support.apple.com/en-us/102174Image
Image
Image
3/ If you'd like to learn a bit more about why I recommend the Access Now Digital Security Helpline & what to do if you get a threat notification from @apple, this is a helpful resource:
accessnow.org/help/access-no…


Image
Image
Image
Read 4 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(