Chris Krebs Profile picture
Sep 7, 2024 10 tweets 2 min read Read on X
Quick 🧵 to wrap up a crazy week in Info Ops land:

I’m confident both Russia, China, and Iran have long-standing, well-formed, multifaceted plans to undermine American democracy, which includes the 2024 election.
What we’re seeing with the alleged funding of Tenet Media and the sanctions against the Doppleganger Disinfo-as-Service groups are simply workstreams in a larger Statement of Work (to McKinsey-fy this).
That’s one reason, perhaps, why DOJ included the translated strategy docs (audience, themes, specific commentators) in their charging documents, to hint at a broader undertaking.
My main takeaway right now is they’ve moved on from fake personas, instead trying to mimic or outright rent established & trusted personas.

They’ve spent years studying our social & political dynamics and they’re attacking & exploiting our trusted relationships.
One last point, not every position taken by the influencer has to align with the Kremlin’s agenda. $10m is chump change for the reach on a handful of key issues (e.g., Ukraine).
So yeah, this is far from over. But we also need to be measured in our response. DOJ’s (and other agencies) actions this week were incredibly helpful in pulling back the curtain on Russian info ops. They timed the Doppelgänger disruption at a time where it may be difficult for those actors to reconstitute their websites and build engagement. That’s a big deal! They also gave researchers a ton of intel to inform subsequent investigations. More to come, I’m sure!
Fortunately, thus far the reaction has been serious amongst the serious players on both sides of the aisle. I worry additional actions between now and the election, particularly if higher profile influencers are implicated, may draw sharp partisan attacks in response. So I suspect this may be it for the moment absent a more brazen campaign by RU (and the like).
And in thinking what these Russian, Iranian, Chinese efforts all amount to, I still tend to think these operations have little impact on specific, discrete decisions. Data is severely lacking, and there’s a paucity of research. But to date, not much concrete to suggest minds have changed on specific issues due to efforts like we saw unveiled this week.
Instead, the campaigns have an accretive effect. The buildup over time and destabilize/corrode the very firmament of our reality. Are elections impacted? Absolutely, as collateral damage.

But the point is chaos.
We can survive this. Check your priors. Take a breath. Touch grass. Demand better of our elected and community leaders, and just stop being so damn gullible. Common sense, perhaos in rare supply, can go a long way here.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Chris Krebs

Chris Krebs Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @C_C_Krebs

Apr 18, 2024
Lots of foreign election influence news/drops this week. Here's one from @CISAgov, @FBI, & @ODNIgov highlighting a few tactics we're seeing from the "usual suspects" (Russia, China, Iran): narrative farming, AI generated images & Audio clips, hack & leaks, paying witting & unwitting cutouts (PR firms!) to spread messages, & flooding social media with content to create illusion of consensus.

So what do we do about this:
1) AI Companies need to monitor & disrupt abuse of platforms (in line w/ the Tech Accord to Combat Deceptive Use of AI)
2) Fed govt needs to ID & intervene in Foreign info ops
3) Election officials need to ramp up communications w/ voters on how elections work & where to get authentic info
4) We (the people) need to become harder targets, take a beat before getting riled up.

Remember, the majority of RU, CN, & IRN efforts target on existing divides, they're playing us against each other. If there's one thing most people hate is getting manipulated, and the Kremlin is trying its damnedest here...

cisa.gov/sites/default/…Image
Image
Image
Here's one from yesterday on a leaked Russian document detailing strategy & objectives:

- Undermine the west
- Cozy up with other Authoritarian regimes
- Flip the Rest of World against the West

We've seen plenty of this at @LabsSentinel in our analysis of DoppelGanger

washingtonpost.com/world/2024/04/…
Here's @LabsSentinel report on Doppelganger from earlier this year.

Read 6 tweets
May 19, 2023
Timely piece here by @Lingling_Wei on internal clampdown by Chinese security services on foreign businesses and cascading effects on capital flows.

A few thoughts (w/ a h/t to @KrebsStamos China expert @DakotaInDC for shaping the 🧵).
No question there’s an acceleration of hostile action against foreign companies. A combination of new laws/regs and actual enforcement (evidenced by Bain/Capvision/Mintz raids) laying the groundwork for more of the same. Question for companies building out in China: You ready?
Concentration of power in Xi allies, “securocrats,” shows a shift in priorities. Courting foreign investment and build out now subordinated to internal control and boosting national champions (even if they’re not ready for prime time).
Read 9 tweets
Dec 9, 2022
There’s a subplot in today’s RU/US exchange. Any time you do a deal with the Russians you have to think beyond the headlines. Diplomacy is messy and a bunch of other factors get woven in for more strategic, yet unrelated objectives.
The Kremlin uses prisoner exchanges, among other things, for domestic & Intl narrative shaping & influence ops. Worth noting they’ve long stoked racial divisions here and cracked down on LGTBQ communities at home. Not really breaking news but yeah, BG was a pawn here.
While there’s legit conversation on whether this was a good deal. (IMO not great, but you bring Americans home where you can. Opinions vary on the cost and how Whelan fits). But recognize there’s a game being played by Putin, w/ actions & responses gamed out on both sides.
Read 6 tweets
Dec 7, 2022
The Moore County, NC substation incident is just another in a string of attacks on the US grid. In the last 3 weeks, there've been 6 incidents at substations in the Pacific NW per industry experts. 2 involved gunfire (others vandalism & arson). But they had little impact.
We're still trying to figure out what happened in North Carolina (& out west). It could be local rubes taking potshots (happens all the time, actually). But the timing of attacks on 2 substations targeting the *right* equipment, suggests something more coordinated & concerning.
Concerning b/c domestic extremists are targeting the grid to cause chaos (or worse). In fact, in January DHS alerted industry partners to this threat per media reports. The alert indicated there'd likely only be limited damage, absent insider help or technical knowledge.
Read 9 tweets
Oct 7, 2022
I'd like to highlight a couple notable election-related alerts from @CISAgov & @FBI this week, put in context some recent news, & frame my main areas of concern for threats to the 2022 election (NB: it's not just "Midterms", as there are statewide elections).
1st, this alert from Monday reinforces prior govt position no cyber activity has prevented voting, affected counting, affected integrity of voter info. It goes further, stating that it's *unlikely* cyber itself would disrupt/prevent an election. cisa.gov/sites/default/…
That's a stronger line than I've seen before, though I've long held this view. Mainly b/c the layered controls in place & the overall resilience of the voting process (hooray for paper!) to spot/stop/prevent. Moreover, affecting the vote at scale undetected is nearly impossible.
Read 21 tweets
Oct 7, 2022
Really loving this alert from USG as it's a timely reminder China security services are still incredibly active against targets in their core areas of interest (intelligence, economic espionage, influence, & positioning for disruptive operations).
It's timely from where I sit because as @alexstamos & I have briefed a bunch of Boards & execs lately, (where most are interested in Russian threats), we're seeing an increasing interest at the Board/C-level in risks posed by China BECAUSE of Russia's invasion of Ukraine.
My line of late has been: "You know your product, your TAM, your competitors, but do you know how the rest of the world, including the Chinese security services, see you? How you might fit into their agenda or help advance their objectives." Sometimes their response is why us?
Read 10 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(