Great report by @satariano on a fake network that @Graphika_NYC (and others) found in December.

Twitter accounts with GAN faces, boosting Huawei, boosted by Huawei execs, and attacking Belgium's 5G policies.

Not enough evidence to prove who ran them.

We found this network when it was boosted by Spamouflage, a pro-China operation.

Independently, @mvanhulten of @TI_EU and @ArbiterOfTweets of @Knack found it with different methods.

It's not a friendly environment for fake campaigns, folks.

https://t.co/ASpAmH4ukz
This was the first account we found.

"Alexandre, PhD", apparently a CEO.

But no surname, no indication of what he's a CEO of, and a GAN-generated profile pic.
Alexandre's had a bit of an obsession with Belgium and #5G recently.

Especially, Belgium's security limitations on 5G providers, which are reportedly mainly about Huawei and ZTE.

Alexandre didn't like the Belgian approach much.
The account was created in 2017. It only started tweeting in early December, 2020, but its first posts were retweets of tweets from November 2017-18.

They were meant to be about VR, as in virtual reality. Oddly, one was actually about Victorian Railways in Australia. Awkward.
Pivoting off that account, we found 13 more that were behaving the same way, created around the same time, and all had GAN faces and similar bios - including a "best-selling author" who, um, didn't name any of his actual books.
Handy rule-of-thumb way to check for obvious GAN faces on multiple accounts: reduce them all to 35% opacity and superimpose them.

Not infallible, and the GAN will get better fast, but... see how the eyeballs align?
They all retweeted posts on #5G and #telcos. Character building.

Each posted 8-10 authored tweets, each a share of a web article plus a comment (usually in English), about #Belgium, #5G, #Huawei or #ZTE.
A couple of the articles were sponsored by Huawei, and labelled as such.

@satariano has some great insights into this one.
Looks like @ArbiterOfTweets has something interesting coming out soon, too.

"New and relatively explosive."

Watch this space.

https://t.co/hlvobt9Z7V
Other articles appeared independent and ran on multiple (but connected) websites.

When that happened, different fake accounts tweeted the same article from different sources - an attempt to make it harder to spot them all with a URL search?

12 assets, one article, 3 URLs.
The two most aggressively anti-Belgium articles were different, though.

They were attributed to the fake personas themselves.

Looks like the operation was going for the direct approach.
We don't have enough evidence to prove who was running the campaign. But its most important amplification (in terms of follower numbers and frequency of amplification) came from Huawei staff, including the Huawei Europe verified Twitter account.
For example, here's Huawei Europe retweeting four fake accounts that tweeted the article on Belgium being corrupt.

As far as we can tell, the article was planted on a website by one of the fake accounts.
Here are Twitter accounts attributed to Huawei Europe figures, including two verified ones, retweeting the fake accounts, which were tweeting the operation's articles.
And here.
Searching for all mentions of all 14 fake accounts over the past year, and sorting the mentioners by following using @Meltwater, these are the top amplifiers.

Note the number of times each one mentioned one of the fake accounts (red box).
Per @satariano, Huawei is investigating.

Looking forward to the results of that one.
A couple of things stand out about this campaign.

One was the theme. This looked like an exercise in dark lobbying: try and raise the heat on the Belgian government on an issue that's of interest to a corporate titan.

Business, not party politics.
That's not unexpected, but it's important.

Most of the influence ops we've tracked so far have been in the political or geopolitical space.

Dark lobbying like this will be something to watch for more.
Second thing, though, is how many people identified this.

We found it via Spamouflage. @mvanhulten and @ArbiterOfTweets spotted sponsored posts that led there.

There's a growing community of people who can spot this stuff, explain it and expose it.
That's important too.

Running influence ops may seem like an attractive option, but they're going to have to be a lot less dumb than this one was to avoid getting exposed.
These fake Twitter accounts never had much impact while active.

But their exposure landed them in @nytimes and @knack, and not in a good way.

Was the operation worth the blowback? Let's keep watching to find out.

https://t.co/u0VOfoa4KN

More from Tech

I think about this a lot, both in IT and civil infrastructure. It looks so trivial to “fix” from the outside. In fact, it is incredibly draining to do the entirely crushing work of real policy changes internally. It’s harder than drafting a blank page of how the world should be.


I’m at a sort of career crisis point. In my job before, three people could contain the entire complexity of a nation-wide company’s IT infrastructure in their head.

Once you move above that mark, it becomes exponentially, far and away beyond anything I dreamed, more difficult.

And I look at candidates and know-everything’s who think it’s all so easy. Or, people who think we could burn it down with no losses and start over.

God I wish I lived in that world of triviality. In moments, I find myself regretting leaving that place of self-directed autonomy.

For ten years I knew I could build something and see results that same day. Now I’m adjusting to building something in my mind in one day, and it taking a year to do the due-diligence and edge cases and documentation and familiarization and roll-out.

That’s the hard work. It’s not technical. It’s not becoming a rockstar to peers.
These people look at me and just see another self-important idiot in Security who thinks they understand the system others live. Who thinks “bad” designs were made for no reason.
Who wasn’t there.
On Wednesday, The New York Times published a blockbuster report on the failures of Facebook’s management team during the past three years. It's.... not flattering, to say the least. Here are six follow-up questions that merit more investigation. 1/

1) During the past year, most of the anger at Facebook has been directed at Mark Zuckerberg. The question now is whether Sheryl Sandberg, the executive charged with solving Facebook’s hardest problems, has caused a few too many of her own. 2/
https://t.co/DTsc3g0hQf


2) One of the juiciest sentences in @nytimes’ piece involves a research group called Definers Public Affairs, which Facebook hired to look into the funding of the company’s opposition. What other tech company was paying Definers to smear Apple? 3/ https://t.co/DTsc3g0hQf


3) The leadership of the Democratic Party has, generally, supported Facebook over the years. But as public opinion turns against the company, prominent Democrats have started to turn, too. What will that relationship look like now? 4/

4) According to the @nytimes, Facebook worked to paint its critics as anti-Semitic, while simultaneously working to spread the idea that George Soros was supporting its critics—a classic tactic of anti-Semitic conspiracy theorists. What exactly were they trying to do there? 5/

You May Also Like

Still wondering about this 🤔


save as q