Hackers from Pakistan used Facebook to target people in Afghanistan with connections to the previous government during the Islamic Emirate of Afghanistans (IEA) takeover of the country in mid-August, the companys threat investigators said in an interview with Reuters.
Facebook said the group, known in the security industry as SideCopy, shared links to websites hosting malware which could surveil peoples devices.
Targets included people connected to the government, military and law enforcement in Kabul, Reuters reported. Facebook said it removed SideCopy from its platform in August.
The social media company, which recently changed its name to Meta, said the group created fictitious personas of young women as "romantic lures" to build trust and trick targets into clicking phishing links or downloading malicious chat apps. It also compromised legitimate websites to manipulate people into giving up their Facebook credentials.
"Its always difficult for us to speculate as to the end goal of the threat actor," said Facebooks head of cyber espionage investigations, Mike Dvilyanski. "We dont know exactly who was compromised or what the end result of that was."
Major online platforms and email providers including Facebook, Twitter Inc, Alphabet Incs Google and Microsoft Corps LinkedIn have said they took steps to lock down Afghan users accounts during the IEAs swift takeover of the country.
LINK: https://www.ansarpress.com/english/23939
TAGS: