Virtual Event: Threat Detection and Incident Response Summit - Watch Sessions
Connect with us

Hi, what are you looking for?



Twitter, Facebook Target State-Linked Accounts Made to Manipulate

Facebook and Twitter on Friday said they had blocked multiple government-backed manipulation operations around the world, several of which favored US President Donald Trump, as part of a crackdown on state-sponsored propaganda efforts.

Facebook and Twitter on Friday said they had blocked multiple government-backed manipulation operations around the world, several of which favored US President Donald Trump, as part of a crackdown on state-sponsored propaganda efforts.

Twitter said it had blocked some 88,000 accounts linked to Saudi state-backed “information operations”, in violation of its manipulation rules.

Separately, Facebook said it had blocked a network in Vietnam and the United States which posted pro-Trump messages aimed at US citizens, along with another network targeting domestic audiences in the country of Georgia.

It comes as social media giants have been struggling in the face of state-backed disinformation efforts, often using automated accounts or “bots” to manipulate the platforms, amplifying their own messages while disparaging opponents.

Most of the accounts blocked by Twitter on Friday were in Arabic and aimed at “amplifying messages favorable to Saudi authorities,” but that some English language content was aimed at “Western audiences.”

“Our internal analysis shows the network was involved in various forms of platform manipulation, targeting discussions related to Saudi Arabia and advancing their geopolitical interests on the world stage,” the Twitter safety team said in a blog post.

Twitter said it released details on 5,929 accounts which it called a “representative sample” of the 88,000 suspicious accounts.

Advertisement. Scroll to continue reading.

Twitter’s investigations traced the source of the coordinated activity to the Saudi-based social media marketing firm Smaat, which has been permanently blocked from the platform.

Smaat was working for “high-profile individuals,” Twitter said, and several government departments in Saudi Arabia, using automated tools “to mask the overall platform manipulation originating from these accounts.”

Some of the tweets in question date back to 2016 and appear to be supportive of President Donald Trump or his campaign.

One dated November 11, 2016 showed a photo of billionaire George Soros — a frequent target of conservatives — and said Trump should put him “on the FBI most wanted list.”

Another from October 2016 showed a picture of former president Bill Clinton and said: “You don’t even need these polls, Donald Trump won. You can read it on Bill Clinton’s face.”

– Separate effort on Facebook –

Facebook said the effort originating in Vietnam was traced to the multi-language media group Epoch Times, which is linked to the Falun Gong spiritual movement, and a US media outlet called BL, which has been posting pro-Trump messages.

The California-based company added that it removed more than 600 accounts on Facebook and Instagram.

“The people behind this activity made widespread use of fake accounts — many of which had been automatically removed by our systems — to manage pages and groups, automate posting at very high frequencies and direct traffic to off-platform sites,” Facebook security chief Nathaniel Gleicher said.

“The BL-focused network repeatedly violated a number of our policies, including our policies against coordinated inauthentic behavior, spam and misrepresentation, to name just a few.”

The accounts posted memes and other content on conservative ideology and hot button US political issues including Trump’s impeachment, elections, trade, family values and freedom of religion, Gleicher said.

– Struggling against state actors –

Both Facebook and Twitter have in the past acted against manipulation efforts from Russia, Iran and other countries. 

A recent report by the Oxford Internet Institute found manipulation efforts have doubled over the past two years and are being used in 56 countries. 

The researchers said “sophisticated state actors” from at least seven countries are working outside their borders on global foreign influence operations, using Facebook and Twitter.

The report identified the countries as China, India, Iran, Pakistan, Russia, Saudi Arabia and Venezuela.

Written By

AFP 2023

Click to comment

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

SecurityWeek’s Threat Detection and Incident Response Summit brings together security practitioners from around the world to share war stories on breaches, APT attacks and threat intelligence.


Securityweek’s CISO Forum will address issues and challenges that are top of mind for today’s security leaders and what the future looks like as chief defenders of the enterprise.


Expert Insights

Related Content


WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...


The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.


Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.


As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.


A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...


Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.


Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.