Threat Actor Parallels: Cyber vs Disinformation

Created by Jackie Singh (Github)

Distribution Infrastructure

  • Botnet Networks
  • Domain Generation
  • Platform Exploitation
  • Automated Distribution
  • Compromised Influencers
  • Affiliate Networks
  • Sockpuppet Networks
  • Pop-up News Sites
  • Platform Manipulation
  • Content Automation
  • Influencer Amplification
  • Multi-Level Marketing

Evasion Techniques

  • Polymorphic Code
  • Process Injection
  • Anti-Analysis Techniques
  • Fileless Execution
  • Content Mutation
  • Narrative Injection
  • Anti-Verification Methods
  • Ephemeral Campaigns

Targeting Methods

  • Social Engineering
  • Trust Exploitation
  • Payload Testing
  • Target Profiling
  • Psychological Targeting
  • Authority Mimicry
  • A/B Testing
  • Demographic Profiling

Persistence Mechanisms

  • Backup C2 Channels
  • Network Embedding
  • Infrastructure Resilience
  • Long-term Access
  • Alternate Platforms
  • Network Integration
  • Distribution Resilience
  • Sustained Presence