Cyberespionage attacks leveraging fake Facebook and Instagram accounts have been launched by several advanced persistent threat groups against individuals in South Asia, according to
The Hacker News.
Social engineering has been primarily used for the discovered cyberespionage campaigns, a report from Meta showed. Meta reported that it was able to take down 120 Facebook and Instagram accounts used by a Pakistan-based APT operation targeting the Indian military and Pakistani Air Force with the GravityRAT malware, while nearly 110 Facebook and Instagram accounts used by Bahamut APT in Android malware attacks against Indian and Pakistani government workers, military, and activists were also disrupted.
Aside from purging Indian threat operation Patchwork's 50 Facebook and Instagram accounts to compromise targets in India, Pakistan, Sri Lanka, and China, Meta was also able to disrupt six other adversarial networks originating from the U.S., China, Iran, Georgia, Venezuela, Togo, and Burkina Faso.