Engage Goals: EGO0001 Expose, EGO0003 Elicit
Engage Approach: EAP0001 Collect, EAP0002 Detect
Engage Actions: EAC0012 Personas, EAC0015 Information Manipulation
Name of Element: Fake Social Media Profile with Deceptive Posts
Description of Element:
Goal: To gather information about attackers or to spread disinformation.
Approach: Monitoring interaction with the fake profile and analyzing attacker behavior.
Attackers who interact with the fake profile or its posts will be identified, and their actions will be logged. This information can be used to improve defenses and make it more difficult for attackers to gather information about employees or spread disinformation.
Technical Context:
This element can be combined with other deceptive elements, such as fake websites or deceptive network configurations, to enhance its effectiveness. It aligns with the MITRE ATT&CK technique T1566.003 (Phishing: Spearphishing via Service).
Other:
This element requires careful planning and execution to ensure that it is believable and does not damage the reputation of the organization or its employees.
Monitoring interaction with the fake profile and analyzing attacker behavior.