Does Fake News Affect Threat Intelligence?

The concept of ‘fake news’ has plagued media for the past couple of years, but what is its impact upon business-level cyber-security?

Recently a roundtable, hosted by the Threat Intelleigence experts at Anomali, on the concept of ‘Hybrid Threats’, which was chaired by former GCHQ director turned professor Sir David Omand, and attended by a selection of industry names.

The concept of Hybrid Threats, according to Omand, was not one he is keen on and he claimed that he preferred the “old fashioned term subversion, where one country tries to influence another.” He said that this usually involved three tactics: intimidation, propaganda and dirty tricks.

The use of these tactics, he claimed, leads to “erosion in confidence,” while propaganda “restricts free speech when government has to have a reputation for truth."

All of this may not seem to be too relevant to cyber-security, but in recent instances where arrests have been made over interference in the 2016 US election, the concept of what is real and what is not needs to be a serious factor, and in the case of threat intelligence, knowing what is a genuine alert and what is fake can paint a much clearer picture of a threat.

This moved the discussion on to the concept of fake news, as Omand said:

“Threat intelligence is needed to pull together different bits of information from different sectors and see the pattern, or if it is just a coincidence.”

Valentina Soria, head of intelligence at Morgan Stanley, said that as a threat intelligence practitioner, her job is to interpret threat intelligence and make sure that the difference between fake and real news is determined.

She claimed that hybrid threats have further complicated the ability to make sense of it all, as at the heart of threat intelligence is credibility of the information you rely on, and propagation of fake news has made it much more difficult.

“We can see the potential impact that the fake news phenomena can have,” she said, claiming that threat intelligence can help a business understand threats and form a strategy, but ‘false flags’ and threat actors using different tools mean it can be difficult for a business to focus on what is a genuine threat to the business.

In an open discussion on fake news, cyber psychologist Dr Mary Aiken said that there is not a way to legislate around this, but there is an opportunity for ‘cyber ethics’ in the social media models and for the social media platforms to become more responsible players.

“When we look to having fact checking, and false claims on what a politician said, there is an absence of critical thinking to the bombardment of young people with fake and false information and it becomes a modus operandi of ‘that’s ok, everything is fake’. When a group of people who will become the policy makers in time, what will their frame of reference be and what will be their critical thinking?”

Hugh Njemanze, CEO of Anomali, said that there was a responsibility for social media algorithms to be more transparent to see what has happened and investigate, and transparency will enable that.

Soria added that it is quite hard to demonstrate the real life cause, impact and effect of fake news, especially when this could have influenced voters ahead of an election.

Aiken said that a real world sophisticated model can be created, but are they still fit for purpose in cyber-environments? That is why models need to be invested in that can make sense of human behavior and manipulation.

The conversation moved on to filtering and the need for automated tools to do such a job, but ultimately the problem remains the same when it comes to determining what is a genuine threat and what is not. Whether it is fake news or a false flag, it requires a person’s attention to determine what is important for the business.

As Soria said, threat intelligence processing involves determining a pattern that affects your business, and fake news could be the square peg trying to fit into the round hole.

Infosecurity Magazine: 

You Might Also Read:

Fake News Is A Cybesecurity Threat For Businesses:

Prime Minister Wants A 'fake news' Rapid Response Team:

 

« Autonomous Cars Hit The Road In California
Cybercriminals Use Fake Websites »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

Infosecurity Europe, 3-5 June 2025, ExCel London

Infosecurity Europe, 3-5 June 2025, ExCel London

This year, Infosecurity Europe marks 30 years of bringing the global cybersecurity community together to further our joint mission of Building a Safer Cyber World.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Fuel Recruitment

Fuel Recruitment

Fuel Recruitment is a specialist recruitment company for the IT, Telecoms, Engineering, Consulting and Marketing industries.

Information Security Group (ISG) - Royal Holloway

Information Security Group (ISG) - Royal Holloway

The Information Security Group, Royal Holloway, University of London, is an Academic Centres of Excellence in Cyber Security Research.

Kramer Levin

Kramer Levin

Kramer Levin is a full-service law firm with offices in New York and Paris. Practice areas include Cybersecurity, Privacy and Data Protection.

NTOP

NTOP

NTOP develop high-quality network traffic analysis and DDoS protection software used by small individuals as well by large telecom operators.

ThreatSpike Labs

ThreatSpike Labs

ThreatSpike Labs provides the first end-to-end fully managed security service for companies of all sizes.

NLnet Labs

NLnet Labs

NLnet Labs is a not-for-profit foundation with a long heritage in research and development, Internet architecture and governance, as well as security in the area of DNS and inter-domain routing.

Horiba Mira

Horiba Mira

Horiba Mira is a global provider of automotive engineering, research and test services including services and solutions for automotive cybersecurity.

InfoSec Conferences

InfoSec Conferences

InfoSec Conferences is an online directory of infosec conferences. We list every single Information Security conference, event and seminar within every niche in Cybersecurity.

Fifosys

Fifosys

Fifosys is a professional technology infrastructure specialist, delivering a broad portfolio of high quality technical and strategic managed services.

AMSYS Innovative Solutions

AMSYS Innovative Solutions

AMSYS is a full-service, 24/7/365 IT solutions, Cybersecurity & Managed Service Provider.

EasyDMARC

EasyDMARC

EasyDMARC deliver the most comprehensive product for anyone who strives to build the most secure possible defence system for their email ecosystem.

AHAD

AHAD

AHAD provides cybersecurity, digital transformation, and risk management services and solutions to Government, Fortune 500, And Start-Up Companies in the Middle East region.

Interactive

Interactive

Interactive are a leading Australian IT service provider with services in Cloud, Cyber Security, Data Centres, Business Continuity, Hardware Maintenance, Digital Workplace, and Networks.

OneCollab

OneCollab

OneCollab, your unwavering ally in the dynamic landscape of IT services and cybersecurity.

Mogwai Labs

Mogwai Labs

Mogwai Labs deliver cutting-edge penetration tests, security assessments and trainings, to safeguard your applications, networks and cloud environments from cyber threats.

DNS Research Federation (DNSRF)

DNS Research Federation (DNSRF)

DNSRF's mission is to advance the understanding of the Domain Name System's impact on cybersecurity, policy and technical standards.