Inexplicably giving people praise, strange shops appearing in favorites, logging in from different places to send advertisements … Who moved my social account?
▲ Dialogue record between reporters and platform merchants.
▲ Comments of netizens on "OYE- Wang".
"My Weibo account has automatically followed more than 20 people for no reason today", "I haven’t used Weibo for a year, how come there are more than 50 people I haven’t followed" … … Recently, a large number of netizens reported that their Weibo accounts were suspected of being "manipulated".
The reporter found that, in addition to Weibo’s praise or attention to people he didn’t know, many netizens also encountered "paranormal" such as strange goods and shops in Taobao’s collection and repeated prompts on WeChat accounts to log in from different places.
Is the personal account stolen? Or did the merchant shop use the means? Or is the network black ash production playing tricks? The reporter conducted an investigation into this.
My account is "ghost"
Personal social platforms and online shopping platforms are suspected of being "manipulated". Have you ever encountered such "supernatural" incidents?
Many netizens reported that their Sina Weibo accounts always give people praise for no reason, and they also pay attention to a number of marketing accounts; Personal Taobao account collection shop interface will also inexplicably collect some strange shops. What is even more annoying is that after canceling the attention or collection, new attention or collection content will appear after a period of time.
"My Weibo account has automatically followed more than 20 people for no reason today", "Why does my Weibo always pay attention to people I haven’t paid attention to recently" and "Weibo has been useless for a year, how come there are more than 50 people I haven’t paid attention to" … … Recently, when searching on Sina Weibo, the reporter found that a large number of netizens reported that their accounts were abnormal. Some netizens posted that they hadn’t logged in for several months, but the number of followers increased from more than 70 to more than 550, and they praised a lot of Weibo content.
This kind of situation has appeared as early as a few years ago. In 2017, a netizen named "OYE- Wang" posted a content saying, "My Weibo has always been praised for no reason recently, and I have never seen these Weibo. Give me automatic attention to some sales accounts for shopping. Is Weibo using black technology or am I poisoned? "
At that time, the netizen’s experience was widely praised. Some people said that they had encountered a similar situation, even if they changed their passwords and set up login protection.
In Sina Weibo, the topic of "Sina Weibo inexplicably pays attention to many people he doesn’t know" also appeared.
Not only Sina Weibo, a social platform, but also some online shopping platforms have similar anomalies.
In the first half of 2019, after the reporter browsed the women’s clothing on the main page of Taobao, for two consecutive days, he would automatically pay attention to some unknown shops in the column of "Collection Shops".
Although some netizens constantly reflect the related problems of social platforms and online shopping platforms on the Internet, the problems have not been solved for a long time. Some bloggers in online celebrity have specially released videos on how to deal with the problem of "being manipulated" in Weibo and Taobao accounts.
The reporter found that on social platforms such as Weibo, most of the objects of automatic attention and praise are marketing accounts, stars and movie accounts, and even some obscene pornographic content; On the online shopping platform, the objects of automatic collection are some shops with small transaction volume and not long after opening.
Some netizens reported that Weibo’s praise and attention reflected the blogger’s attitude towards certain things to a great extent, and even reflected a person’s "three views". For this reason, some users also prefer to trace the blogger’s own "personality portrait" with the help of likes.
When an account likes or forwards a lot of inferior and pornographic content, it will not only discredit the user, but also easily trigger the official control rules in Weibo, resulting in the closure of the account and other adverse consequences.
In addition, some WeChat users reported to reporters that from time to time, their WeChat accounts will be prompted with "Your account is logged in in a different place", and they will send advertisements to their friends without their knowledge, and even pull strangers into their own group chat to send advertisements.
"Advertising to others has seriously affected my normal life and work, and I have always been reminded that my WeChat account is logged in in a different place. I am worried about whether my account has been stolen." One user said with great concern.
Ten thousand Taobao fans, 1,500 yuan
"If you want to see how hot a star is, just look at his Weibo fans", which was once regarded as the "truth" in the online social circle. The number of fans in Weibo represents the star’s influence, which is directly linked to Ta’s ability to attract gold. In the past two years, some self-media will also release news such as "xx star fans broke 100 million" and "the top three fans".
The vast buyer’s market has attracted some individuals and enterprises to buy praise and powder, and it has been repeatedly banned. "zombie fans" has become a thing of the past, and now it has become a gimmick to help buyers earn traffic by manipulating real accounts.
— — From "zombie fans" to "Live Powder", some merchants provide such "like and add powder" service. As early as 10 years ago, the media exposed the situation that "10,000 fans in Weibo charge 50 yuan" and "Taobao surprised Weibo fan shops: 1 yuan money can buy 10 fans", and Baidu Encyclopedia also appeared special labels such as "Weibo Powder Brush Company" and "Fans Trading".
The reporter’s search found that many QQ groups carry out transactions under the banner of "selling Weibo accounts", and the trading groups such as "Sina Weibo trumpet wholesale" and "Weibo real-time hot comment number generation" are dizzying, and the number of these groups ranges from 300 to 2,000.
After the reporter joined a trading group, the page kept popping up advertisements that were pink and liked, and various businesses such as comments, pink and likes were clearly priced. Some advertisements specifically indicate "real people" to share, like and comment, and the content of the advertisement is clear: "Weibo brushes fans, 10,000 fans 25 yuan".
— — "Buy traffic" for Taobao stores, and also let users "collect without feeling". The reporter saw in Baidu search that some advertisements under the banner of "real traffic platform" are located at the top of the browsing page, claiming that the service contents include "improving store traffic" and "baby manual collection plus shopping cart".
The reporter entered a company’s website, and its introduction content wrote "Providing real traffic improvement services for online stores such as Taobao, Tmall, JD.COM and Pinduoduo", "The company’s traffic is real and effective, and the buyer’s accounts are reviewed one by one, as long as the real name number is excluded" and "One-stop traffic solution — — Taobao Traffic, JD.COM Traffic, Pinduoduo Traffic, Live Mission, Alibaba Mission, Baby Collection, Store Collection, Baby Purchase, Like Mission, Talent Mission, etc.
Subsequently, the reporter consulted a seller in the name of the amount of attention that Taobao stores need. The other party said that they can increase the attention of Taobao stores, the popularity of live broadcasts and the purchase of goods.
"If you buy fans of Taobao shop, the price of adding 10,000 fans is 1,500 yuan." The other party said that he only needs a reporter to send him a link to the store or goods, and all he runs are "real fans", so there is no need to worry about being officially closed by Taobao.
In addition, the reporter found that there are some businesses that provide the promotion function of "directed access". "To put it simply, I will give you a link, which already contains the information about a commodity or store ‘ Collection plus purchase ’ Action, when you click the link, the system will automatically complete ‘ Collection plus purchase ’ Operation. " Insiders revealed to reporters that after optimization, such operations can be completed without users’ awareness, which is why some people say that "shops or goods that they have never visited appear in their favorites".
— — You want to clean up "zombie fans", but the online black ash product has targeted your WeChat account. The reporter learned that some WeChat users are eager to know "who deleted themselves" in their friends list, so they turned to businesses in the online market under the banner of "cleaning up zombie fans" for help.
In the process of "cleaning powder", merchants often require users to scan the QR code that can authorize them to log in to the user’s WeChat, so as to obtain the user’s permission to log in remotely. In this context, some unscrupulous merchants leave a "back door" in the user’s WeChat account while completing the so-called "powder cleaning" task, so as to continue to "manipulate" the user’s account after the service.
There are also some WeChat users who rashly listen to the temptation of criminals and "rent" their own micro-signals into QR codes, receipt and payment QR codes or group QR codes for others to use, with the intention of obtaining small economic benefits from them. The criminals just take advantage of the psychology of these users to illegally take over or even directly steal users’ WeChat accounts through technical means.
Beware that WiFi is equipped with a "bug"
Can you improve the ranking of your store by increasing the browsing collection of goods or stores? Does Taobao allow traffic transactions? Why does my account collect and buy strange goods and shops without knowing it? The reporter sent a letter to Taobao official.
The Taobao team said that "traffic trading" behavior belongs to the common black and gray production and sales in the Internet industry. In web search and social software, users often buy all kinds of junk traffic through the internet, falsify their own traffic, and even use it for malicious traffic attacks. All along, Taobao has forbidden any form of forgery, hijacking, trading of malicious traffic, and it is not allowed to provide such services. In the ranking of goods and stores, Taobao pays more attention to the quality of goods, customer service ability, logistics efficiency and other factors that can effectively improve consumers’ shopping experience.
In addition, Taobao believes that there are two main reasons for user accounts to "inexplicably" collect strange goods and shops: First, some consumers rent Taobao accounts for petty profits and actively provide them to black ash gangs to create false traffic; Second, some black and gray gangs will hijack users’ traffic.
"Whether it is Weibo, WeChat or Taobao account, when it appears for no reason ‘ Non-self abnormal operation ’ This kind of ‘ The paranormal phenomenon ’ At that time, there must be a security risk in the account. " Guo Yao, the general manager of Shanghai Anshi Network Technology Co., Ltd. and a senior network security expert, said that accessing unauthorized malicious WiFi, traffic hijacking, malicious code attacks, Trojan virus in mobile devices, and account weak password being cracked may all cause such "supernatural phenomena". The most common reason why personal accounts are used is that data is hijacked due to accessing unauthorized malicious WiFi.
The so-called malicious WiFi sniffing means that the attacker lures the victim to access the malicious WiFi by forging an unauthorized WiFi hotspot. Because WiFi is built by the attacker, it can obtain all the data packets sent and received by the user when connecting to the WiFi. "It’s like someone installed a bug on WiFi. As long as you access this WiFi, all the communication information between you and others will be monitored." Guo Yao said.
In addition to malicious attackers forging WiFi to attack, household WiFi and WiFi in some public places may also be breached and "eavesdropped" by criminals due to unsafe configuration and weak passwords. When using these WiFi to log in to the accounts of online social platforms or e-commerce platforms, information such as account passwords may be mastered by others. The criminals then further invaded the user’s account and performed "ghost operations."
In addition, some users may also have security risks when they use the "brand-name wireless router" purchased online. "Network black ash production has formed a complete industrial chain upstream and downstream, and some miscellaneous routers may be installed before leaving the factory ‘ Back door ’ The manufacturer will monitor the user’s data to and from a website according to the demand, so as to obtain the user’s account control on a specific platform. " Guo Yao said.
If the user does not use WiFi, is there a corresponding security risk? A security engineer of a communication operator who did not want to be named told reporters that there is also the risk of being eavesdropped when using mobile data traffic to access the network platform.
"There is data interaction among users, communication operators and network platform servers, so that users can see all kinds of content on their mobile phones," said the engineer. "The data sent and received from operators are encrypted, but the data security protection within the network platform server and between users is relatively weak, which leaves an opportunity for criminals."
The engineer revealed that some network platforms will enter into cooperative relations with content distributors, so as to reduce the network load of the main server and improve the network response speed, but this is equivalent to adding a checkpoint to the data interaction path between users and the network platform servers. Some content distributors, in order to achieve commercial purposes, entrain "private goods" in the data they interact with users, so that users can perform certain operations without any awareness, which is also a common way of traffic hijacking.
Individuals should do enough safety homework.
In recent years, the state has continuously strengthened the system construction at the level of personal information protection. For example, the promulgation and implementation of the Network Security Law and the Civil Code put forward more detailed provisions on the protection of personal information, and a number of laws and regulations such as the Personal Information Protection Law and the Data Security Law are also coming out.
At the same time, local public security departments have further strengthened their investigation and punishment. In 2019, the police in Nanjing and Nantong, Jiangsu investigated and dealt with two cases of infringing citizens’ personal information by using dark networks, and seized tens of millions of personal information of citizens; In December 2018, the police in Kaifeng, Henan Province destroyed a criminal gang that infringed on citizens’ personal information, and arrested more than 80 "internal ghosts" involving telecom operators, community cadres and employees in the logistics industry … …
The interviewed experts believe that in daily life and work, users themselves should also have certain network security literacy.
"Don’t lend your accounts on WeChat, Weibo, Taobao and other online platforms, and don’t trust the so-called ‘ Green cleaning up zombie fans ’ Advertising. " He Yanzhe, deputy director of the evaluation laboratory of Xin ‘an Center of China Institute of Electronic Technology Standardization, reminded users that these risk prevention measures can not only protect the security of users’ online platform accounts to a certain extent, but also prevent users from unknowingly participating in illegal financial activities such as online money laundering.
At the same time, for mobile terminals such as mobile phones and personal computers, you should use professional anti-virus software to kill viruses regularly, and don’t click on links from unknown websites at will, let alone fill in your own network platform account information on strange websites.
"In order to prevent forgetting the password, some users like to set the account passwords of different network platforms to be the same, which also poses certain security risks." He Yanzhe suggested that users can add some uppercase English letters or punctuation marks to the account password settings of different network platforms, which will not easily forget the password, but also increase the security of the password.
"Don’t see the free WiFi ‘ Rub ’ , because this is likely to be criminals in ‘ Fishing ’ 。” Guo Yao reminded users who like to "surf the internet" in public areas to use the mobile data traffic that comes with their mobile phones as much as possible in public places, and not to scan the code to download mobile phone applications with unknown security at will.
In addition, Guo Yao also suggested that consumers should choose brand products produced by regular manufacturers as much as possible when purchasing wireless routers, and use complex passwords as much as possible when installing routers to improve the security of space networks. (Reporter Yan Zhihong, Yan Huiying)