Threat Theaters

πŸ“£ Disinformation / IO theater

Detecting and exposing state-sponsored disinformation and information operations: coordinated inauthentic behavior, bot networks, laundered narratives, and synthetic media. Manufactured consensus erodes trust, polarizes societies, and shapes conflict.

Live indicators

0
in this theater

High severity

0
score β‰₯ 0.75 (top 60)

Actors tracked

6
documented

Mapped sources

1
in catalog

🔄 Live Datasets & APIs (1 key-free Β· ingestible)

Dataset / APIFormatEndpoint
Pushshift / Redditjsonhttps://api.pushshift.io/collect
Run Auto-Collect Datasets Hub Import

📜 Disinformation / IO Playbook

  1. Harvest suspected IO content and accounts from SOCMINT feeds, DFRLab/Graphika reporting, and GDELT.
  2. Detect coordinated inauthentic behavior via posting-cadence, asset-reuse, and network-graph analysis.
  3. Trace narrative provenance, amplifier tiers, and deepfake/generative-media indicators.
  4. Attribute campaigns to operators (Doppelganger, Spamouflage, Ghostwriter) via domain and TTP overlap.
  5. Publish an IO-exposure report with narrative maps, reach estimates, and confidence grading.
  6. Refer assets for platform takedown and issue pre-bunk and counter-messaging guidance.

⚡ AI Skills & Automation

🤖 Copilot brief⚡ AI SkillsResolveEnrichAuto-CollectHuntReportExport

Automate unattended via the cron pipeline (collect → ingest → resolve → enrich → score → alert).

🎯 Add to case

Attach Disinformation / IO (Mission Domain) and pull all linked entities:
Workstation Β· Copilot Β· AI Skills Β· Automation Β· Playbooks Β· Lookups Β· Docs Β· Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php