In a concerning development for digital security, cyberattacks focused on electoral infrastructure have escalated in recent years, aiming to manipulate electoral outcomes or distort the electoral process. A significant escalation occurred on November 19, 2024, when a cyberattack targeted TikTok influencers, aiming to influence voter sentiment across Romania.
The Romanian Intelligence Service (SRI) has confirmed that this attack directly impacted the country’s election infrastructure, resulting in unauthorized access to sensitive data, including login credentials for election-related websites and vital electoral information. Alarmingly, the compromised data was leaked on a Russian hacking forum soon after the attackers breached the network.
This attack coincided with the first round of Romania’s presidential elections, highlighting the potential link to a broader effort to undermine democratic processes. Cybersecurity experts speculate that the breach may have been facilitated through a phishing campaign targeting individuals within organizations linked to the electoral system or by exploiting vulnerabilities in an SQL server. SRI has reported that, leading up to the election, over 85,000 cyberattacks were detected against the nation’s electoral framework.
The breached data reportedly included credentials for websites such as bec.ro, roaep.ro, and registrulelectoral.ro, thereby compromising the integrity of Romania’s electoral system.
In addition to the electoral attack, several TikTok influencers were also targeted. Investigations revealed that some influencers were paid to endorse Calin Georgescu as the predicted victor of the elections. Meanwhile, accounts of other influencers were hacked without their consent, with the breaches persisting for approximately 45 to 90 minutes before the issue was identified and rectified by TikTok, which subsequently informed the affected users.
The nature of this campaign suggests an intentional effort to spread disinformation, fake reviews, and fraudulent polling results. By leveraging these accounts, the attackers generated significant engagement on manipulated content, aiding in shaping public perception during the critical pre-election period.
The Romanian Foreign Intelligence Service (SIE) has explicitly pointed the finger at the Russian government for orchestrating this operation, suggesting that it forms part of a broader strategy to destabilize NATO alliances and retaliate against Ukraine amid ongoing geopolitical tensions.
Compounding these concerns, there are indications that TikTok could face a potential ban in the United States following the inauguration of President Donald Trump on January 20, 2025, adding another layer of complexity to the situation surrounding the platform.
Ad