DigitalMANIPULATIVE
Leak Forgery
What it is
Inserting forged or altered documents into a genuine leak, or fabricating a leak outright, so that the authenticity of the real material vouches for the fake and the forgery reaches the public with the credibility of a disclosure.
How it works
Real-world examples
- •The Zinoviev letter, published by the Daily Mail four days before the 1924 British general election, purported to show the Comintern directing British communists; the Foreign Office's 1999 historical review concluded it was almost certainly a forgery that reached the press through intelligence contacts.
- •In September 2004, CBS News aired memos said to be from George W. Bush's National Guard commander; typographic analysis by bloggers and experts showed they were likely produced with modern word-processing software, CBS retracted the story, and an independent panel faulted the network's verification.
- •The 2017 MacronLeaks dump released hours before the French presidential runoff mixed genuine campaign emails with fabricated documents, and the Citizen Lab's Tainted Leaks report the same month showed doctored documents inserted into the stolen emails of a critic of the Kremlin.
- •Graphika's 2020 Secondary Infektion report documented a six-year Russian operation that repeatedly planted forged letters and documents attributed to Western officials on blogs and forums across more than 300 platforms, most of which gained little traction — a reminder that the technique fails more often than it succeeds.
Historical case studies
Ethical guidelines
- ●Altering a leaked document is fabrication of evidence, and releasing it alongside genuine material adds a second deception about the whole.
- ●Newsrooms that receive leaked archives owe readers document-level verification — provenance, metadata, and corroboration for each item quoted — not a judgment about the archive.
- ●Publishing an explosive document on election eve, when it cannot be checked before votes are cast, is itself a choice that serves the forger.
How to defend against it
- ►Verify the specific document, not the dump: ask whether the item being quoted has been authenticated by someone independent of the leaker, and treat authenticated neighbors as no evidence about it.
- ►Look for the outlier — the one document that is dramatically more damaging than everything around it, mentions names the rest do not, or exists only in image form — and demand its provenance first.
- ►Check metadata and typography where files are available; the Killian memos and several Secondary Infektion forgeries failed on fonts, formatting, and file histories.
- ►Apply Rid's warning to yourself: a leaked document that confirms exactly what you suspected deserves more scrutiny, not less, because you are the audience the forgery was built for.
- ►Wait for the second source: genuine leaks are usually corroborated by other reporting within days, while forgeries depend on the first hours.
References
- Hulcoop, A., Scott-Railton, J., Tanchak, P., Brooks, M., & Deibert, R. (2017). Tainted Leaks: Disinformation and Phishing With a Russian Nexus. Citizen Lab, Munk School of Global Affairs, University of TorontoThe documented alteration of stolen documents and their release among genuine files.
- Donovan, J., & Friedberg, B. (2019). Source Hacking: Media Manipulation in Practice. Data & Society Research Institute · linkLeak forgery as one of the four source-hacking tactics.
- Bennett, G. (1999). A most extraordinary and mysterious business: The Zinoviev Letter of 1924. Foreign and Commonwealth Office, Historians, History Notes No. 14The official historical review concluding the Zinoviev letter was almost certainly forged.
- Nimmo, B., François, C., Eib, C. S., Ronzaud, L., et al. (Graphika) (2020). Secondary Infektion. GraphikaThe six-year forged-document operation across hundreds of platforms and its generally low traction.
- Jeangène Vilmer, J.-B. (2019). The Macron Leaks Operation: A Post-Mortem. Atlantic Council and IRSEMThe mixing of forged and genuine documents in the 2017 dump.
Last reviewed
Suggest a correctionRelated Articles
Dark Patterns in UX: How Apps Manipulate Your Behavior
Subscription traps, misleading interfaces, and engineered addiction. Understanding the persuasion techniques built into the apps you use every day.
7 min read
OSINT for Beginners: Open Source Intelligence Explained
Open Source Intelligence (OSINT) uses publicly available data to gather actionable insights. Here is a beginner-friendly guide to what OSINT is and how it is used.
10 min read