{"id":23473,"date":"2025-04-21T19:28:08","date_gmt":"2025-04-21T19:28:08","guid":{"rendered":"https:\/\/socialmedialab.ca\/web\/?p=23473"},"modified":"2025-04-22T13:24:54","modified_gmt":"2025-04-22T13:24:54","slug":"the-hidden-game-how-scammers-use-chameleon-ads-to-bypass-metas-moderation","status":"publish","type":"post","link":"https:\/\/socialmedialab.ca\/web\/2025\/04\/21\/the-hidden-game-how-scammers-use-chameleon-ads-to-bypass-metas-moderation\/","title":{"rendered":"The Hidden Game: How Scammers Use &#8220;Chameleon Ads&#8221; to Bypass Meta&#8217;s Moderation"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">Over the last few weeks, a series of stories by&nbsp;<a href=\"https:\/\/www.theguardian.com\/world\/2025\/apr\/18\/canada-fake-political-content-social-media\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Guardian<\/a>,&nbsp;<a href=\"https:\/\/www.cbc.ca\/news\/canada\/more-fake-cbc-ads-investigation-1.7494923\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">CBC<\/a>, and&nbsp;<a href=\"https:\/\/thelogic.co\/news\/facebook-deepfakes-mark-carney-canada-election\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Logic<\/a>&nbsp;has highlighted an explosion of fraudulent Facebook and Instagram ads that mimic the likeness of high-profile<\/span> Canadian politicians and news outlets. Deepfake videos and counterfeit CBC-style headlines show Mark Carney, Pierre Poilievre, and other public figures promoting cryptocurrency &#8220;programs&#8221; or instant-wealth schemes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although Meta&#8217;s moderators eventually remove many of these impostor spots, these scams continue to thrive on Facebook and Instagram even as you read this. To stem the anticipated rise of deepfakes on their platforms ahead of the April 28 federal election, Meta recently introduced a new rule requiring advertisers to <a href=\"https:\/\/www.reuters.com\/technology\/artificial-intelligence\/meta-doubles-down-political-ads-that-use-ai-ahead-canada-elections-2025-03-20\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">declare AI-generated or manipulated political content<\/a>. However, these measures rely on scammers\u2019 honesty and are reactive, arriving far too late to protect users.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">With Canada\u2019s election just days away, the continued appearance of deepfake ads reveals a serious flaw in Meta\u2019s ad-review system. If fraudsters can repeatedly bypass detection, it suggests the platform\u2019s current safeguards are not equipped to catch even basic forms of manipulation, let alone more advanced influence operations. This vulnerability poses a real risk to election integrity and highlights the urgent need for stronger oversight and transparency.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To shed more light on this vulnerability in our information ecosystem, the <a href=\"https:\/\/socialmedialab.ca\/web\/\">Social Media Lab<\/a> has been examining the tactics used by scammers. What we found reveals a worrying vulnerability in the platform&#8217;s ad infrastructure.<\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<div class=\"wp-block-cover\"><img decoding=\"async\" width=\"1002\" height=\"1320\" class=\"wp-block-cover__image-background wp-image-23478\" alt=\"A sample scam ad\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4.jpg\" data-object-fit=\"cover\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4.jpg 1002w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4-228x300.jpg 228w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4-777x1024.jpg 777w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4-768x1012.jpg 768w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4-696x917.jpg 696w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image4-319x420.jpg 319w\" sizes=\"(max-width: 1002px) 100vw, 1002px\" \/><span aria-hidden=\"true\" class=\"wp-block-cover__background has-background-dim\"><\/span><div class=\"wp-block-cover__inner-container is-layout-flow wp-block-cover-is-layout-flow\">\n<p class=\"has-text-align-center has-large-font-size wp-block-paragraph\">A sample scam ad<\/p>\n<\/div><\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<div class=\"wp-block-cover\"><img decoding=\"async\" width=\"1304\" height=\"934\" class=\"wp-block-cover__image-background wp-image-23479 size-full\" alt=\"A fake &quot;news&quot; website\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image.jpg\" data-object-fit=\"cover\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image.jpg 1304w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-300x215.jpg 300w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-1024x733.jpg 1024w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-768x550.jpg 768w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-696x499.jpg 696w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-1068x765.jpg 1068w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image-586x420.jpg 586w\" sizes=\"(max-width: 1304px) 100vw, 1304px\" \/><span aria-hidden=\"true\" class=\"wp-block-cover__background has-background-dim\"><\/span><div class=\"wp-block-cover__inner-container is-layout-flow wp-block-cover-is-layout-flow\">\n<p class=\"has-text-align-center has-large-font-size wp-block-paragraph\">A fake &#8220;news&#8221; website <\/p>\n<\/div><\/div>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"642\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-1024x642.png\" alt=\"A sample scam ad\" class=\"wp-image-23477\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-1024x642.png 1024w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-300x188.png 300w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-768x482.png 768w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-696x436.png 696w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-1068x670.png 1068w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3-670x420.png 670w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image3.png 1467w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">A fake &#8220;news&#8221; website using one of many domains such as machoneasphalt [dot] com<br>theseeker [dot] ca<br>tokensailive [dot] com<br>mapleinfo [dot] club<br>funkywifi [dot] com<br>news.investingcanada [dot] org<\/figcaption><\/figure>\n<\/div>\n<\/div>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>A Look Behind the Curtain<\/strong><\/h3>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-vertically-aligned-top is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"683\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-1024x683.jpg\" alt=\"A photo made with ChatGPT showing a chameleon trying to &quot;catch&quot; a Meta sign \" class=\"wp-image-23497\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-1024x683.jpg 1024w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-300x200.jpg 300w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-768x512.jpg 768w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-696x464.jpg 696w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-1068x712.jpg 1068w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads-630x420.jpg 630w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/chameleon-ads.jpg 1536w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Made with ChatGPT<\/figcaption><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p class=\"wp-block-paragraph\">To advertise on Meta&#8217;s platforms, an advertiser must first create a Facebook page. To start their scheme, most scammers typically set up dozens of Facebook pages, along with fake websites that closely mimic legitimate ones, such as news organizations or government agencies. These are used in tandem to trick users and bypass Meta&#8217;s automated systems and human moderators. But creating throwaway Facebook pages and fake websites is just the first step.<\/p>\n<\/div>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">We&#8217;ve now identified a more advanced tactic, which we call &#8220;<strong>Chameleon ads<\/strong>&#8220;. After setting up their Facebook pages and advertiser accounts, scammers initially upload harmless-looking ads for approval. Once the ad is approved, they quietly swap out the content, replacing images, text, or links with something entirely different. For instance, an ad that initially promotes running shoes might be altered to feature a fake endorsement from a prominent Canadian politician, linking to a cryptocurrency scam.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>By making these changes after the ad is approved, scammers evade detection, at least temporarily. To further avoid scrutiny, they may pause the campaign after a short period and revert the advertisement to its original, innocuous version. So when a victim reports the scam and a Meta reviewer checks the ad, it would appear harmless, like a stock photo of sneakers. With limited time to review each case, moderators would likely miss such deceptive, shape-shifting ads, allowing them to continue running unnoticed.<\/em><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\"><div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large is-resized\"><img decoding=\"async\" width=\"547\" height=\"1024\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-547x1024.jpg\" alt=\"Sample scam ad, ran on Meta\" class=\"wp-image-23483\" style=\"width:426px;height:auto\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-547x1024.jpg 547w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-160x300.jpg 160w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-768x1437.jpg 768w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-821x1536.jpg 821w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-696x1303.jpg 696w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7-224x420.jpg 224w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/image7.jpg 895w\" sizes=\"(max-width: 547px) 100vw, 547px\" \/><figcaption class=\"wp-element-caption\">A screenshot (as shown in Meta&#8217;s Ads Library) of a scam ad that ran with different versions of the creative. <\/figcaption><\/figure>\n<\/div><\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Here is a screenshot of a sample <strong><em>&#8216;chameleon&#8217; <\/em><\/strong>ad that features six different creative versions, showcasing a range of shifting images. Four of these images depict running shoes, while the other two are photos of well-known Canadian politicians.<\/p>\n\n\n\n<figure class=\"wp-block-pullquote\"><blockquote><p>Although the ad has been marked as &#8220;Active&#8221; since March 14, 2025, it wasn&#8217;t continuously running. In fact, when we looked at the delivery data, it was only live for a total of 22 hours, spread intermittently over that period. This stop-and-start pattern is often a red flag.<\/p><\/blockquote><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">At the bottom of the ad&#8217;s detail view, we can see the various images that were cycled through in connection with this single ad campaign. Some are completely benign, like stock photos of athletic shoes, but others appear to be misleading, particularly those featuring Canadian political figures.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>This behaviour suggests the ad may have been run programmatically, possibly using automated tools to dynamically swap out creatives. The lack of any political disclosure attached to the ad, despite the use of politicians&#8217; likenesses, raises further concerns. It appears to be a deliberate tactic to evade Meta&#8217;s content moderation systems, which rely on both automated detection and human review. By disguising the true intent of the ad and keeping its active periods short and sporadic, the perpetrators are likely trying to stay under the radar and avoid enforcement actions.<\/em><\/p>\n<\/div>\n<\/div>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>The Vanishing Trail: How Scam Ads Disappear Without a Trace<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">When scam ad campaigns are finally detected and removed, Meta often deletes the entire associated Facebook page along with the ads. And that&#8217;s a serious problem.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although Meta has made efforts to improve transparency by archiving political and issue-based ads in its <a href=\"https:\/\/www.facebook.com\/ads\/library\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Ad Library<\/a>, the archiving doesn&#8217;t apply to standard &#8220;marketing&#8221; ads, even if they turn out to be deceptive, exploitative, or outright harmful.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Meta\u2019s decision not to archive non-political but potentially harmful ads creates a significant gap in its transparency efforts. As a result, scam ads that masquerade as regular marketing content can vanish without a trace, with no record for the public, researchers, or regulators to review. The lack of archives not only erases critical evidence but also makes it harder to hold perpetrators accountable and improve future detection. Scammers are exploiting this blind spot, and the consequences go far beyond just a few misleading clicks.<\/em><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In our research, the only evidence we were able to preserve came from screenshots we captured manually. Without these, there would be virtually no way to reconstruct the ad&#8217;s messaging, the imagery used, or the behavioural patterns that allowed it to bypass moderation.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full is-resized\"><img decoding=\"async\" width=\"614\" height=\"657\" src=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/MetaAdLibrary-screenshot-2025-04-21-RemovedAdMessage.png\" alt=\"A message seen in Meta's Ad Library when trying to access a deleted ad. \" class=\"wp-image-23535\" style=\"width:371px;height:auto\" srcset=\"https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/MetaAdLibrary-screenshot-2025-04-21-RemovedAdMessage.png 614w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/MetaAdLibrary-screenshot-2025-04-21-RemovedAdMessage-280x300.png 280w, https:\/\/socialmedialab.ca\/web\/wp-content\/uploads\/2025\/04\/MetaAdLibrary-screenshot-2025-04-21-RemovedAdMessage-393x420.png 393w\" sizes=\"(max-width: 614px) 100vw, 614px\" \/><figcaption class=\"wp-element-caption\">A message seen in Meta&#8217;s Ad Library when trying to access a deleted ad. <\/figcaption><\/figure>\n<\/div>\n\n\n<h3 class=\"wp-block-heading\"><strong>What Must Change: Closing the Gaps in Meta&#8217;s Ad Infrastructure<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><em>The tactics uncovered in our investigation reveal how easily bad actors can exploit automated ad tools and API access to operate at scale, rapidly launching, modifying, and retracting deceptive ad campaigns before they&#8217;re detected. This suggests that Meta&#8217;s ad library and moderation systems are not equipped to handle the level of manipulation we are now seeing.<\/em><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>These scammers are not just slipping through the cracks; they are actively leveraging the platform&#8217;s architecture to stay one step ahead. By using innocuous marketing content as a front, they are able to push out misleading or malicious material that bypasses both automated checks and human moderation.<\/em><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This reveals a systemic vulnerability. While Meta&#8217;s transparency efforts have focused on political and issue-based ads, there is a glaring oversight when it comes to &#8220;regular&#8221; marketing ads, especially those later found to be harmful. These ads aren&#8217;t archived, meaning once they&#8217;re removed, they&#8217;re effectively erased from public record. If the data is preserved, it will allow researchers like us to use the data to create transparency tools such as our <a href=\"http:\/\/Polidashboard.org\">Polidashboard.org<\/a>, an <a href=\"https:\/\/socialmedialab.ca\/web\/2025\/03\/31\/polidashboard-org-launches-with-powerful-new-features-to-track-political-ads-just-in-time-for-the-2025-canadian-federal-election\/\">app for tracking political, election-related, and social issue ads<\/a> on Meta&#8217;s platforms. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To close this loophole on &#8220;<strong>chameleon<\/strong>&#8221; ads, Meta needs to expand transparency measures across all ad types, not just those that are politically sensitive. Advertisements that use marketing as a cover for deception should be preserved, documented, and accessible for analysis.  Investigators, researchers, and regulators are left scrambling to keep up in a system that gives scammers the upper hand, while the public stays uninformed for even longer.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Over the last few weeks, a series of stories by&nbsp;The Guardian,&nbsp;CBC, and&nbsp;The Logic&nbsp;has highlighted an explosion of fraudulent Facebook and Instagram ads that mimic the likeness of high-profile Canadian politicians and news outlets. Deepfake videos and counterfeit CBC-style headlines show Mark Carney, Pierre Poilievre, and other public figures promoting cryptocurrency &#8220;programs&#8221; or instant-wealth schemes. Although [&hellip;]<\/p>\n","protected":false},"author":49,"featured_media":23497,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[41,494],"tags":[55,532,511],"class_list":["post-23473","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-announcements","category-misinformation","tag-cdnpoli","tag-facebook-ads","tag-misinformation"],"_links":{"self":[{"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/posts\/23473","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/users\/49"}],"replies":[{"embeddable":true,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/comments?post=23473"}],"version-history":[{"count":38,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/posts\/23473\/revisions"}],"predecessor-version":[{"id":23550,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/posts\/23473\/revisions\/23550"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/media\/23497"}],"wp:attachment":[{"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/media?parent=23473"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/categories?post=23473"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/socialmedialab.ca\/web\/wp-json\/wp\/v2\/tags?post=23473"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}