Individuals propagate malicious URLs through direct messaging on social media platforms like Instagram for several reasons, often centered around unauthorized access to user accounts. These links frequently redirect victims to deceptive websites designed to mimic legitimate login pages. Upon entering credentials, the information is harvested by malicious actors, granting them control of the compromised account.
The motives behind these actions vary. Compromised accounts can be leveraged for spam campaigns, spreading further malicious links to the victim’s contacts. They may also be used to disseminate propaganda, promote fraudulent schemes, or extort the original account holder. Historically, such tactics have proven effective due to the trust users place in direct messages from their established network, making them less suspicious of potentially harmful links.