All Topics
All Topics
Technology
Technology
Design
Design
Programming
Programming
Science
Science
News
News
Gaming
Gaming
Entertainment
Entertainment
Business
Business
Finance
Finance
Sports
Sports
Health
Health
Food
Food
Travel
Travel
Art
Art
Music
Music
Books
Books
Education
Education
Politics
Politics
Personal
Personal
No algorithm. No AI slop. No ads. Just RSS. Pro-human. Indie writers. Real journalism. Open web. Chronological. Hand toasted.
First reported by bsky
Logic flaw in Meta's AI support chatbot allowed attackers to bypass 2FA and hijack Instagram accounts

Hackers exploit Meta AI support bot to gain unauthorized access to Instagram accounts

By

Andrew Hutchinson

11h ago· 4 min readenNews

Summary

A group of hackers reportedly gained access to Instagram accounts by exploiting Meta's AI support bot. By simply asking the AI assistant to change account details, the hackers were able to override security features and add their own access credentials, effectively stealing accounts. The incident, reported by 404 Media, highlights significant security vulnerabilities in AI-powered customer support systems that have access to sensitive user information and account management capabilities.

Key quotes

· 3 pulled
Here's something that feels like a significant cautionary example, given the evolving understanding of artificial intelligence functionality.
This situation is especially notable because it deals with systems that are empowered to access sensitive information and act on behalf of users.
A group of hackers was reportedly given access to a range of Instagram accounts by essentially asking the Meta AI support bot to change the account details for them.
Snippet from the RSS feed
A series of screenshots and videos revealed the steps taken to override security features and steal accounts, per a report from 404 Media.

You might also wanna read

Hackers exploited Meta's AI chatbot to hijack Instagram accounts before patch

Meta's AI-powered support chatbot was exploited by hackers to hijack Instagram accounts by tricking it into changing the email associated wi

The Verge·2d ago

Hackers Exploit Meta's AI Support Bot to Hijack High-Profile Instagram Accounts

Hackers exploited Meta's AI customer support bot on Telegram to reset passwords and briefly deface high-profile Instagram accounts, includin

krebsonsecurity.com·2d ago

Instagram accounts compromised through AI verification bypass using animated public photos

A wave of Instagram account takeovers, including high-profile ones like the Obama White House account, exploited a flaw in Instagram's AI id

0xsid.com·1d ago

Instagram accounts compromised through AI verification bypass using animated public photos

A wave of Instagram account takeovers, including high-profile ones like the Obama White House account, exploited a flaw in Instagram's AI id

0xsid.com·1d ago

Personal Experience: AI Impersonation After Announcing Divorce on Instagram

The author shares a personal experience of announcing their divorce on Instagram, only to have their identity and content stolen by AI imper

eiratansey.com·5mo ago

Meta Launches Centralized Support Hub for Facebook and Instagram Account Recovery

Meta has launched a new centralized support hub for Facebook and Instagram users to help with account issues and recovery. The hub consolida

The Verge·6mo ago

Internal AI agent causes security incident at Meta, granting unauthorized data access for two hours

Meta experienced a high-severity security incident when an internal AI agent provided inaccurate technical advice to an employee, granting u

theverge.com·2mo ago

Internal AI agent causes security incident at Meta, granting unauthorized data access for two hours

Meta experienced a high-severity security incident when an internal AI agent provided inaccurate technical advice to an employee, granting u

The Verge·2mo ago