All Topics
All Topics
Technology
Technology
AI
AI
Business
Business
Entertainment
Entertainment
News
News
Programming
Programming
Security
Security
Science
Science
Design
Design
Environment
Environment
Finance
Finance
Crypto
Crypto
Politics
Politics
Sports
Sports
Education
Education
Gaming
Gaming
Art
Art
Music
Music
Health
Health
Books
Books
Food
Food
Travel
Travel
Personal
Personal
Bluesky
Twitter
First reported by bsky
Logic flaw in Meta's AI support chatbot allowed attackers to bypass 2FA and hijack Instagram accounts

Meta fixes security flaw that let hackers use AI chatbot to access user accounts

By

Rachel Goodman

24d ago· 5 min readenNews

Summary

Meta has resolved a security vulnerability that allowed hackers to trick its AI assistant into granting unauthorized access to user accounts, including high-profile targets like Barack Obama's White House account, Sephora, and U.S. Space Force Chief Master Sergeant John Bentivegna. The exploit was demonstrated through screen-recorded videos shared on X, showing conversations with Meta's AI chatbot detailing the hack execution. Regular users also reported similar account takeovers.

Source

bskyMeta fixes security flaw that let hackers use AI chatbot to access user accountsglobalnews.ca

Key quotes

· 3 pulled
Meta says it has resolved an issue that allowed hackers to trick its AI assistant into granting access to other users' accounts, including high-profile individuals
Hackers used the tactic to target Barack Obama's White House account, beauty retailer Sephora and the U.S. Space Force chief master sergeant, John Bentivegna
Regular users also reported similar takeovers on X, even sharing screen-recorded videos of conversations with Meta's AI chatbot detailing how the hacks were executed
Snippet from the RSS feed
Meta says it has resolved an issue that allowed hackers to trick its AI assistant into granting access to other users' accounts, according to media reports.

You might also wanna read

Hackers Exploit Meta's AI Support Bot to Hijack High-Profile Instagram Accounts

Hackers exploited Meta's AI customer support bot on Telegram to reset passwords and briefly deface high-profile Instagram accounts, includin

krebsonsecurity.com·18d ago

Hackers Exploit Meta's AI Support Bot to Hijack High-Profile Instagram Accounts

Hackers exploited Meta's AI customer support bot on Telegram to reset passwords and briefly deface high-profile Instagram accounts, includin

krebsonsecurity.com·18d ago

Hackers exploited Meta's AI chatbot to hijack Instagram accounts before patch

Meta's AI-powered support chatbot was exploited by hackers to hijack Instagram accounts by tricking it into changing the email associated wi

The Verge·26d ago

Meta confirms thousands of Instagram accounts hijacked via AI chatbot password reset exploit

Meta has confirmed that thousands of Instagram accounts were hijacked over several months through abuse of its AI chatbot. Hackers tricked t

this.weekinsecurity.com·21d ago

Meta confirms thousands of Instagram accounts hijacked via AI chatbot password reset exploit

Meta has confirmed that thousands of Instagram accounts were hijacked over several months through abuse of its AI chatbot. Hackers tricked t

this.weekinsecurity.com·21d ago

Instagram accounts compromised through AI verification bypass using animated public photos

A wave of Instagram account takeovers, including high-profile ones like the Obama White House account, exploited a flaw in Instagram's AI id

0xsid.com·21d ago

Instagram accounts compromised through AI verification bypass using animated public photos

A wave of Instagram account takeovers, including high-profile ones like the Obama White House account, exploited a flaw in Instagram's AI id

0xsid.com·21d ago

Internal AI agent causes security incident at Meta, granting unauthorized data access for two hours

Meta experienced a high-severity security incident when an internal AI agent provided inaccurate technical advice to an employee, granting u

The Verge·3mo ago

Internal AI agent causes security incident at Meta, granting unauthorized data access for two hours

Meta experienced a high-severity security incident when an internal AI agent provided inaccurate technical advice to an employee, granting u

theverge.com·3mo ago

Meta's AI Smart Glasses: Privacy Concerns and Hidden Workforce Processing Intimate User Data

Meta's AI smart glasses, marketed as privacy-focused assistants that can compete with smartphones, actually involve a hidden workforce that

svd.se·3mo ago

Comments

Sign in to join the conversation.

No comments yet. Be the first.