Instagram accounts compromised through AI verification bypass using animated public photos
You can taste the rush. The dough hadn't risen.
Summary
A wave of Instagram account takeovers, including high-profile ones like the Obama White House account, exploited a flaw in Instagram's AI identity verification system. The attack method is surprisingly unsophisticated: attackers use AI-animated public photos from the target's feed to pass Instagram's video selfie verification check. Two-factor authentication does not protect against this exploit because the AI-based recovery process bypasses it entirely.
Key quotes
· 3 pulledI've seen my share of exploits and takeover techniques, but this is the most unserious, 'almost too stupid to be true' of them all.
Instagram's AI may or may not ask the attacker for a video selfie to prove identity. It's not particularly discerning at the moment, so something as simple as an AI animated public photo from the target's feed has been widely reported to work.
In case you're wondering, because 2FA doesn't help here.
You might also wanna read
Hackers Exploit Meta AI Chatbot to Take Over High-Profile Instagram Accounts
Hackers exploited Meta's AI support chatbot to gain access to high-profile Instagram accounts, including the Barack Obama White House accoun
buff.ly·2h agoInstagram Hack Includes Obama White House Account: What To Know
Hackers exploited Meta's AI chatbot to hijack Instagram accounts, including Obama White House page
Hackers compromised high-profile Instagram accounts, including the Obama White House page, by exploiting Meta's AI support chatbot to change
Hackers hijack Instagram accounts by exploiting Meta's AI chatbot to change emails without verification
Hackers exploited Meta's AI customer support chatbot on Instagram to hijack high-profile accounts by tricking it into changing account email
Hackers Exploit Meta AI Support Chatbot to Take Over High-Profile Instagram Accounts
Hackers exploited Meta's AI support chatbot to gain access to high-profile Instagram accounts by simply asking the bot to change the email a
Hackers Exploit Meta AI Support Chatbot to Take Over High-Profile Instagram Accounts
Hackers exploited Meta's AI support chatbot to take over high-profile Instagram accounts, including the Obama White House account and Sephor
Hackers Exploit Meta AI Support Chatbot to Take Over High-Profile Instagram Accounts
Hackers exploited Meta's AI support chatbot to take over high-profile Instagram accounts, including the Obama White House account and Sephor
