Hackers abused Meta's AI support chatbot to take over Instagram accounts, including high-profile handles like @obamawhitehouse, by tricking the bot into resetting passwords and changing account emails.
Meta's AI-powered customer support assistant became a tool for account hijacking after attackers discovered they could convince the chatbot to perform sensitive account recovery actions on behalf of others.
According to 404 Media, hackers demonstrated the exploit by asking Meta's AI chatbot to switch the email address associated with a target Instagram account, then reset the password. The compromised accounts were subsequently resold, with hackers targeting valuable handles.
High-profile victims included the @obamawhitehouse Instagram account and the account for the Chief Master Sergeant of the U.S. Space Force. Both were briefly defaced with pro-Iranian images and messages over the weekend before Meta regained control.
Instructions on how to execute the attack circulated on Telegram, enabling multiple threat actors to exploit the vulnerability. The hack exposed a critical flaw in Meta's AI support system—the chatbot was apparently unable to adequately verify user identity before processing account recovery requests.
Meta acknowledged the issue and stated the vulnerability has since been patched. The company did not provide detailed information about how many accounts were compromised or additional specifics about the security fix.
The incident highlights risks associated with deploying AI chatbots for sensitive operations like account recovery. Unlike traditional support workflows that may include multi-factor verification steps, the AI assistant appears to have lacked sufficient safeguards against social engineering attacks.
Users affected by account takeovers reported being locked out of their profiles. Meta did not immediately clarify the process for victims to regain access to hijacked accounts or whether the company would implement additional security measures for account recovery going forward.
A cross-site request forgery (CSRF) vulnerability in WordPress Core, dubbed 'Click2Shell,' enables attackers to execute PHP code on vulnerable servers. Technical details and working exploits are now public.
The ShinyHunters extortion group took control of the dark web leak site belonging to the prolific Cl0p ransomware gang over the weekend. The attackers set an eight-figure extortion demand pegged at 2.333% of Cl0p's estimated net worth.
The FBI's CJIS Security Policy v6.1 strengthens encryption requirements and vulnerability scanning mandates. Agencies must prepare for updated password, MFA, and identity verification standards ahead of compliance audits.
New research reveals that digital watermarks intended to protect content ownership are being repurposed as surveillance mechanisms to track user behavior and identify individuals across platforms.