Meta AI Support Chatbot Exploit Leads to Instagram Account Hijackings
Instagram recently addressed a security vulnerability that allowed hackers to hijack user accounts by exploiting Meta's AI-powered support chatbot. The attack involved tricking the chatbot into granting access to a victim's account by adding a new email address and resetting the password. Several users reported their accounts being compromised, including notable handles such as the Obama-era White House and the U.S. Space Force's chief master sergeant John Bentivegna. Security researcher Jane Wong was among those affected, noting unauthorized password changes and reset attempts. A video demonstrated the hacking process, which involved using a VPN to spoof the target's location and interacting with the Meta AI Support Assistant to gain control over the account. Instagram has since fixed the issue, but the extent of the breach remains unclear.