Meta AI Chatbot Allowed Account Takeovers on Instagram
Hackers used Meta's AI support chatbot to link Instagram accounts to new email addresses and reset passwords. The company stated the issue has been resolved and affected accounts are being secured. High-profile accounts including those of Barack Obama's White House, Sephora, and a U.S. Space Force chief master sergeant were reportedly accessed.
indiatoday.intoday.inHackers gained access to multiple Instagram accounts by asking Meta's AI support chatbot to link the accounts to new email addresses. The chatbot sent verification codes to the new addresses. After the codes were entered, the chatbot allowed password resets, according to videos and screenshots shared online.
Screenshots indicated that the Instagram accounts associated with Barack Obama's White House, the retailer Sephora, and U.S. Space Force chief master sergeant John Bentivegna were accessed. As of Tuesday afternoon, the three accounts appeared restored.
Meta vice president Andy Stone wrote in a Monday post that the issue had been resolved and that impacted accounts were being secured. The company did not respond to further questions. It remains unclear how many accounts were affected overall. Business Insider was unable to independently verify the reported methods.
Cybersecurity professionals told Business Insider that the incident highlights risks when AI systems handle account recovery functions. One specialist said social media platforms have prioritized AI features before strengthening account security. Another noted that Meta deployed the AI agent without sufficient limits on what it could access or change.
A third professional compared the chatbot to an inexperienced employee that does not recognize when a request appears suspicious. Security researcher Jane Wong reported that her Instagram password was changed without her knowledge and that she continued receiving login codes over the weekend.
Meta launched the AI support assistant in March to handle account issues such as password changes. The company laid off about 8,000 employees last month, including staff from its integrity and cybersecurity teams.
Transparency
3 independent outlets report the same core facts. This score blends how many outlets corroborate, their editorial tier, and how closely their facts agree — it measures corroboration, not proof.
Story details
Related Stories
abcnews.go.comTrump Signs Executive Order Prioritizing AI for Cybersecurity Innovation
President Donald J. Trump signed an executive order on June 2 directing federal agencies to accelerate artificial intelligence development for protecting critical infrastructure. The order reverses earlier emphasis on slower deployment and risk reviews.
nbcnews.comTrump Signs AI Executive Order Promoting Innovation While Requiring Security Reviews
The order directs federal agencies to promote advanced AI development while addressing security concerns and reduces government review compared with an earlier draft.
The HillTrump administration proposes expanding 401(k) alternative asset options; Democrats urge withdrawal
Top Democratic lawmakers sent a letter Monday asking the Department of Labor to drop a rule that would allow cryptocurrency, private equity and private credit in retirement plans. They said the change would expose an estimated $14.2 trillion in savings to greater risk and higher…