{"id":98018,"date":"2026-06-05T16:45:47","date_gmt":"2026-06-05T13:45:47","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=98018"},"modified":"2026-06-05T16:50:18","modified_gmt":"2026-06-05T13:50:18","slug":"hackers-exploit-meta-ai-to-hijack-instagram-accounts","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/hackers-exploit-meta-ai-to-hijack-instagram-accounts\/","title":{"rendered":"Hackers Exploit Meta AI to Hijack Instagram Accounts"},"content":{"rendered":"<p>Hackers have exploited Meta&#8217;s AI support assistant to seize numerous Instagram accounts. This was reported by <a href=\"https:\/\/www.404media.co\/hackers-simply-asked-meta-ai-to-give-them-access-to-high-profile-instagram-accounts-it-worked\/\">404 Media<\/a>, citing security researchers&#8217; reports.<\/p>\n<p>The hackers employed a <span data-descr=\"a vulnerability technique in artificial intelligence systems where an attacker deliberately inputs a malicious instruction into a standard application input field\" class=\"old_tooltip\">direct &#8220;prompt injection&#8221; method<\/span>. They instructed the chatbot to change the email address linked to the profile. The only additional requirement for the operation&#8217;s success was using a VPN with a geolocation matching the true owner&#8217;s data.<\/p>\n<p>Once the bot changed the email in the settings without further identity verification, the attackers initiated the standard password reset procedure and gained full control over the account.<\/p>\n<h2 class=\"wp-block-heading\">Scope of the Issue<\/h2>\n<p>Among the compromised profiles were the White House&#8217;s archival account from Barack Obama&#8217;s era, the page of U.S. Space Force Chief Master Sergeant John Bentivegna, and the official profile of the Sephora brand. Former Meta employee Jane Wong stated that her personal accounts were also <a href=\"https:\/\/x.com\/wongmjane\/status\/2061456887959474393\">hacked<\/a>.<\/p>\n<p>Hackers managed to post pro-Iranian content on the White House profile. Other attackers targeted rare &#8220;short&#8221; usernames for resale on dark forums.<\/p>\n<p>The Meta AI Support Assistant was launched in March. The company marketed it as a solution for end-to-end access recovery automation.<\/p>\n<p>Company representative Andy Stone announced that the vulnerability has been fixed.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">This issue has been resolved and we are securing impacted accounts.<\/p>\n<p>\u2014 Andy Stone (@andymstone) <a href=\"https:\/\/x.com\/andymstone\/status\/2061486724199379186?ref_src=twsrc%5Etfw\">June 1, 2026<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.x.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<h2 class=\"wp-block-heading\">Expert Opinions<\/h2>\n<p>Experts interviewed by MIT Technology Review <a href=\"https:\/\/www.technologyreview.com\/2026\/06\/05\/1138437\/the-meta-hack-shows-theres-more-to-ai-security-than-mythos\/\">described<\/a> the incident as a failure of basic security protocols. University of Wisconsin-Madison Professor Somesh Jha noted that AI agents are &#8220;too eager to complete tasks&#8221; and overlook control questions that a human would necessarily ask.<\/p>\n<p>Experts emphasized that Meta neglected thorough &#8220;red testing&#8221; before deploying AI in critical areas like security settings management.<\/p>\n<p>In May, Socket <a href=\"https:\/\/forklog.com\/en\/news\/socket-uncovers-supply-chain-attack-on-cryptocurrency-and-ai-developers\">reported<\/a> on a supply chain attack targeting cryptocurrency and AI systems developers.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Hackers have exploited Meta&#8217;s AI support assistant to seize numerous Instagram accounts.<\/p>\n","protected":false},"author":1,"featured_media":98019,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"Hackers exploited Meta's AI to hijack Instagram accounts.","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[438,44,1111,1293],"class_list":["post-98018","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-artificial-intelligence","tag-cybercrime","tag-cybersecurity","tag-meta"],"aioseo_notices":[],"amp_enabled":true,"views":"7","promo_type":"1","layout_type":"1","short_excerpt":"Hackers exploited Meta's AI to hijack Instagram accounts.","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/98018","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=98018"}],"version-history":[{"count":1,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/98018\/revisions"}],"predecessor-version":[{"id":98020,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/98018\/revisions\/98020"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/98019"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=98018"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=98018"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=98018"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}