Instagram's AI Chatbot Gave Away a Bunch of Accounts to Hackers
… There are other things you can do to beef up account security , including using passkeys where available and a private email address to make your account credentials harder to find.
The problem is almost entirely due to Meta's customer support now being run by AI. The tech giant made the switch back in March, saying it would enable "24/7 help for account issues like updating your password and settings for your profile." But with the AI chatbot handling the whole process, humans couldn't step in when suspicious activity began. That allowed hackers to carry out the social engineering-style attack and pull it off multiple times before anyone noticed. Affected accounts were forcibly logged out for all users and email addresses were restored. Users were then told to reset the
Hackers Conned a Chatbot to Hijack 20,000 Instagram AccountsThe problem is almost entirely due to Meta's customer support now being run by AI. The tech giant made the switch back in March, saying it would enable "24/7 help for account issues like updating your password and settings for your profile." But with the AI chatbot handling the whole process, humans couldn't step in when suspicious activity began. That allowed hackers to carry out the social engineering-style attack and pull it off multiple times before anyone noticed. Per Cybersecurity News, security researchers ZachXBT and Dark Web Informer were the first to publicly expose the exploit, but
Instagram's AI Chatbot Gave Away a Bunch of Accounts to Hackers… There are other things you can do to beef up account security , including using passkeys where available and a private email address to make your account credentials harder to find.
… Hackers simply asked the AI-powered bot to change the email address for a targeted account to their own. Once that was granted, the hackers requested a password reset, prompting the AI to send a code to their personal email address. …