Skip to content

ABC Tool

  • Home
  • About / Contect
    • PRIVACY POLICY
Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

Posted on June 8, 2026 By safdargal12 No Comments on Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot
Blog


The tool itself worked properly and functioned as intended; however due to a bug in a separate code path, the system did not properly verify that the email address provided by the individual requesting a password reset matched the email address associated with that user’s Instagram account. As a result, when an individual provided an email address not previously associated with the account, the system incorrectly sent a password reset link to that unassociated email rather than rejecting the request. This allowed unauthorized third parties to receive a password reset link for accounts they did not own.

Meta says the attack first surfaced on May 31st, with Meta communications head Andy Stone saying the company “resolved” the incident on June 1st. During this time, several high-profile Instagram accounts were impacted, including former President Barack Obama’s old White House account, US Space Force Chief Master Sergeant John F. Bentivegna, and Sephora. In the notice, Meta adds that it’s “unaware” of whether any personal data was accessed as a result of the exploit, but notes that account hijackers could’ve obtained email addresses, phone numbers, birthdates, social media posts, direct messages, profile information, account activity, and connected accounts.

The notice says 30 of the impacted users lived in Maine. The number refers to “users who had their passwords reset through the support tool, did not have 2FA enabled on their account and whose Instagram accounts were likely accessed by an unauthorized party” — though Meta says it’s an “upper bound,” as some of these accounts may have been accessed legitimately.

The company notes that it disabled its AI support tool and removed the buggy code path, while invalidating any password reset links generated using the exploit. It also enrolled all potentially impacted accounts “into a mandatory security checkpoint requiring authentication before any account access.”



Source link

Post Views: 4

Post navigation

❮ Previous Post: Weekly deals: Xiaomi 17 Ultra is €300 off, Pixel 10 phones and Moto Razr Fold get extra discounts
Next Post: Lavazza Just Beat Keurig to the Punch with Pods Made Entirely of Coffee — No Plastic Involved ❯

You may also like

What we’re looking for in Startup Battlefield 2026, and how to apply in time for the May 27 deadline
Blog
What we’re looking for in Startup Battlefield 2026, and how to apply in time for the May 27 deadline
May 27, 2026
How to make your very own AI clone
Blog
How to make your very own AI clone
June 4, 2026
Samsung is moving its US headquarters to Texas
Blog
Samsung is moving its US headquarters to Texas
June 3, 2026
Rocket Report: Starship V3 test-fired; ESA’s tentative step toward crew launch
Blog
Rocket Report: Starship V3 test-fired; ESA’s tentative step toward crew launch
April 17, 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Stop Children From Taking and Sharing Nudes, UK Prime Minister Tells Tech Companies
  • Bixby lift-to-talk feature inches closer to release with OneUI 9
  • NotebookLM Is Getting Google’s Latest Gemini AI Model
  • Michigan politicians want to ban Chinese-badged cars from even visiting the US
  • NotebookLM gets its biggest upgrade yet with Gemini 3.5

Recent Comments

  1. Last Chance for Big Savings on TechCrunch Disrupt 2026 Tickets – Artiverse on 5 days left: Save up to $410 on Disrupt 2026 passes

Archives

  • June 2026
  • May 2026
  • April 2026

Categories

  • Blog

Copyright © 2026 ABC Tool.

Theme: Oceanly News by ScriptsTown