Skip to content

ABC Tool

  • Home
  • About / Contect
    • PRIVACY POLICY
Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

Posted on June 8, 2026 By safdargal12 No Comments on Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot
Blog


The tool itself worked properly and functioned as intended; however due to a bug in a separate code path, the system did not properly verify that the email address provided by the individual requesting a password reset matched the email address associated with that user’s Instagram account. As a result, when an individual provided an email address not previously associated with the account, the system incorrectly sent a password reset link to that unassociated email rather than rejecting the request. This allowed unauthorized third parties to receive a password reset link for accounts they did not own.

Meta says the attack first surfaced on May 31st, with Meta communications head Andy Stone saying the company “resolved” the incident on June 1st. During this time, several high-profile Instagram accounts were impacted, including former President Barack Obama’s old White House account, US Space Force Chief Master Sergeant John F. Bentivegna, and Sephora. In the notice, Meta adds that it’s “unaware” of whether any personal data was accessed as a result of the exploit, but notes that account hijackers could’ve obtained email addresses, phone numbers, birthdates, social media posts, direct messages, profile information, account activity, and connected accounts.

The notice says 30 of the impacted users lived in Maine. The number refers to “users who had their passwords reset through the support tool, did not have 2FA enabled on their account and whose Instagram accounts were likely accessed by an unauthorized party” — though Meta says it’s an “upper bound,” as some of these accounts may have been accessed legitimately.

The company notes that it disabled its AI support tool and removed the buggy code path, while invalidating any password reset links generated using the exploit. It also enrolled all potentially impacted accounts “into a mandatory security checkpoint requiring authentication before any account access.”



Source link

Post Views: 2

Post navigation

❮ Previous Post: Weekly deals: Xiaomi 17 Ultra is €300 off, Pixel 10 phones and Moto Razr Fold get extra discounts
Next Post: Lavazza Just Beat Keurig to the Punch with Pods Made Entirely of Coffee — No Plastic Involved ❯

You may also like

Android’s Linux Terminal now lets you max out performance, but at a cost
Blog
Android’s Linux Terminal now lets you max out performance, but at a cost
April 24, 2026
Trump loses more control over AI regulation as Illinois passes landmark law
Blog
Trump loses more control over AI regulation as Illinois passes landmark law
May 28, 2026
One UI 9’s first release might not be far away
Blog
One UI 9’s first release might not be far away
May 6, 2026
Dyson’s handheld fan is more powerful and louder than I expected
Blog
Dyson’s handheld fan is more powerful and louder than I expected
April 18, 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • I replaced Spotify with a homemade FM radio station : digitalminimalism
  • Galaxy Tab S12 Ultra leak says Samsung is disappointingly sticking with this spec
  • Life Got So Much Better When I Turned Off My Phone Notifications
  • Max Payne on Android finally playable again after a year-long bug
  • Lavazza Just Beat Keurig to the Punch with Pods Made Entirely of Coffee — No Plastic Involved

Recent Comments

  1. Last Chance for Big Savings on TechCrunch Disrupt 2026 Tickets – Artiverse on 5 days left: Save up to $410 on Disrupt 2026 passes

Archives

  • June 2026
  • May 2026
  • April 2026

Categories

  • Blog

Copyright © 2026 ABC Tool.

Theme: Oceanly News by ScriptsTown