
Meta Fixes Instagram Flaw That Let Hackers Take Over Accounts via AI Chat
Meta patched a critical vulnerability in Instagram's AI account recovery chatbot after attackers exploited it to seize high-profile accounts. The attack: use a VPN to spoof location, trigger a password reset, then manipulate the AI into changing the account's email. The flaw exposed a gap in how conversational AI handles security tasks—it lacks the safeguards traditional authentication systems enforce.
Published