Article 765N4 Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

Hackers likely hijacked over 20,000 Instagram accounts with Meta’s AI chatbot

by
Emma Roth
from The Verge on (#765N4)
meta-support-ai.webp?quality=90&strip=all&crop=0,0.78266911515314,100,87.417617029884

Hackers likely took over 20,225 Instagram accounts using Meta's AI support chatbot, the company confirmed in a notice filed with the state of Maine. In the notice, spotted earlier by Bleeping Computer, Meta blames a "bug" for the exploit that allowed attackers to hijack accounts without two-factor authentication simply by asking the chatbot for a password reset:

The tool itself worked properly and functioned as intended; however due to a bug in a separate code path, the system did not properly verify that the email address provided by the individual requesting a password reset matched the email address associated with that user's Instagram ...

Read the full story at The Verge.

External Content
Source RSS or Atom Feed
Feed Location http://www.theverge.com/rss/index.xml
Feed Title The Verge
Feed Link https://www.theverge.com/
Reply 0 comments