Ad

Follow Us:
9,914 views
Meta has confirmed that a vulnerability in its AI-powered Instagram account recovery system allowed attackers to take control of more than 20,000 Instagram accounts. The flaw was found in Meta's High Touch Support (HTS) tool, which uses artificial intelligence to help users regain access to locked Instagram accounts.
Attackers exploited the flaw to obtain password reset links for accounts that did not have two-factor authentication enabled. This allowed them to gain unauthorized access to those accounts. Meta acknowledged the issue after weeks of complaints from Instagram users who reported being locked out of their accounts. Several high-profile accounts were affected, including the Barack Obama White House account, Sephora's Instagram account, and the Chief Master Sergeant of Space Force account.
Meta's vice-president of communications, Andy Stone, responded to an affected user on X, stating that the issue had been resolved and that the company was working to secure impacted accounts. The company formally disclosed the incident in a data breach notification filed with the Maine Office of the Attorney General. Meta discovered the vulnerability on May 31, 2026, and found that unauthorized parties had exploited the flaw to reset passwords on Instagram accounts. The breach may have started as early as April 17, 2026, which is believed to be the date of the first successful attack.
According to reports by 404 Media, the HTS system failed to verify if an email address provided during account recovery was actually linked to the targeted Instagram account. Attackers convinced the AI support bot to associate a victim's account with a new email address under their control. They then requested a password reset and received the reset code, which allowed them to access the account. Screenshots and videos circulating on Telegram showed hackers interacting directly with the AI support assistant. In some cases, attackers used VPN services to match the account owner's location, making their requests appear more legitimate.
Meta told Maine authorities that 30 users in the state were affected. The company estimated that more than 20,000 Instagram accounts were impacted globally. Meta said it cannot determine exactly what information attackers accessed. However, compromised accounts may have exposed email addresses, phone numbers, dates of birth, profile information, photos, videos, Stories, direct messages, account activity records, and details of linked services.
After discovering the flaw, Meta disabled the HTS recovery system and invalidated all password reset links generated through the tool. The company required additional security checks and password resets for potentially affected users before allowing them to regain access. Meta plans to strengthen its email verification process before relaunching the tool. The company is also reviewing similar recovery systems across its platforms.
The incident has increased scrutiny of Meta's efforts to replace traditional customer support with AI. Earlier this year, Meta expanded AI-powered support across Facebook and Instagram, allowing the system to handle password resets, account recovery, and security requests. The breach highlights the risks of relying on automated systems for critical security decisions without sufficient safeguards.





View All

कंटेंट क्रिएटर के लिए सबसे दमदार बैटरी लाइफ वाले Windows लैपटॉप, 18 घंटे की मिलेगी बैटरी लाइफ

Samsung Galaxy S26 Ultra क्यों है साल का सबसे बेहतरीन स्मार्टफोन? जानें 5 बड़े कारण

MacBook Neo Review: सस्ता नहीं, Apple का मास्टरस्ट्रोक है ये Laptop!

Samsung Galaxy S26 Ultra Review: AI से लेकर प्राइवेसी डिस्प्ले है सबसे खास, जानें कैसी है परफॉरमेंस

Vivo V70 Elite Review 2026: Price in India, Specs, Features

Asus Zenbook 14 UM3406G Review: All New Thin and Light Ai Laptop

5 Anti-Scam Tools on WhatsApp that protect you from Digital Fraud

How Samsung’s Galaxy S26 Series is Democratizing Mobile Filmmaking

30,000 से कम आने वाले बेस्ट स्मार्टफोन, 4K वीडियो शूट और फुल डे बैटरी लाइफ

Why switch to iPhone These Reasons Will Convince You Instantly

Haier Launches F11, India’s Only Ultra Fresh Air Technology Washing Machine with Full AI Color Touch Panel

Samsung Galaxy S26 Ultra Privacy Display Explained: How It Works