Utopia Tech
StrategyAI-assisted1 min read

Hacking Meta’s AI Chatbot

Hackers exploited Meta's AI support chatbot to hijack Instagram accounts by using VPNs to spoof locations and convincing the bot to add new email addresses and reset passwords. While Meta claims the specific vulnerability has been patched, the incident highlights a fundamental security concern: LLM-based chatbots lack the trustworthiness required for sensitive account management functions, and sim

UT

Utopia Tech

June 4, 2026 · 1 min read

Share

Hackers are convincing Meta’s AI support chatbot to let them take over other peoples’ accounts: A video posted on X showed the step-by-step process to hack someone’s Instagram account. The hacker allegedly used a VPN to spoof the targets’ presumed location to avoid triggering Instagram’s automated account protections. Then, the hacker opened a chat with Meta AI Support Assistant and asked the bot to add a new email address to the target’s account.

The chatbot can be seen sending a verification code to the email address provided by the hacker; the hacker then shares the verification code with the chatbot, which prompts the chatbot to show a button to “Reset Password.” The hacker enters a new password and takes over the victim’s account. […] On Monday, Instagram spokesperson Andy Stone said in a reply to Wong’s post and others that the issue was now fixed.

It’s unclear how many Instagram users had their accounts improperly accessed. It’s not that easy. Probably this particular tactic is now blocked.

But there are others, many others, and they cannot be blocked as a class. The real problem is that LLM chatbots are not trustworthy enough for this application. Another news article .

Originally published at schneier.com

Share
▸ Want a deeper look?

Talk to an architect about applying this to your stack.

60-minute technical evaluation, no obligation. We'll map the ideas in this article to your environment.

Skip to main content