logo
blogtopicsabout
logo
blogtopicsabout

Instagram Hack Exposes AI Chatbot Vulnerability: 20,000+ Accounts Compromised

AISecurityData BreachPlatformsInstagram
June 7, 2026

TL;DR

  • •Meta confirmed over 20,000 Instagram accounts were hacked due to an AI chatbot flaw.
  • •Hackers abused the chatbot to perform password resets without proper email verification.
  • •This highlights risks of relying on AI for account recovery without robust security checks.

Meta has confirmed a significant security breach affecting over 20,000 Instagram accounts, stemming from a vulnerability in its AI-assisted account recovery system. The incident underscores the potential risks of integrating AI-powered support tools without sufficient safeguards against malicious exploitation.

What Happened

According to a data breach notification filed with the Maine Attorney General’s office, hackers exploited a flaw that allowed them to initiate password resets for Instagram accounts by providing an email address not associated with the account. The AI chatbot, intended to assist with account recovery, incorrectly sent password reset links to these attacker-controlled email addresses instead of rejecting the requests. This allowed hackers to gain full control of compromised accounts, including access to direct messages, posts, and linked contact information. The abuse was ongoing for an unspecified duration before being discovered and addressed.

Meta’s breach notice states that the issue stemmed from a bug in a separate code path within the AI system. "The tool itself worked properly and functioned as intended; however due to a bug in a separate code path, the system did not properly verify that the email address provided by the individual requesting a password reset matched the email address associated with that user’s Instagram account," the notice explains. The lack of proper email verification allowed unauthorized access.

Two screenshots side-by-side, showing the Meta AI support assistant showing a prompt that says, "I've been hacked," followed by another screenshot showing a person asking the chatbot to send a verification code to an email address not registered with the account.: image omitted due to site embedding policy; open the original article (Weekinsecurity) (opens in a new tab) to view it. Photo/source: this week in security (opens in a new tab)

Why It Matters

This incident demonstrates the potential for AI systems to be exploited in ways their developers may not anticipate. While AI chatbots can enhance customer support and streamline processes, they also introduce new attack vectors if not carefully secured. The reliance on AI for critical functions like account recovery necessitates robust validation and security measures to prevent abuse. The fact that accounts without two-factor authentication were particularly vulnerable highlights the importance of enabling this security feature.

For developers, this case serves as a critical reminder to thoroughly test AI-powered systems for edge cases and potential vulnerabilities. Input validation and multi-factor authentication should be considered mandatory components of any AI-driven account recovery process. It also stresses the need for continuous monitoring of AI system behavior to detect and respond to malicious activity.

What To Watch

It remains unclear how long this vulnerability existed before discovery. Meta has not yet released details on the full extent of the damage or the specific steps taken to remediate the issue beyond correcting the code path. Developers and security professionals should monitor Meta’s future disclosures for further technical details about the vulnerability and the implemented fixes. It will also be important to observe whether similar vulnerabilities are discovered in other AI-powered customer support systems. The incident will likely prompt increased scrutiny of AI security practices across the industry.

Source:

Weekinsecurity ↗