**
In a startling turn of events, Instagram has reported that hackers successfully manipulated its AI support chatbot to gain unauthorised access to users’ accounts. This alarming development has raised significant concerns about the security of the platform, especially as it coincided with a wave of high-profile account takeovers, including that of former President Barack Obama. Meta, Instagram’s parent company, has since assured users that the issue has been resolved and that steps are being taken to secure any affected accounts.
Hackers Take Control: The Mechanics of the Breach
Recent revelations surfaced on social media, showcasing how hackers were able to “hijack” Instagram accounts by deceiving the AI support tool. According to various reports, the process involved the hackers faking their location—using a VPN to appear as though they were in the same area as the genuine account holder. By engaging with the AI chatbot, they were able to request an email change and subsequently receive a verification code, which the AI mistakenly approved.
A spokesperson for Meta, Andy Stone, confirmed that the situation has been addressed. “This issue has been resolved and we are securing impacted accounts,” he stated in a post on X. However, he dismissed claims suggesting that the vulnerability allowed hackers to target accounts of notable figures, labelling such assertions as “totally false.”
Notable Victims and Growing Concerns
Among those who experienced the fallout from this security breach was Jane Manchun Wong, a prominent security researcher and former Meta employee. Wong took to X to express her alarm at discovering that her password had been changed without her consent, noting that she received multiple password reset requests throughout the day. “Quite concerning,” she remarked, reflecting the anxiety many users feel about the integrity of their accounts.
The incident is particularly troubling considering it comes at a time when the influence of AI systems on data security is under intense scrutiny. Videos demonstrating the hacking process have circulated widely, exposing the ease with which these exploits can occur. One such video, shared by cybersecurity expert Dark Web Informer, illustrated the method of searching for target usernames and engaging with the AI assistant to facilitate the account takeover.
A Call for Improved Support
The broader implications of this incident extend beyond individual accounts. Users have voiced their frustrations over Instagram’s lack of accessible human support when faced with account theft. One user lamented the absence of human intervention, stating, “We’re at the point where one AI stole it and another can’t fix it, zero humans in the loop anywhere.” This highlights a critical gap in the platform’s support infrastructure, which has faced increasing criticism for its inadequacy.
The situation escalates further with reports indicating that Meta has been unresponsive to disputes raised by users regarding wrongful account bans in the EU. This lack of accountability adds to the fears surrounding user safety and the reliability of support systems in place.
Why it Matters
This incident serves as a stark reminder of the vulnerabilities inherent in AI-driven support systems, particularly in the realm of social media. As platforms like Instagram continue to integrate advanced technologies, the need for robust security measures and responsive human support becomes ever more crucial. The ability of hackers to exploit AI weaknesses not only jeopardises individual accounts but also erodes trust in the platform as a whole. As users demand greater accountability and security, social media companies must step up to ensure their systems safeguard user data effectively, or risk facing a significant backlash.
