{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreihavuvj2ujbzcp5wpyjkktrdt46crn6n3zzfnlphtpcwcvvxelsiq",
"uri": "at://did:plc:kyxdufbi5qaljy7bxivztuhy/app.bsky.feed.post/3mnis3ckon7y2"
},
"path": "/blog/archives/2026/06/hacking-metas-ai-chatbot.html",
"publishedAt": "2026-06-04T11:04:09.000Z",
"site": "https://www.schneier.com",
"tags": [
"Uncategorized",
"AI",
"chatbots",
"cybersecurity",
"hacking",
"LLM",
"Meta",
"convincing",
"video"
],
"textContent": "Hackers are convincing Meta’s AI support chatbot to let them take over other peoples’ accounts:\n\n> A video posted on X showed the step-by-step process to hack someone’s Instagram account. The hacker allegedly used a VPN to spoof the targets’ presumed location to avoid triggering Instagram’s automated account protections. Then, the hacker opened a chat with Meta AI Support Assistant and asked the bot to add a new email address to the target’s account. The chatbot can be seen sending a verification code to the email address provided by the hacker; the hacker then shares the verification code with the chatbot, which prompts the chatbot to show a button to “Reset Password.” The hacker enters a new password and takes over the victim’s account...",
"title": "Hacking Meta’s AI Chatbot"
}