{
  "$type": "site.standard.document",
  "bskyPostRef": {
    "cid": "bafyreihavuvj2ujbzcp5wpyjkktrdt46crn6n3zzfnlphtpcwcvvxelsiq",
    "uri": "at://did:plc:kyxdufbi5qaljy7bxivztuhy/app.bsky.feed.post/3mnis3ckon7y2"
  },
  "path": "/blog/archives/2026/06/hacking-metas-ai-chatbot.html",
  "publishedAt": "2026-06-04T11:04:09.000Z",
  "site": "https://www.schneier.com",
  "tags": [
    "Uncategorized",
    "AI",
    "chatbots",
    "cybersecurity",
    "hacking",
    "LLM",
    "Meta",
    "convincing",
    "video"
  ],
  "textContent": "Hackers are convincing Meta’s AI support chatbot to let them take over other peoples’ accounts:\n\n> A video posted on X showed the step-by-step process to hack someone’s Instagram account. The hacker allegedly used a VPN to spoof the targets’ presumed location to avoid triggering Instagram’s automated account protections. Then, the hacker opened a chat with Meta AI Support Assistant and asked the bot to add a new email address to the target’s account. The chatbot can be seen sending a verification code to the email address provided by the hacker; the hacker then shares the verification code with the chatbot, which prompts the chatbot to show a button to “Reset Password.” The hacker enters a new password and takes over the victim’s account...",
  "title": "Hacking Meta’s AI Chatbot"
}