Meta Reports Over 20,000 Instagram Accounts Compromised Due to AI Support Flaw
Meta reveals over 20,000 Instagram accounts hacked and stolen using AI support bot

Image: Techradar
Meta has confirmed that 20,225 Instagram accounts were compromised due to a vulnerability in its AI-powered customer support system. The flaw allowed hackers to request password resets to unassociated emails, potentially exposing user data. Meta has disabled the system and is conducting a thorough review.
- 01The vulnerability was identified in the High Touch Support (HTS) system, which assists in account recovery.
- 02Hackers exploited the flaw to receive password reset links for accounts not associated with their email addresses.
- 03Meta has reset passwords for all affected accounts and implemented mandatory security checkpoints for users.
- 04The company is reviewing similar account recovery processes across its platforms to prevent future incidents.
- 05Cybersecurity experts emphasize the need for rigorous security measures in AI-powered tools to mitigate risks.
Advertisement
In-Article Ad
Meta has confirmed that a total of 20,225 Instagram accounts were compromised due to a vulnerability in its AI-driven customer support system, known as High Touch Support (HTS). This flaw allowed attackers to trick the system into sending password reset codes to email addresses not associated with the targeted accounts. While Meta stated that there is currently no evidence of data exfiltration, the potential for unauthorized access to sensitive user information such as contact details, social media posts, and direct messages remains a concern. In response to the breach, Meta has disabled the HTS system, reset passwords for all affected accounts, and mandated a security checkpoint requiring users to re-authenticate. The company also plans to fix the authentication process to ensure that password reset requests are properly verified against existing account information. Cybersecurity experts have highlighted the need for organizations to implement stringent security measures for AI systems that handle sensitive operations, as the risk landscape evolves with the integration of AI in customer support and identity verification.
Advertisement
In-Article Ad
The breach affects over 20,000 users, potentially exposing their personal information and account activity.
Advertisement
In-Article Ad
Reader Poll
How concerned are you about AI vulnerabilities in customer support systems?
Connecting to poll...
More about Meta
Read the original article
Visit the source for the complete story.





