{"data":{"id":"e51d9d26-bfc7-4148-af65-29e979fdf82f","title":"Hacking Meta’s AI Chatbot","summary":"Hackers discovered a way to take over Instagram accounts by tricking Meta's AI support chatbot into resetting passwords for accounts that weren't theirs. The attacker would use a VPN (a tool that masks your location) to hide their location, then convince the chatbot to send a password reset code to an email address they controlled, allowing them to take over the victim's account. Meta said the specific exploit was fixed, but security experts warned that chatbots are fundamentally unreliable for account security tasks.","solution":"Instagram spokesperson Andy Stone stated that 'the issue was now fixed' on Monday.","labels":["security"],"sourceUrl":"https://www.schneier.com/blog/archives/2026/06/hacking-metas-ai-chatbot.html","publishedAt":"2026-06-04T11:04:09.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","jailbreak"],"issueType":"news","affectedPackages":null,"affectedVendors":["Meta"],"affectedVendorsRaw":["Meta","Meta AI Support Assistant","Instagram"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-06-04T11:04:09.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity"],"aiComponentTargeted":"api","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}