The Circuitry
THE CIRCUITRYYour one-stop source for all tech news
HOMETODAYNEWSFEEDEVENTS
BOOKMARKS
RSS
© 2026 The Circuitry
About UsSourcesContactCorrectionsPrivacy
  • Today
  • Feed
  • Events
  • Saved
Scroll for more
Verification
VERIFIEDConfidence: HIGH
Source identified
Claims cross-referenced
No discrepancies found
Fact-check summary

Multiple outlets including TechCrunch, Krebs on Security, 404 Media, BBC, The Guardian, and Reuters corroborate the Meta AI chatbot Instagram hack affecting ~20k accounts and high-profile targets.

Sourcing
3independent sources

via 9to5Mac

9to5Mac · track record
73Stories
100%Verified
530d
All sources →
Markets
META···

Live quote · not investment advice

From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
Home/Tech/Hackers tricked Meta AI bot to hijack 20,000 Instagram accounts
VERIFIEDBy Xavier Rivera· ·2 min read

Hackers tricked Meta AI bot to hijack 20,000 Instagram accounts

Hackers tricked Meta’s AI support chatbot into resetting passwords and handing over around 20,000 Instagram accounts, including high-profile ones belonging to the Obama-era White House, U.S. Space Force, and Jane Wong. The prompt injection attack, active since February, enabled gray-market resale of valuable handles before Meta patched it on May 29.

Source:9to5Mac
Post
Hackers tricked Meta AI bot to hijack 20,000 Instagram accounts
From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
TL;DRAI · 60 sec read

Hackers compromised 20,000 Instagram accounts by tricking Meta’s AI support chatbot with prompt injection. They used VPNs to add new emails and reset passwords without controlling originals. High-profile accounts were seized and resold. The chatbot skipped identity verification. Meta patched the flaw on May 29.

Hackers compromised around 20,000 Instagram accounts by tricking Meta’s AI-powered support chatbot into granting them access. The attack allowed them to change associated email addresses and reset passwords without ever controlling the victims’ legitimate emails. High-profile accounts including the Obama-era White House, the U.S. Space Force’s chief master sergeant John Bentivegna, and security researcher Jane Wong were among those taken over.

Attackers used VPNs and prompt injection on the support bot. The hackers employed a VPN to spoof the targets’ presumed locations and avoid triggering automated protections. They then opened a chat with Meta’s AI Support Assistant, requested to add a new email address, and provided a verification code sent by the bot to that new address. The chatbot subsequently displayed a “Reset Password” button, allowing the hackers to set a new password and seize control.
The attack allowed them to change associated email addresses and reset passwords without ever controlling the victims’ legitimate emails.

A video demonstrating the process circulated on X, and TechCrunch verified that the hacker’s public email mailbox received the verification code as shown. The exploit relied on the chatbot’s failure to verify the requester’s identity or require control of the original linked email. Researchers described it as a straightforward prompt injection attack that had reportedly been active since February.
POST FROM @DarkWebInformer· tweet embedded in the source article showing the exploit video in action
https://x.com/DarkWebInformer/status/2061253599758315527

Compromised accounts were resold on the gray market. Valuable Instagram accounts, including short handles @hey and @jowo, were targeted for resale. Their combined gray-market valuation was estimated above $1 million. Hackers held accounts briefly for clout, resale, or brand impersonation, with some posting pro-Iranian images and messages during the compromise.
From The CircuitryThe Feed — live briefs across tech, all day.See what’s happening →

Prominent researchers such as Jane Manchun Wong reported their accounts hacked, with Wong stating her password was changed without her knowledge and she received multiple reset attempts. Pseudonymous researcher ZachXBT posted that the Meta AI support had excessive permissions allowing password resets without 2FA and without identity verification. Dark Web Informer similarly described the exploit and noted it had been patched.
The exploit relied on the chatbot’s failure to verify the requester’s identity or require control of the original linked email.
From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
Meta deployed an emergency patch and confirmed the scale. Instagram implemented the fix on May 29. Spokesperson Andy Stone stated on May 31 that the issue was resolved. Meta later revealed that around 20,000 accounts were compromised and outlined steps taken in response, though specific additional measures were not detailed in initial reports.
Why this mattersAI · ~100 words

Tap a lens to see what this story means for you.

Reader-supported
DonateBuy me a coffee →Follow@thecircuitry_ →Follow@thecircuitry.to →

Reader-supported · The Brief

Liked this? The Brief brings you the whole day in tech, verified, every morning. Two minutes, free forever.

HELP US IMPROVE
From The Circuitry

See what’s happening right now

The Feed runs all day — short, verified briefs the moment they break.

Open the Feed →
From The Circuitry

Follow @thecircuitry_

Every story we publish, as it happens. No noise between.

Follow on X ↗On Bluesky ↗

Reader-supported

The Circuitry is a passion project I've always wanted to build, and I love the work behind it.

Running it costs real money. APIs, hosting, time. To keep improving the site and growing this into something useful for everyone, those costs have to be covered.

Any contribution is appreciated. If not, no pressure. Thanks for reading.

Buy me a coffee
InstagramMetaSecurity
More from9to5Mac
  • Claude, ChatGPT and Grok hit by widespread outage

    Tech · 4d
  • FBI Probes Sale of 153M Drivers License Scans on Dark Web

    Tech · 5d
  • Sonos launches Ace Ultra headphones and Beam Ultra soundbar

    Tech · 6d
More inTech
  • Mathspace breach exposes data of 1,079,819 users

    Tech · 6h
  • iPhone Handoff to share one number across two devices in iOS 27

    Tech · 15h
  • iPhone 18 Pro Leaks, BYD’s 10,000 Chargers, DLSS 5 Mod

    Tech · 15h
SupportThe Work

The Circuitry is reader-supported. If you find the daily brief useful, you can buy me a coffee to keep it going.

Buy a coffee →
SubscribeCircuitry Brief

Liked this? The Brief brings you the whole day in tech, verified, every morning. Free forever.

From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →

MORE IN TECH

Mathspace breach exposes data of 1,079,819 users

Mathspace disclosed that attackers stole personal data belonging to 1,079,819 students, staff, and parents or guardians in Australia and New Zealand after breaching its Metabase system. The incident is the latest in a campaign exploiting a Metabase zero-day vulnerability used by multiple companies.

iPhone Handoff to share one number across two devices in iOS 27

iPhone Handoff will let users switch between two iPhones sharing one number when iOS 27 launches later this month. The feature supports pairing a main device with a companion and requires carrier support, with code referencing T-Mobile US and Telekom.de.

iPhone 18 Pro Leaks, BYD’s 10,000 Chargers, DLSS 5 Mod

A busy week featured iPhone 18 Pro dummy units ahead of the September 9 keynote, BYD’s deployment of 10,000 ultra-fast chargers since March 5, and tinkerers applying AI tools including DLSS 5 and Claude to everyday devices. The recap also highlights the growing threat of SIM swapping scams that can empty bank accounts through intercepted authentication codes.