Meta reveals over 20,000 Instagram accounts hacked and stolen using AI support bot
- Meta confirms 20,225 Instagram accounts hit by HTS password‑reset flaw
- Bug let attackers request resets to unassociated emails
- HTS disabled, passwords reset, full recovery‑flow review underway
Last week’s attack against Meta’s customer support affected just over 20,000 accounts, the company has now confirmed. Hackers managed to break into these profiles and most likely exfiltrate the data found inside.
Last week, news broke that cybercriminals exploited a vulnerability in Meta’s AI-powered customer support service, tricking it into sending password reset codes for other people’s accounts.
Now, the Facebook and Instagram owner filed a new report with the Office of the Maine Attorney General, in which it stated that 20,225 persons were affected. In a letter Meta sent to the Maine AG, it was said that the company discovered a flaw in High Touch Support (an AI-assisted account recovery system for Instagram) on May 31, 2026.
Mitigating the intrusion
“The tool...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE