Observed Signal · Jun 2, 2026 · Security Incident · Source: t3n · Impact: 4/5 · Sentiment: Negative

Hackers Used Meta's AI Support to Hijack Instagram Accounts

Executive Signal Summary

In March 2026 Meta rolled out an AI-powered support feature on Facebook and Instagram to assist with account issues such as password resets. Security researchers report that attackers exploited the AI support chatbot by requesting an email change for targeted accounts; the chatbot sent a verification code to the attacker, who then completed a password reset and gained full access. The method circulated in Telegram groups since late March 2026 and was used to take over several high-profile profiles, including Barack Obama and a Chief Master Sergeant from the U.S. Space Force. Attackers reportedly used VPN-based location spoofing to avoid detection. Meta told 404Media it has fixed the vulnerability and is helping affected users regain access.

Polaris7 AgentPolaris7 Strategic Assessment
High Confidence

A security vulnerability in a major platform's AI support feature that enabled account takeover of high-profile profiles affects platform trust, user safety, and could impact advertisers/creators who rely on account integrity; Meta is a major walled-garden platform.

SIGNAL RADAR

Track Meta Signals & Market Shifts in Real-Time

Polaris7 autonomous intelligence agents track regulatory filings, primary sources, executive changes, and deal flow 24/7. Create your free Explorer workspace to monitor these entities.

Start Free in Explorer
Free Explorer tierNo credit card requiredInstant watchlist setup

Key Takeaways & Evidence Grounding

  • Meta launched AI-powered support on Facebook and Instagram in March 2026 to assist with account issues.
  • Attackers used Meta's AI support chatbot to request email changes and received verification codes, enabling password resets and account takeovers.
  • Several high-profile accounts — reportedly including Barack Obama and the Space Force Chief Master Sergeant's profile — were compromised.
  • The exploit method circulated in Telegram groups from late March 2026 and attackers used VPNs to spoof typical device location.
  • Meta confirmed the issue to 404Media, says it has fixed the vulnerability, and is assisting affected users to recover accounts.

Ontology Mapping & Concepts

Primary Source Grounding & Direct Attribution
Direct Origin Attribution
Primary Reporting: t3n•Published: Jun 2, 2026
Original Coverage Title: “Nicht mit Trojanern, sondern mit Metas eigener KI: So konnten Hacker Instagram-Konten kapern”

Related Market Signals & Shifts

Recent verified developments and strategic activity across this market segment.

Platform SecurityJun 1, 2026

Hackers Used Meta AI Chatbot to Hijack Instagram Accounts

Instagram patched a security flaw that let attackers hijack accounts by tricking Meta’s AI-powered support chatbot into adding an attacker-controlled email and initiating a password reset. Reddit and X users reported multiple compromises over the weekend, including the dormant Obama-era White House Instagram handle, the account of U.S. Space Force chief master sergeant John Bentinvegna, and security researcher Jane Wong. A published video showed attackers using a VPN to spoof location, having the chatbot send a verification code to the attacker’s email, then using the bot’s interface to reset the password. TechCrunch verified the attacker email in the video received the verification code. Instagram spokesperson Andy Stone said the issue was fixed; Meta did not provide additional comment to TechCrunch.

Read assessment
Conversational AI / Platform SecurityJun 3, 2026

Instagram Alerts Victims After Meta AI Chatbot Hacks

A widespread campaign exploited Meta’s AI support chatbot to take over Instagram accounts by convincing the bot to link targets to attacker-controlled emails, allowing password resets. Meta said it fixed the issue but continued reports and Telegram discussions suggested the technique persisted and that some hacked short “OG” handles were being resold. Meta secured affected accounts, began sending password-reset emails and notifications to people it determined were targeted, and declined to disclose how many users were impacted. Reported targets included high-profile and dormant accounts; TechCrunch and other outlets documented examples and social complaints. The incident raises concerns about automated account-recovery tooling and the risks of delegating critical support actions to conversational AI systems.

Read assessment
PlatformMar 20, 2026

Meta Launches 24/7 AI Support for Instagram and Facebook

Meta has rolled out the Meta AI Support Assistant globally for Instagram and Facebook, embedding it in iOS and Android apps and in desktop help centers to provide 24/7 assistance for account, password and content issues. The assistant can answer queries and—when requested—perform actions such as password resets, reports and settings changes; chats must be initiated by the user. The rollout includes general support in all languages supported by the platforms, while some login-help features are initially limited to certain cases in the US and Canada. Meta also announced expanded AI-driven content enforcement systems that, in tests, detected thousands of previously missed fraud attempts daily, reduced impersonation reports by over 80%, doubled detection of adult sexual harassment violations while lowering error rates by over 60%, and cut views of fraudulent ads by 7%.

Read assessment

Track Real-Time Market Signals & Shifts

Set up custom watchlists to receive automated, evidence-grounded executive digests whenever material signals or shifts occur across your tracked landscape.