Hackers Exploit Meta's AI Chatbot To Hijack Prominent Instagram Accounts
Security researcher Brian Krebs reports hackers exploited Meta’s “AI support assistant” to take over prominent Instagram accounts by using the chatbot to change an account’s email after initiating a password reset. Krebs says attackers then used a one-time code to reset passwords and defaced accounts with pro-Iranian content. Meta’s Andy Stone said the issue is resolved and impacted accounts are being secured.

Cybersecurity exploit tied to Meta’s AI assistant and Instagram account security; could drive reputational/regulatory scrutiny and user trust concerns.
Article says hackers exploited Meta’s AI support assistant to reset emails and take over prominent Instagram accounts, then defaced pages.
Near-term sentiment risk; likely limited fundamental impact unless regulators or material user/advertising effects emerge.
Background
Meta deployed an “AI support assistant” for customer service; researchers report it could be manipulated to change the email tied to an Instagram account during a password reset flow.
Why it matters
If the exploit path is broadly reproducible, it can increase compliance and security spend and invite regulator attention; however, the article indicates remediation and account securing occurred quickly.
Market relevance
Security/AI workflow vulnerability in Meta’s Instagram support tooling is a negative sentiment catalyst, but the article frames it as resolved with no quantified financial impact.
Market effects
Raises perceived security risk for AI-enabled customer support and social platforms; may increase scrutiny of AI/identity workflows across the sector.
Primarily global brand/reputation risk; no clear region-specific demand impact described.
High visibility attack (Obama/Space Force/Sephora accounts) increases global reputational sensitivity for major social platforms.
Alternative perspectives
Because Meta states the issue is resolved and accounts are secured, the market may view this as an isolated incident rather than a durable earnings risk.
Potential regulatory/incident-reporting timelines and whether any downstream metrics (ad load, user engagement, account churn) are affected are not covered here.
Key entities
- companyMeta
Operator of Instagram and the AI support assistant reportedly exploited for account takeover.
- personBrian Krebs
Security researcher whose report is cited as the basis for the exploit description.
- personAndy Stone
Meta VP of Communications who said the issue was resolved and impacted accounts were secured.




