
Meta AI Bot Exploited by Pro-Iran Hackers: New Attack Surface Emerges in Account Recovery
Pro-Iran hackers weaponized Meta's AI support bot for rapid Instagram takeovers, highlighting AI as an emerging vector for account hijacks with geopolitical and personal stakes.
The weekend compromise of high-profile Instagram accounts, including those tied to the Obama White House and U.S. Space Force leadership, reveals a critical flaw in Meta's deployment of conversational AI for sensitive recovery workflows. Hackers on Telegram leveraged the bot's eagerness to assist with password resets by spoofing IP proximity and social-engineering it into adding attacker-controlled emails, bypassing traditional verification. This goes beyond simple automation failure: it exposes how platforms trading human support for scalable AI create predictable persuasion vectors that mirror classic social engineering but at machine speed. Original coverage underplays the geopolitical angle, with pro-Iran actors targeting symbolic U.S. accounts to amplify messaging, a pattern seen in prior Telegram-coordinated campaigns against Western digital assets. Krebs on Security accurately notes the exploit's simplicity yet misses parallels to documented AI jailbreaks in customer service systems, as analyzed in Lumen Black Lotus Labs reports on conversational threat surfaces. Thecybersecguru.com correctly identifies Instagram's weak recovery infrastructure as the root enabler, but overlooks how emergency patches alone fail against iterative prompt refinement by determined actors. Synthesizing these, the incident marks an inflection where AI layers intended to reduce friction instead expand the attack surface, particularly for accounts lacking robust MFA. High-value handles resold for hundreds of thousands underscore economic incentives layered atop ideological ones. Platforms rushing AI adoption without adversarial testing risk cascading compromises across ecosystems.
SENTINEL: State-linked actors will iterate on AI persuasion tactics against recovery systems, forcing platforms to harden conversational interfaces or face repeated high-visibility breaches.
Sources (3)
- [1]Primary Source(https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts/)
- [2]Related Source(https://thecybersecguru.com)
- [3]Related Source(https://www.blacklotuslabs.com)