Top
Best
New

Posted by ssiddharth 1 day ago

The newest Instagram “exploit” is the goofiest I've seen(www.0xsid.com)
https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-su...
2111 points | 470 commentspage 3
jedberg 1 day ago|
Security 101 when changing the email of an account for any reason: email the old account and let it know the change happened.

The weird thing is I know the Instagram security team, and they are top notch. I have a feeling this was vibe coded by someone outside of security and security wasn't looped in.

vander_elst 1 day ago||
Someone high up said something along the lines that they want to see some progress and someone down below looking for a promotion pushed this. This has always been happening but I think before it was more difficult to justify something like this as one would have needed to show the results of an algorithm, now it's easier to convince someone higher up that AI will solve it no worries
LordHumungous 14 hours ago|||
I work at Meta. The security team was recently gutted. 50% were either laid off or moved to data labeling.
sunnybeetroot 18 hours ago|||
If you know them, ask them how this happened?
Kwantuum 1 day ago|||
The fact that this can happen at all without the security team's knowledge is telling.
jedberg 1 day ago|||
Probably not as telling as you think it is.

The security team at any organization is always considered an enemy to product and innovation. It wouldn't be surprising if management made it impossible for them to put in place the monitoring necessary to know this was happening. Especially at somewhere whose motto is "move fast and break things".

adunna 15 hours ago||
IG's security team is top-notch, but there's just not enough people.
keybored 1 day ago|||
Important tech people on HN seem to be surrounded by technical excellence while the user data leaks and other sociological externalities happen to trail all the nearby paths.
bigstrat2003 18 hours ago||
LLMs don't understand security 101, or anything else for that matter. It shouldn't be surprising if they do something like this.
ApiFB-Dev 12 hours ago||
The scary bit is that this sounds less like a clever exploit and more like abusing an overly-trusted internal workflow. AI support just makes that workflow easier to poke at scale. Do you think this would have been possible with human support too, just slower?
orbital-decay 7 hours ago||
Imagine dragging in a random person from the street and making them work on account recovery without training them first. That seems to be what happened here, the process was simply left to model's judgement, and the model only sees a text stream, even less than a random person from the street who is at least going to be vaguely aware of their position. It could be a roleplay for what the model cares.

The agent should have had proper instructions to check the identity of a complete stranger. Yes it's still possible to jailbreak the model, and it's probably still easier than deceiving a trained human employee in a social engineering attack. But it doesn't mean there shouldn't be a proper process of identity verification on account recovery at Meta.

Cider9986 1 day ago||
Here is a video showing it being done.

(https://xcancel.com/DarkWebInformer/status/20612535997583155...)

rationalist 19 hours ago|
Warning: NSFW video audio, suggest people mute.
Cider9986 14 hours ago||
Damn yeah I didn't even notice the lyrics.

https://dm.vern.cc/Helen-12-gauge-shotgun-shell-lyrics

yalue 22 hours ago||
So every time my ISP changes my IP, facebook pitches a fit, makes me solve a dozen captchas and authenticate on an existing login session, but in the meantime Meta' sother website doesn't even require using the registration email for a password reset?
alper 11 hours ago||
Passkeys are not going to fix this. The only thing that will fix this is some kind of notarization backed identity that people can go to as a recourse.

The EU Should force them to do this.

orbital-decay 5 hours ago||
>as a recourse

In practice it would be obligatory everywhere and fully destroy any accidental privacy leftovers.

jachee 11 hours ago||
This is an inherently human problem.

Those are exceedingly difficult to solve via technology.

simonw 1 day ago||
> All the Telegram groups have quieted down as Meta seems to have patched it already, but it appears this particular method was active for weeks, if not months.

Is that for real? I find it hard to believe that an exploit THIS simple and easy to abuse managed to stay live for weeks or months.

parable 1 day ago||
I'm inclined to believe it. As someone who studies this side of the Internet quite often and has seen equally trivial exploits stay active for weeks or months without being patched, I have no trouble believing this claim. I'm sure there are messages in Telegram channels from weeks or months ago that corroborate this.
tencentshill 1 day ago||
When your job is on the line, you use AI like your boss tells you to. Implement the spec and move on. No time to think about security, if you delay this feature it's your ass.
armchairhacker 1 day ago||
This is an embarrassing failure for Instagram. But SIM cards have been hacked the same (by tricking support, claiming the phone was lost or stolen), except the agent was human.

The solution (which also solved SIM support agents being bribed or hacking known acquaintances) was to prevent the agents from resetting the SIM card without some steps the original owner would have to follow (and could follow even if they've lost their original phone), like a PIN they'd have to remember. I think the same solution should be applied to AI agents.

foota 1 day ago||
Fun fact: I once got a security bounty because they sent the 2FA emails through click (some email monitoring SAAS thing) with "view in web" enabled, and it was set up so that the emails under a given template used an auto incrementing ID, so you just had to request a 2FA email and then access it through click's web UI.
mepiethree 19 hours ago|
Deleted my Instagram account. This should be a bigger international story, but most people outside HN won’t hear about it and won’t understand why this is such a big deal
More comments...