Instagram accounts continue to be hacked as hackers claim Meta only removed a UI button

Wait 5 sec.

Credit: Taylor Kerns / Android AuthorityTL;DRAttackers are using text prompts in Meta AI to change associated email addresses and hijack Instagram accounts, bypassing two-factor authentication.While Meta claims the issue is resolved, users report they are still being hacked.Some developers claim the company only removed the frontend “Get Support” button, leaving API endpoints vulnerable.The security lapse follows Meta’s massive corporate layoffs and reassignments to AI initiatives, which reportedly shrank Instagram’s Trust and Safety division by 60%.Meta’s overreliance on its Meta AI support chatbot (and its recent AI-centric layoffs) is coming back to bite it. Hackers hijacked several high-profile Instagram profiles by sending simple text prompts to Meta AI that changed the target profile’s associated email address. Meta’s Vice President of Communications, Mr. Andy Stone, stated that the “issue has been resolved and we are securing impacted accounts.” However, it seems the issue hasn’t been resolved, as Instagram accounts continue to be hijacked, with some users claiming Meta has only removed frontend access to the hack while leaving the backend intact!Notable reverse engineer and code sleuth Jane Manchun Wong claims that one of their secondary accounts with a four-letter username was hacked, despite having two-factor authentication enabled.