Hackers reportedly abused Meta’s AI-powered support assistant to take over Instagram accounts, including high-profile accounts such as the Obama White House Instagram account and the Chief Master Sergeant of the U.S. Space Force account. According to KrebsOnSecurity, instructions circulated on Telegram showing how attackers could trick Meta’s AI support bot into resetting account passwords. Meta later said the issue had been resolved and that impacted accounts were being secured. 

The incident is a strong reminder that AI in support workflows is not automatically safer, smarter, or more secure just because it has a futuristic label slapped on it. If an AI assistant has the authority to change account recovery details, reset passwords, or approve access changes, then it is not merely a chatbot. It becomes part of the security control plane.

In this case, attackers allegedly convinced the bot to link a target account to a new email address, receive a verification code, and proceed toward password reset. Reports also noted that some attackers used VPNs to appear closer to the victim’s location, helping bypass location-based checks.

Why This Matters 

Account recovery is one of the weakest points in digital identity. Even when users have strong passwords, attackers often target recovery workflows because they are designed to help people who are locked out. That helpfulness is exactly what criminals exploit, because nothing says “secure system” like letting the attacker politely ask the robot for the keys.

The bigger concern is not simply that Instagram accounts were hijacked. The concern is that automated support systems can become high-risk decision-makers if they are allowed to modify sensitive account settings without strong identity verification and human oversight.

For platforms, AI support tools must have strict limits. They should not be allowed to approve sensitive changes such as email replacement, password reset, MFA removal, or device trust decisions unless multiple strong verification checks are passed. High-value accounts should require additional review before recovery actions are completed.

For users and organizations, this incident reinforces the need to enable multi-factor authentication, regularly review account recovery emails and phone numbers, monitor login alerts, and avoid relying only on platform support systems for protection. Brand accounts, government accounts, influencers, media handles, and business pages should be treated like critical assets, not casual social media toys. 

Final Comment 

The Meta AI support bot incident shows that attackers do not always need to break encryption or exploit a software vulnerability. Sometimes they only need to manipulate the recovery process. As companies rush to automate customer support with AI, they must remember that speed and convenience cannot come at the cost of account security.

AI can help support teams, but it should not become an unsupervised gatekeeper for identity recovery. When a bot can reset access to a user account, that bot becomes a security boundary. And security boundaries need controls, monitoring, audit trails, and escalation paths, not blind trust wrapped in cheerful automation.


The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space Force were briefly defaced with pro-Iranian images and messages over the weekend, after instructions began circulating on Telegram showing how to trick Meta's "AI support assistant" bot into resetting account passwords.

Source: Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts via KrebsOnSecurity — published 01 Jun 2026.