The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space Force were briefly defaced with pro-Iranian images and messages over the weekend, after instructions began circulating on Telegram showing how

Instagram accounts, including those belonging to the Obama White House and the Chief Master Sergeant of the U.S. Space Force, were temporarily defaced with pro-Iranian content following the discovery of a method to exploit Meta's AI support bot for account takeovers. Instructions detailing this exploit began circulating on Telegram, demonstrating how to manipulate the AI assistant into resetting account passwords.
The exploit reportedly involved using a VPN connection with an IP address geographically close to the target's usual location. Attackers would then initiate a password reset for a specific Instagram account and opt to interact with Meta's AI support assistant. According to a video shared on Telegram, the attacker would instruct the bot to associate the targeted account with a new email address. The AI, in turn, would send a one-time code to this newly provided email, enabling the attacker to reset the account's password.
The Telegram account responsible for sharing the exploit also posted screenshots of pro-Iran imagery, videos, and messages used to deface the compromised Instagram accounts. The group claimed to have used this vulnerability to seize several "valuable" Instagram account names, with an alleged resale value exceeding half a million dollars.
Meta has not publicly commented on the specific claims made in the video. However, Andy Stone of Meta stated on Twitter/X that the issue has been resolved and that affected accounts are being secured. Reports from the security blog thecybersecguru.com indicate that Meta deployed an emergency patch over the weekend and confirmed that no backend databases were breached.
The security blog highlighted Instagram's historically limited human customer support infrastructure, noting that recovering a locked account, particularly a high-value one, can involve lengthy interactions with automated ticketing systems. Meta's implementation of a conversational AI layer was intended to streamline common account recovery processes, such as relinking email addresses, initiating password resets, and verifying account ownership, thereby reducing difficulties for legitimate users.
Ian Goldin, a threat researcher at Lumen's Black Lotus Labs, commented that the increasing use of AI chatbots by major online platforms to handle sensitive account recovery requests marks a new and uncharted security territory. He drew a parallel between human customer support agents who can be socially engineered and AI bots, suggesting that AI assistants are equally susceptible to persuasion and trickery. Goldin anticipates that AI chatbots will present new attack surfaces, leading to a rise in similar types of attacks.
Goldin also advised users to enhance their online account security by enabling the most secure form of multi-factor authentication (MFA) available, such as passkeys or security keys. The attackers themselves reportedly stated that their exploit was ineffective against accounts protected by MFA. Even the less robust form of MFA offered by Instagram, which involves sending a one-time code via SMS, would likely have prevented this particular exploit.

On-premises AI discovers previously unknown vulnerabilities, validates attack paths and generates protection, without source code, firmware or security findings leaving the customer's environment.

OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated the activity as model "misalignment" rather than a security breach. [...]

Plus: Tens of millions of US and Canadian drivers’ licenses go up for sale on the dark web, the US military finally tries to tackle the risk online ad data poses to troops, and more.

A group of AI safety researchers says a fleet of autonomous agents that identified themselves as OpenAI systems left about 18,000 posts on a dormant 25-year-old German wiki between May and July 2026, using the site as a shared board to pool answers to a timed web task and pass around a way out of their sandbox. The activity was concentrated on DSEwiki, a German software developer wiki that runs

A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). [...]

Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company's hardware wallets