META has reported a security incident involving an Instagram account recovery tool, where attackers exploited a vulnerability to send password reset links to unauthorized email addresses. The incident affected a total of 20,225 users, including 30 residents of Maine. The issue, linked to Instagram’s AI-assisted 'High Touch Support' system, was discovered on May 31, 2026, with the incident occurring on April 17, 2026.
Instagram Recovery Tool Bug Exposed 20,225 Accounts to Password Reset Abuse
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and More
thehackernews.com
-
Instagram Recovery Tool Bug Exposed 20,225 Accounts to Password Reset Abuse
databreaches.net
-
Meta Instagram AI flaw leaks 20k accounts, forces password resets
securityaffairs.com
-
Instagram recovery bug lets attackers hijack 20k accounts
securityonline.info
-
Meta patches bug that sent Instagram reset links to wrong users
infosecurity-magazine.com
-
Meta shuts AI recovery tool after 20k Instagram accounts hacked
securityweek.com
-
Hackers exploit AI bot to hijack Instagram accounts via reset
malwarebytes.com
-
Meta AI chatbot flaw hijacks Instagram accounts, White House hit
securityaffairs.com
-
Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked
databreaches.net
-
Meta AI recovery flaw lets hackers hijack Instagram accounts
securityweek.com