Hackers duped Meta AI support chatbot to steal celebrity Instagram accounts

2026-06-02T08:51:47Z5a6eb01fb755fec9d6f594c35a11819d605206984c047369099945b96c3ba905
TeamPCPaccount-takeoverai-chatbot-exploitbackdoorbitlockerbotnetchromium-exploitcredentials-exposedcritical-vulnerabilitydaemon-toolsgithub-leakincident-responselinux-vulnerabilitiesnpmprompt-injectionssd-side-channelstarlettesupply-chainzero-day

What happened

This Ars Technica security feed aggregates numerous high-risk incidents from late Apr–Jun 2026: attackers exploited a Meta AI support chatbot to hijack and resell high-value Instagram handles; dozens of Red Hat packages were backdoored via an official NPM channel and other supply‑chain compromises (including Daemon Tools and broad GitHub/TeamPCP activity) are widespread; a critical vulnerability (“BadHost”) in the Starlette package affecting many AI agents was disclosed; Google published exploit code for Chromium before a patch; a zero‑day was reported that defeats default Windows 11 BitLocker

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
5a6eb01fb755fec9d6f594c35a11819d605206984c047369099945b96c3ba905
Enrichment time
2026-06-02T08:51:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.