Hackers duped Meta AI support chatbot to steal celebrity Instagram accounts

2026-06-02T20:51:52Zb18f857bb5a8ddd4538947f23bba11b29be389947a6ac00311768b9f104034c0
ai-securitybackdoorbitlockerbotnetcopyfailcredential-leakexploit-disclosuregithub-exposed-credentialslinuxnpmprompt-injectionred-hatresidential-proxyssd-fingerprintingstarlettesupply-chainteampcpvpn-compromisevulnerabilityzero-day

What happened

Ars Technica reported a wave of high-impact security incidents: attackers abused a Meta AI support chatbot to hijack and resell high-value Instagram accounts; dozens of Red Hat packages were backdoored via its official NPM channel; a 17+ million-device botnet tied to a Russia-based residential proxy network was dismantled; a critical vulnerability (“BadHost”) in the Starlette package imperiled millions of AI agents; a zero‑day exploit was disclosed that defeats default Windows 11 BitLocker protections; multiple severe Linux vulnerabilities (including CopyFail) and a supply‑chain backdoor in Da

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
b18f857bb5a8ddd4538947f23bba11b29be389947a6ac00311768b9f104034c0
Enrichment time
2026-06-02T20:51:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.