Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts
2026-06-03T07:23:28Z•b8f272f8cc8d14d203069156e59857a3863eebd9cfb92088d3db470b7e9e2176
AI social engineeringAWS GovCloudCISACanvasDDoSGitHub leakGoogle ChromeInstagramKimwolfMetaMicrosoftRussia-linked infrastructureSharePointWindows Defender (BlueHammer)account takeoverarrestbotnetcredential exposuredata extortiondata leaklaw enforcementpassword resetserver seizurevulnerability managementzero-day
What happened
A series of high-impact incidents: attackers abused Meta’s AI support assistant to socially engineer password resets and briefly hijack high-profile Instagram accounts; a CISA contractor publicly exposed AWS GovCloud credentials and internal build/deploy secrets on GitHub, prompting congressional probes; a data-extortion attack against Canvas disrupted classes and threatened data from ~275 million students/faculty; the Netherlands seized ~800 servers and arrested two operators for hosting infrastructure tied to Russian cyber operations; the alleged Kimwolf botnet operator was arrested and now/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- b8f272f8cc8d14d203069156e59857a3863eebd9cfb92088d3db470b7e9e2176
- Enrichment time
- 2026-06-03T07:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.