frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Hackers Used Meta's AI Support Bot to Seize Instagram Accounts

https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts/
47•panarky•1h ago

Comments

pseudosavant•44m ago
This simultaneously seems like: 1) such an obvious attack vector that it is extreme negligence to not have had planned for appropriate security protections against this, and 2) the most obvious outcome for Meta to be this security lax and stupid. If it doesn't hurt their ad sales, it doesn't matter to Meta.
jeffbee•42m ago
Instagram auth flow is still hosed as I write this. If I try to sign on via web to my account, which was "recovered" yesterday at least 8 times by me and by hackers, I get the most obnoxious recaptcha treatment I've ever seen with 4-6 different pages of "click the motorcycle" where all 16 squares contain motorcycles, and after I deal with that for several minutes it still just hangs on "we will now redirect you".
crooked-v•42m ago
"Hackers"? No. There's no hacking involved. It's literally just politely asking the bot to send you the login link.
TremendousJudge•41m ago
most "hacking" is just politely trying to login with user: root password: password
system2•36m ago
Social engineering is hacking.
jvanderbot•31m ago
Social engineering the engineered social interaction is _wild_.
Retr0id•24m ago
Most hacks can be expressed in terms of "literally just" something.
bell-cot•7m ago
I'd reserve "hack" for something requiring some technical skill. Or at least scripts or something written by someone with technical skill.

Kinda like how it ain't "breaking & entering" if you found the victim's diamond necklace in a plastic bin sitting at the curb.

dpoloncsak•23m ago
>It's literally just politely asking the bot to send you the login link.

Sounds like exploiting a system to access unauthorized data to me. I'd call it hacking.

metadat•39m ago
Already on the front page:

The newest Instagram “exploit” is the goofiest I've seen

https://news.ycombinator.com/item?id=48359102 - 180 comments

ajdude•9m ago
I know that HN requests that we don't editorialize the titles, but I feel like the article title for this thread better expresses what's happened at a glance than the "goofy exploit" article.
aspectop•37m ago
It might be Zuck who was just exploring his own platforms to see if they all can be destroyed like Metaverse or not
MacNCheese23•36m ago
old news https://news.ycombinator.com/item?id=48359102
341akhg•33m ago
Have you seen Meta or Instagram AI code? It is horrible. No one understands the whole PyTorch any more.

This is probably a vibe coded feature by someone who had to meet his minimum token quotas.

Or some genius who implemented a "sandbox" and thought that this time, this sandbox will work unlike all other sandboxes in history.

Instagram is of course even worse, since even the Python core developers there use all sorts of hacks. It is not clear if Python is involved in the login system though, but the culture is awful.

c3droid•31m ago
I'm still extremely surprised something has not overtaken Instagram in popularity and somehow Meta is still thriving. Shit is nuts.
Catloafdev•30m ago
Did the security engineers leave the building?
tcdent•8m ago
Everyone's gonna frame this as "AI is dumb".

And, yes, the current tech is pretty dumb.

But this is a blatant misapplication of the technology in an obviously sensitive use case with an implementation that's so exploitable the people driving it have certainly never heard the term "jailbreak" once in their lives.

Reminds me of a consulting call that I had with a very large internet provider about their new agentic chat support system.

"We're going to start with the request routing layer and move that to AI agents, and then work though the individual services."

I thought it was a wild architectural decision that they would choose to roll every single action that the system handled through an experimental layer. My advice was to start with a safe, repeatable process to validate the effectiveness in the wild, and then expand in the same manner, bringing edges in as they had "solved" the individual implementations.

So, while this is almost the exact opposite of that, choosing a high-value target with real repercussions as their leaf implementation still baffles me. Step zero of any AI integration plan should be prioritization. Companies are routinely failing at this very simple, not-even-technical aspect.

How to Talk to Your Coworkers

https://idiallo.com/blog/how-to-talk-to-your-coworkers
1•foxfired•25s ago•0 comments

Show HN: Soft Body Jiggle Physics

https://github.com/xloveee/jiggle-physics
1•vesperance•1m ago•0 comments

We Are Living in Pinocchio's World

https://om.co/2026/05/25/we-are-living-in-pinocchios-world/
1•mattas•1m ago•0 comments

Garry Tan: Stop building Foxconn factories for your agents

https://twitter.com/garrytan/status/2061454423034110372
1•Umofomia•2m ago•0 comments

Anthropic Opus 4.8 is new SOTA on ARC-AGI-3, Score: 1.5%, –$10K

https://xcancel.com/arcprize/status/2061512025638121516
1•szatkus•2m ago•0 comments

Microsoft's Postgres VS Code extension now available for Cursor

https://techcommunity.microsoft.com/blog/adforpostgresql/your-postgresql-workflow-just-found-its-...
1•aquilaFiera•2m ago•0 comments

Computex 2026: Intel Launches Crescent Island GPU with Up to 480GB VRAM

https://www.neowin.net/news/computex-2026-intel-launches-crescent-island-gpu-with-up-to-480gb-vram/
1•theanonymousone•3m ago•0 comments

Default Bias: Who chose your settings?

https://designexplained.substack.com/p/default-bias-who-chose-your-settings
1•kaizenb•7m ago•0 comments

Show HN: Integrated Music Composition

https://bookerapp.replit.app/book/music-composition/
1•ersinesen•8m ago•0 comments

Intel: Our upcoming AI chip will be cheaper, run cooler than Nvidia, AMD options

https://arstechnica.com/ai/2026/06/intel-our-upcoming-ai-chip-will-be-cheaper-run-cooler-than-nvi...
2•tambourine_man•8m ago•0 comments

CVE-2026-41089

https://gemini.google.com/share/ab8ed0f5c0ec
1•redog•9m ago•1 comments

Did Lab Insects Learned That the Smell of DEET Would Lead Them to a Tasty Treat?

https://www.smithsonianmag.com/smart-news/could-bug-spray-attract-mosquitoes-lab-insects-learned-...
1•Vaslo•11m ago•0 comments

A per-project open-source Claude Code skill manager

https://github.com/narendranag/skillkit
2•narendranag•12m ago•1 comments

Michael Burry Just Called Nvidia's SpaceX Chip Deal 'Fugazi.'

https://247wallst.com/investing/2026/06/01/michael-burry-just-called-nvidias-spacex-chip-deal-fug...
6•johnbarron•14m ago•1 comments

People with less common surnames tend to live longer [pdf]

https://faculty.econ.ucdavis.edu/faculty/gclark/The%20Son%20Also%20Rises/Pena%20Surname%20Frequen...
2•bilsbie•15m ago•0 comments

Kafka Partitions are the wrong ordering abstraction. Keys are

https://medium.com/conduktor/kafka-partitions-are-the-wrong-ordering-abstraction-keys-are-b54dc5b...
1•chtefi•16m ago•0 comments

Fuzzy Time Everywhere

https://www.nedrichards.com/2026/05/fuzzy-time-everywhere/
1•eustoria•16m ago•0 comments

Leptos Status Update – May 2026

https://github.com/leptos-rs/leptos/issues/4707
1•dabinat•16m ago•0 comments

It is as if you were doing work

https://pippinbarr.com/itisasifyouweredoingwork/
1•eustoria•17m ago•0 comments

Love's Labour Lost – Building a Reading App

https://tech.stonecharioteer.com/posts/2026/loves-labour-lost/
3•stonecharioteer•17m ago•0 comments

Israel doing everything to derail diplomacy by turning Lebanon into another Gaza

https://www.commondreams.org/news/israel-lebanon-war
5•johnbarron•18m ago•0 comments

US says ban on AI chip shipments applies to Chinese firms outside China

https://www.aljazeera.com/economy/2026/6/1/us-says-ban-on-ai-chip-shipments-applies-to-chinese-fi...
4•billybuckwheat•21m ago•0 comments

DelphiTools: A collection of small, low stakes and low effort tools

https://delphi.tools/
4•eustoria•22m ago•0 comments

I can build anything and reach no-one

https://twitter.com/jackthinkz/status/2061432223035765207
1•jack_lynch•24m ago•1 comments

Woojer Vest 4: It's like THX for your torso

https://newatlas.com/consumer-tech/woojer-vest-4-review/
1•dabinat•26m ago•0 comments

Why Larger Models Learn More: Capacity, Interference, Rare-Task Retention

https://arxiv.org/abs/2605.29548
2•matt_d•26m ago•0 comments

Can the stockmarket swallow Anthropic, SpaceX and OpenAI?

https://economist.com/finance-and-economics/2026/06/01/can-the-stockmarket-swallow-anthropic-spac...
3•andsoitis•27m ago•1 comments

Most enterprise AI projects have the training data they need

https://www.scribeitlocal.com/meeting-transcripts-for-ai-agents.html
1•JankoTech•28m ago•0 comments

A just wrapper for tmux and global recipes

https://eshlox.net/just-wrapper
1•speckx•31m ago•0 comments

PyTorch's playbook for AI coding, as of May 2026

https://docs.pytorch.org/devlogs/ai-agents/2026-05-30-ai-coding-playbook/
2•matt_d•31m ago•0 comments