Meta confirmed a vulnerability in its AI-powered Instagram support assistant that was exploited to take over user accounts.
The AI could be convinced to change the email linked to an account without properly checking who was making the request.
Once the email was changed, hackers could reset the password and lock out the real owner.
Meta has fixed the vulnerability but they didnt explain how the hell this happened