8 min read
Incident Reports Meta's High Touch Support AI chatbot contained a confused deputy vulnerability that allowed attackers to hijack Instagram accounts by supplying their own email address during recovery requests. 20,225 accounts were compromised over 45 days before the flaw was patched.