gioia://news
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Lee Duna@lemmy.nz to Technology@lemmy.worldEnglish · 19 hours ago

Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked

www.404media.co

external-link
message-square
95
link
fedilink
759
external-link

Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked

www.404media.co

Lee Duna@lemmy.nz to Technology@lemmy.worldEnglish · 19 hours ago
message-square
95
link
fedilink
The exploit shows the extreme risk of offloading technical support to AI.
  • [object Object]@lemmy.ca
    link
    fedilink
    English
    arrow-up
    190
    ·
    17 hours ago

    Why would the LLM tool have access to send recovery emails to non account verified emails at all?

    That’s insane.

    • CaptPretentious@lemmy.world
      link
      fedilink
      English
      arrow-up
      29
      ·
      11 hours ago

      Who else is going to have access to it when you keep laying off all the people?

    • guitarfosec@infosec.pub
      link
      fedilink
      English
      arrow-up
      28
      ·
      13 hours ago

      Because one of the biggest companies on the planet that has issues with account takeovers clearly has no internal red team working on this stuff.

      • mint_tamas@lemmy.world
        link
        fedilink
        English
        arrow-up
        9
        ·
        4 hours ago

        I guarantee they do have a red team that most likely flagged this as an obvious and severe risk. It was ignored by suits experiencing AI psychosis.

      • Dasus@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        arrow-down
        1
        ·
        11 hours ago

        “one of”

    • Spice Hoarder@lemmy.zip
      link
      fedilink
      English
      arrow-up
      9
      ·
      11 hours ago

      This isn’t even a hack, it’s just poorly written endpoints.

      • Knock_Knock_Lemmy_In@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        7 hours ago

        Would you consider phreaking equivalent to hacking? This is AI phreaking.

        • [object Object]@lemmy.ca
          link
          fedilink
          English
          arrow-up
          1
          ·
          45 minutes ago

          Kinda.

          If you designed a publicly addressable system since 1985 and didn’t design it for security then you’re asking for it.

        • CapuccinoCoretto@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 hours ago

          It’s not phreaking. Social engineering.

    • vagrancyand@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      104
      ·
      17 hours ago

      Because AI bros are incredibly deluded about both the capability of AI, and by extension their own capabilities using AI>

    • ohshit604@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      56
      ·
      17 hours ago

      should’ve asked it to delete the database instead, why else would it have that level of permissions.

      • Digit@lemmy.wtf
        link
        fedilink
        English
        arrow-up
        3
        ·
        7 hours ago

        Heh. Watched an old episode of Scorpion yesterday. The one with the armed hostage-takers who just had the one demand to the social media data mining company, to delete all the data they’ve mined. I amused myself a lot, by uttering “I like these guys”.

      • rnkn@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        7 hours ago

        Little Tommy Drop Tables.

      • nickiwest@lemmy.world
        link
        fedilink
        English
        arrow-up
        11
        ·
        12 hours ago

        Oh, man, I hope someone tries this.

    • hightrix@lemmy.world
      link
      fedilink
      English
      arrow-up
      10
      ·
      12 hours ago

      Hold on, do you expect Facebook to pay a human to deal with the inventory? Come on now.

    • badgermurphy@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      12 hours ago

      Its because they move fast and break things. They think that makes them cool.

      • tomiant@piefed.social
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        1
        ·
        11 hours ago

        Let’s mix these chemicals and see what happens. No funds for lab coats or protective glasses. We got a bottom line to feed.

    • rnkn@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 hours ago

      I tried this and couldn’t get it to work. Disappointed.

    • zarkanian@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      13
      ·
      14 hours ago

      It’s not insane. It’s advanced!

Technology@lemmy.world

technology@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@lemmy.world

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @L4s@lemmy.world
  • @autotldr@lemmings.world
  • @PipedLinkBot@feddit.rocks
  • @wikibot@lemmy.world
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 3.75K users / day
  • 8.62K users / week
  • 16.5K users / month
  • 31.6K users / 6 months
  • 1 local subscriber
  • 85.1K subscribers
  • 20.5K Posts
  • 909K Comments
  • Modlog
  • mods:
  • L3s@lemmy.world
  • enu@lemmy.world
  • Technopagan@lemmy.world
  • L4sBot@lemmy.world
  • L3s@hackingne.ws
  • BE: 0.19.14
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org