







The original report (and initial emails sent) submitted can be viewed here.
Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts – Krebs on Security
The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space Force were briefly defaced with pro-Iranian images and messages over the weekend, after instructions began circulating on Telegram showing how to trick Meta's…

Hackers hijacked Instagram accounts by tricking Meta AI support chatbot into granting access | TechCrunch
Several users on social media reported having their Instagram accounts hacked over the weekend. Meta's own support chatbot was blamed for allowing hackers to hijack accounts.
Michael Bargury on Twitter / X
we hijacked perplexity comet by sending a weaponized calendar invitethen used it to takeover victim's 1p account and exfil their local filescall it pleasefix. like clickfix, but instead of social eng'ing a human you just ask their ai real nicelyincredible work by @StAJect0r pic.twitter.com/oMCswqcMZj— Michael Bargury (@mbrg0) March 3, 2026
Legally Cognizable Manipulation
Swaths of personal and nonpersonal information collected online about Internet users are increasingly being used in sophisticated ways for online political mani
FBI Director Kash Patel’s Personal Email Account Apparently Breached By Iranian Hackers
Call me a sicko, but I’m almost always happy when a top-level government official’s communications get hacked. That’s because — in almost every case — either the offic…

Comment and Control: Prompt Injection to Credential Theft in Claude Code, Gemini CLI, and GitHub Copilot Agent
Anthropic Claude Code Security Review, Google Gemini CLI Action, and GitHub Copilot Agent are vulnerable to prompt injection via GitHub comments — turning PR titles, issue bodies, and issue comments into attack vectors for API key and token theft.

Dialog Claims It Was Hacked. A Misconfigured Website Left Its Members Exposed
The private events group, cofounded by Peter Thiel, says a “criminal” hacker is behind a breach that exposed members’ personal details. WIRED found no evidence a break-in was needed to access the files.

What happened after 2,000 people tried to hack my AI assistant — Fernando Irarrázaval
I built hackmyclaw.com, where anyone could email Fiu, my OpenClaw assistant, and try to make it leak the contents of a secrets.env file.
Meta CIB / ATP Dashboard
A comprehensive intelligence platform analysing 214 coordinated inauthentic behaviour and adversarial threat operations identified by Meta across 70 countries, spanning April 2018 to Q4 2025.

Halfway through finishing my @astro.build @standard.site plugin to post my blog posts into #atproto and also pull my @leaflet.pub posts out and sync them! @pfrazee.com I hear you're building a full renderer!
Want to know more about the recent bot activity, what we've seen, and what we've done/are doing? Check out our write-up here! ✒️ 🔗 blog.tophhie.cloud/increased-bot-activity-what-w… Special mentions: @revfox84.bsky.social, @michelbestaat.thereforeiam.eu, @bmann.ca, and @baileytownsend.dev.
Increased Bot Activity & What We're Doing About It
blog.tophhie.cloud
Uncovering Coordinated Networks on Social Media: Methods and Case Studies

A General Method to Find Highly Coordinating Communities in Social Media through Inferred Interaction Links
Exposing Cross-Platform Coordinated Inauthentic Activity in the Run-Up to the 2024 U.S. Election

Disrupting Dark Networks
Ecosystem or Echo-System? Exploring Content Sharing across Alternative Media Domains

↳ Slopaganda: The Inauthentic YouTube Network Selling Secession to Albertans — Canadian Digital Media Research Network