Attackers used Meta's AI customer support agent to hijack Instagram accounts by requesting email changes. The agent complied with these requests without sufficient verification, allowing hackers to seize dormant profiles, including a former White House account. This vulnerability exposes a critical gap in how LLM-driven support tools handle sensitive account permissions.