<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Prompt-Injection on HackingPassion.com : root@HackingPassion.com-[~]</title><link>https://hackingpassion.com/tags/prompt-injection/</link><description>Recent content in Prompt-Injection on HackingPassion.com : root@HackingPassion.com-[~]</description><generator>Hugo</generator><language>en</language><lastBuildDate>Tue, 02 Jun 2026 11:52:47 +0200</lastBuildDate><atom:link href="https://hackingpassion.com/tags/prompt-injection/index.xml" rel="self" type="application/rss+xml"/><item><title>Hackers Took Over Instagram Accounts By Asking Meta's AI Support Bot</title><link>https://hackingpassion.com/meta-ai-instagram-account-takeover/</link><pubDate>Tue, 02 Jun 2026 11:52:47 +0200</pubDate><guid>https://hackingpassion.com/meta-ai-instagram-account-takeover/</guid><description>&lt;p>Hackers took over some of the most valuable accounts on Instagram over the weekend by asking &lt;strong>Meta&amp;rsquo;s own AI support bot&lt;/strong> to hand them the keys, and it agreed without checking whether the person asking actually owned the account. They never cracked a password, sent a phishing link, or got near the victim&amp;rsquo;s inbox. They opened a support chat, typed a few polite sentences, and walked off with accounts worth hundreds of thousands of dollars.&lt;/p></description></item><item><title>Three Names in Four Days and 1,800 Servers Leaking Credentials</title><link>https://hackingpassion.com/openclaw-moltbot-clawdbot-security-nightmare/</link><pubDate>Sat, 31 Jan 2026 13:45:01 +0100</pubDate><guid>https://hackingpassion.com/openclaw-moltbot-clawdbot-security-nightmare/</guid><description>&lt;p>Three names in four days! This AI assistant was Clawdbot, then Moltbot, and now OpenClaw. 1,800 exposed instances leaking API keys, passwords, and private messages. 💀 100,000 GitHub stars. Viral faster than almost any project in GitHub history.&lt;/p>
&lt;p>OpenClaw is an open-source AI personal assistant. Mac Minis sold out worldwide because people wanted dedicated machines to run it. Cloudflare stock jumped 14-20% from all the traffic. Two million visitors in a single week.&lt;/p></description></item><item><title>Microsoft Patches Copilot Vulnerability That Leaked Data with One Click</title><link>https://hackingpassion.com/microsoft-copilot-reprompt-data-theft-one-click/</link><pubDate>Thu, 15 Jan 2026 12:12:46 +0100</pubDate><guid>https://hackingpassion.com/microsoft-copilot-reprompt-data-theft-one-click/</guid><description>&lt;p>January 13, 2026. Microsoft patches a vulnerability in Copilot that let attackers steal personal data with a single click. The security bypass that worked for five months? Tell the AI to do everything twice. Microsoft has spent $80 billion on AI infrastructure and plans $120 billion more for 2026, but the safeguards protecting your data failed against a one-line prompt. 🤔&lt;/p>
&lt;p>Varonis Threat Labs discovered a way to steal personal data from Microsoft Copilot using nothing more than a single click on a link, with no plugins required and no further user interaction needed. The attack continues running even after the victim closes the browser tab.&lt;/p></description></item></channel></rss>