Today Instagram had this massive exploit where hackers were just stealing rare handles left and right. Hundreds of accounts gone.
People losing handles they’ve owned since 2010, some worth hundreds of thousands.
I own a few rare ones so I was actually stressed watching this happen in real time, which I haven’t been in years.
Obama White House account got hit.
These aren’t some random new accounts, these are verified, locked down accounts and they still got compromised.
The thing is the exploit is so simple it’s almost funny. Attacker goes to Forgot Password, says their account is hacked, turns on a VPN to match the target’s location (which now you can find on the about section of the page).
Instagram’s AI support flow asks them to verify with a selfie.
They grab a photo from the target’s profile, run it through an AI video generator to make an animation of the person’s face moving around, upload that to Meta’s AI as proof.
And Meta’s AI just accepts it because it can’t tell the difference between a real selfie and an AI-generated video of someone’s face
.
Once verified they change the email to theirs. Password reset link goes to their email. They own it now. 2FA gets bypassed somehow in the process but honestly I don’t know exactly how, just that it did.
Point is even locked down accounts went down.
Then you try to recover your account and you’re talking to a chatbot that has zero ability to help.
You can’t escalate to a human. You’re just stuck. Your asset is gone and there’s no one to call.
The whole thing just highlighted how stupid it is to automate account security without any human in the loop.
One AI fooling another AI while there’s literally no person anywhere to catch it.
Meta took hours to even acknowledge it while accounts were getting stolen every minute.
Now thankfully it’s patched but I don’t think it will be the last one. Stay safe!
Thanks for watching One Piece #1163!
I did a small amount of key animation for the final sequence of Robin and Saul, starting with Saul's burst of tears up until the shot of the straw hats on the hill, as well as the panning shot when the credits start. I unfortunately had trouble with the wave splashing cut, so another animator kindly took over on the genga.
Massive thank you to Koyama-san, Aoki-san, Irie-san, Hashimoto-san and the rest of the team for trusting me with such an important scene. When reading the manga it meant a lot to me, and I wanted to do my best to reflect Robin and Saul's emotions. I hope I did it justice, and that you all enjoyed it!
@KESCoHQ@UPPCLLKO No electricity in Barra-4, Kanpur since yesterday 11 PM. It's already been over 6 hours! Kindly restore power at the earliest. Many families are suffering due to the outage. Please look into this urgently. #KESCO#Barra4Kanpur#PowerOutage
I want to address what happened to Neeraj and me last week. Of course, it was quite shocking to us as well and honestly very disheartening. But today, we want to talk about what actually happened and more importantly, what we’re going to do about it.
On March 21, we were taken into police custody in connection with a fraud complaint. Three days later, on March 24, a Thane court granted us bail, finding that prima facie, no case was made out against us. The fraud at the centre of this complaint was carried out through a fake website - "https://t.co/mn7Ou56fXE" by impersonators who have absolutely no connection to our platform, our systems, or CoinDCX. No money moved through CoinDCX. No transaction occurred on our exchange. The complainant himself confirmed in court that he did not know us and had never met us.
I'll be honest: our experience was deeply unsettling. Not because we doubted the facts -- we knew from the first moment that this had nothing to do with us. But because it made something painfully clear: the ecosystem we operate in doesn't yet have the tools to tell the difference between the people building this industry responsibly and the people exploiting it.
Think about what this precedent means: if a scammer uses your brand, your name, your face in a fake website and defrauds someone, you can be arrested. Not the scammer. You. This Could Happen to Any founder, Any Business.
That has to change.
And we've decided that CoinDCX will lead that change - not with words, but with actions. Today, we are announcing Digital Suraksha Network (D.S.N.) - a ₹100 crore commitment from CoinDCX to build the cyber safety infrastructure that India's digital finance ecosystem needs but does not yet have. This is not a crypto problem. This is a problem across any company which has a digital footprint.
Here's what we're building:
→ 24x7 WhatsApp helpline: free for everyone, not just CoinDCX users, to verify links, platforms, and offers before you transact.
→ Open Fraud Intelligence API: We have already documented 1,200+ fraudulent websites impersonating CoinDCX. That data sat inside our systems. Not anymore. We're building an open API to share this intelligence in real time and inviting every exchange, fintech, bank, and digital lender to contribute. A shared immune system for India's digital finance ecosystem.
→ Cyber Safety Infrastructure for Law Enforcement: The Digital Suraksha Network will fund training programmes for state cybercrime cells on blockchain forensics and digital asset tracing.
→ "Caution Before Transaction": a nationwide initiative to give every Indian the tools to participate in digital finance safely.
We know that no single company can solve this. Fraud networks are sophisticated, cross-border, and evolving daily. Nowadays, they make use of AI that makes them exponentially harder to catch. But someone has to start to fix this problem from the root.
We are putting ₹100 crore on the table because the ecosystem cannot afford to wait. I am asking every platform, every regulator, and every Indian who participates in digital finance to join us.
We want to ensure that anyone building startups in India like us can do so with confidence, and not with fear.
Last Sunday at Gorakhpur airport.
My sister had a spelling mistake on her boarding pass. Just the last letter of her name.
Security stopped her. Sent us to the counter. Counter said call Akasa support.
We called. AI agent picks up.
We said the PNR like 5–6 times. AI couldn’t recognise it. Not even once.
We’re standing at the airport, stressed, flight’s approaching and this bot is just not getting it.
We gave up. Went back. Shouted at the staff. They fixed it in 30–40 mins manually.
And I just stood there thinking.
Bro who thought deploying an AI agent for customer support was a good idea?
The person calling support is already having a bad day. They’re not calling to chat. They’re calling because something went wrong.
That’s the worst time to make them repeat a PNR to a bot 6 times.
Some problems just need a human on the other side.
AI is powerful. But knowing where not to use it is the real skill.
Founders take note.
@KESCoHQ Power outage since 1-2 hours in Barra-4, Kanpur (behind Pankaj Sweet House). Pole shorted in rain earlier, still no electricity in the lane. Urgent restoration needed!
This is absolutely mind-bending. By locking the camera to a fixed point in the sky rather than the ground, this stunning timelapse perfectly visualizes Earth's rotation.🌍🌌
It really puts our movement through space into perspective.
One day, when we watch Blackbeard vs Luffy fight for the One Piece, looking back at this moment is going to hit like the hardest rock imaginable.
Same path but different dreams.
.@discord_support
my friends discord got hacked
he made a ticket saying the account and email is compromised
then he got it back and changed the email
hackers made support ticket using the compromised gmail
you gave the account back to the hackers
???
🚨 Consumer Warning/Service Nightmare with @kaffindia 🚨
My 6-month-old Kaff Chimney was working perfectly until your authorized service agent (Yashika Enterprises) broke the PCB during a routine cleaning on 27/11/25.
@AmazonIN@AmazonHelp
Ordered Safari Thorium Neo 8-Wheels Set of 3 trolley bags from seller RetailEZ Pvt Ltd. Received ONLY 1 bag, returned it via your pickup, now seller claims “different item received” & you’re refusing refund. This is unacceptable.