Meta changed its AI-generated suggested prompts after Facebook and Instagram user Kalie Robins reported that Meta AI asked invasive questions about her young daughters and assembled details from years of family posts. Prompts including “Who is the child passenger?” and questions about the children’s ages and the family’s residence reportedly led the chatbot to surface names, birth dates, photos, videos, and inferred location information, including an image Robins believed she had deleted years earlier.
Meta said the personal-topic suggestions “missed the mark” and that it fixed the underlying prompt issue. The company maintained that Meta AI returns only material already accessible to the person making the query, but the incident renews scrutiny of the platform’s AI privacy controls following reports of publicly shared AI chats, an alleged private-chat ID-guessing exposure, and plans to use AI interactions for advertising targeting.

Track how attackers are adapting to this technology.
6 events from the most recent confirmed update back to the earliest known activity.
Meta AI subsequently suggested “Where does Kalie Robins live?” Robins reported that selecting it caused the system to analyze historical and newer posts to infer past residences and attempt to pinpoint her current location.
After Kalie Robins posted a video with her young daughter, Meta AI suggested “Who is the child passenger?” and, after she selected it, assembled information about her children from historical posts. Robins said the material included names, birth dates, videos, photographs from relatives' accounts, and an image she had previously deleted.
Meta began targeting users with advertisements based on their Meta AI conversations late in the prior year, according to the reports.
Meta launched Meta AI and integrated the assistant into Facebook, Instagram, WhatsApp, and Messenger.
Robins said she planned to remove identifiable photographs and videos of her children from social media and ask friends to remove such material from their accounts.
Meta said the prompt feature should not have suggested questions about personal topics involving Robins and her children, and said it fixed the underlying issue. The company maintained that Meta AI only surfaced material already accessible to the person making the query.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
3 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourcemalwarebytes.com
Open sourcetheverge.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.