Hackers are exploiting a forgotten login method to steal access to accounts and control AI tools like DeepSeek at scale.
Security researchers have discovered that criminals are increasingly exploiting a legitimate but rarely-used login method to break into accounts and take control of artificial intelligence systems. The technique, which has gone from being an obscure hacking trick to a widespread criminal operation in just six months, poses a significant threat to everyday internet users.
The vulnerability centers on a login system designed for devices that lack keyboards or screens—like smart televisions, wireless printers, and other connected gadgets. Instead of typing a password, these devices use a special two-step approval process where users authorize access from their phones. Criminals have learned to abuse this system by tricking people into granting them permission, then using that access to compromise accounts and launch automated attacks.
Think of it like this: imagine a store's delivery entrance that was designed to let couriers drop off packages without showing ID, as long as someone inside approves them. Now criminals are calling the main office, pretending to be legitimate delivery people, convincing employees to approve the back door. Once approved, they can slip inside and steal merchandise at will.
The same principle applies here. Attackers trick users into authorizing what seems like a routine device setup, then weaponize that permission to access email accounts, cloud storage, workplace systems, and artificial intelligence tools. The concerning part: some reports suggest these stolen access points are being chained together to command AI systems to launch attacks autonomously, without direct human involvement.
This matters because the attack method is becoming industrialized. What started as a technique only advanced hackers knew about has now become standard criminal practice. Several factors make this particularly dangerous:
Defenders are struggling to keep pace because this exploits a design feature that was meant to make security easier, not harder.
Protection requires awareness and action on several fronts:
Organizations should audit their systems now and demand that technology providers strengthen protections around device authorization methods.
The window to secure your accounts before becoming a target is closing quickly—action today could prevent tomorrow's compromise.
Want to understand the technology behind this story? ITVedas has beginner-friendly guides on every IT topic.
Explore IT Chapters →