First, it's a joke.
Second, there's the recent example of Instagram accounts being compromisable by asking a chat bot for a password reset with no authentication of the email address used for the reset. So yes, prompt injection or something like it can work.