Simon Willison highlights a 404 Media report about hackers taking over Instagram accounts through Meta's AI support bot. A video reportedly shows an attacker asking the bot to link a target account to a new email address and providing a code. Willison argues this barely qualifies as prompt injection: the core failure was granting a support bot enough authority to fast-forward the account recovery process.
Vercel announced a team-wide provider allowlist for AI Gateway. Based only on the title, the update appears focused on centralized governance over which AI providers a team may use. This is likely most relevant to teams managing compliance, cost control, and approved provider access across multiple projects, rather than a new model capability.