Meta patches Muse exploit that let attackers control the AI agent
Meta has issued a patch for its Muse macOS app following the discovery of a zero-day vulnerability that could allow someone to take control of the AI agent. The bug found by security researcher Patrick Wardle utilized an undocumented Muse setting that enabled potential attackers running local code t...
By Jess WeatherbedSeptember 22, 202613 views
Image: The Verge
The zero-day exploit required local access to the user’s device, but gave potential attackers access to Muse accounts. | Image: The Verge
Meta has issued a patch for its Muse macOS app following the discovery of a zero-day vulnerability that could allow someone to take control of the AI agent. The bug found by security researcher Patrick Wardle utilized an undocumented Muse setting that enabled potential attackers running local code to redirect transcription processing from Meta's servers to their own endpoint, Ars Technica reports, giving the attacker access to the Muse account.
Several design decisions reportedly enabled this flaw, including having Muse dictation occur in the cloud instead of on-device, and allowing any app to control all of Muse's undocumented settings. Pr …
Be the first to receive the latest news, market analysis and updates — delivered straight to your inbox.
We value your privacy
We use cookies to run this site and, with your consent, to measure
traffic and improve our content. Necessary cookies are always on. You
can accept all cookies or choose which ones to allow.
Privacy policy.