Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
Security researcher Patrick Wardle said the flaw lets local code redirect dictation traffic and steal authentication tokens, exposing dictated audio and prompts.
- On Sunday, Amazon began blocking Meta's new AI assistant, Muse, after security researcher Patrick Wardle discovered a zero-day vulnerability allowing local apps to gain broad access to user data and authentication tokens.
- CEO Mark Zuckerberg previously claimed Muse was "built from the ground up for privacy and security," yet the assistant integrates with WhatsApp and calendars, undermining Apple's Transparency, Consent, and Control framework.
- By modifying an undocumented setting, attackers can redirect dictation traffic to their own endpoint, stealing authentication tokens and gaining complete control over a user's Muse account and connected services.
- Objective-See founder Patrick Wardle likened the vulnerability to a "bad neighbor," stating, "I think some of their greediness for user data kind of opens the door, makes a bigger attack surface."
- These companies are "racing for what's next," said Wardle, often neglecting security priorities, while Meta did not immediately respond to requests for comment regarding the privilege escalation vulnerability.
22 Articles
22 Articles
Meta Muse already has a majorly worrying zero-day security issue
Researcher Patrick Wardle finds zero‑day in Meta’s new Muse AI assistant, Dubbed not‑a‑mused, the exploit requires local compromise, voice dictation, and app integrations; attackers can hijack tokens and exfiltrate dataMeta has been informed but no patch yet; flaw highlights risks of AI assistants with broad permissionsMeta’s new Artificial Intelligence (AI) assistant Muse reportedly carried a zero-day vulnerability that allowed attackers to gai…
Meta patches Muse exploit that let attackers control the AI agent
Meta has issued a patch for its Muse macOS app following the discovery of a zero-day vulnerability that could allow someone to take control of the AI agent. The bug found by security researcher Patrick Wardle utilized an undocumented Muse setting that enabled potential attackers running local code to redirect transcription processing from Meta's servers […]
Coverage Details
Bias Distribution
- 50% of the sources lean Left, 50% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium












