Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    A cut cable disrupted hundreds of flights across the US

    Kairos Power gets up to $100M from Samsung group to build nuclear reactor for Google

    The man who built Apple’s stores doesn’t buy Silicon Valley’s bet on AI shopping

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    • Artificial Intelligence
    AI News TodayAI News Today
    Home»Chatbots»Muse, Meta’s extraordinarily privileged AI assistant, has a serious 0-day
    Chatbots

    Muse, Meta’s extraordinarily privileged AI assistant, has a serious 0-day

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Illustration of a robot prying out a locked file.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Meta founder and CEO Mark Zuckerberg has gone to great lengths to hype the security of its new AI assistant Muse, claiming it is “built from the ground up for privacy and security.” A zero-day vulnerability that gives locally run apps and terminal commands complete control of the agent raises serious doubts. Further raising questions, Amazon on Sunday began blocking Muse from its site.

    Meta introduced Muse a few weeks ago. The assistant “books appointments, fills out forms and handles customer service,” “proactively takes tasks off your plate,” and can “make purchases, generate images, create documents, and connect with your favorite apps and services.” The macOS app (curiously, there’s no Windows version) also works with a user’s WhatsApp, email, calendar, and social media accounts. When a task requires a tool that doesn’t exist, Muse creates one on the fly.

    Meta doth hype Muse security too much

    Of course, for Muse to do any of these things, users must first give it access to their accounts. This includes authenticating the assistant to each service and, because the app runs on macOS, giving it permissions to a broad range of operating system-restricted device resources like writing files to disk, accessing the mic and camera, and monitoring location and calendars. Apple has spent years developing these defenses to prevent installed apps or commands entered into the terminal from accessing these resources, clearly because the company considers them a security threat. Muse completely undoes these default measures.

    The zero-day allows any app or terminal command to gain access to the token that authenticates users to their Muse account. Meta developers designed the assistant so that any locally installed app or executed code, regardless of the macOS permissions it has, can change a long list of undocumented settings. Most of them are fairly innocuous, such as controlling dark mode. One setting, however, is anything but innocuous. It allows processes to change the endpoint where transcription occurs. Normally, it’s a server address operated by Meta. Attackers can exploit this flaw by changing the location to their own endpoint. Once that happens, the attackers have the token that gives complete control over the Muse account.

    0day Assistant extraordinarily Metas Muse privileged
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleMeta’s Muse is outpacing ChatGPT’s early mobile launch
    Next Article c.ai Step by Step: Build a Character That Actually Stays in Character
    • Website

    Related Posts

    Chatbots

    A cut cable disrupted hundreds of flights across the US

    Chatbots

    The man who built Apple’s stores doesn’t buy Silicon Valley’s bet on AI shopping

    Chatbots

    How to Build a Banking Virtual Assistant in Kore.ai: A Step-by-Step Walkthrough With Real Examples

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    A cut cable disrupted hundreds of flights across the US

    0 Views

    Kairos Power gets up to $100M from Samsung group to build nuclear reactor for Google

    0 Views

    The man who built Apple’s stores doesn’t buy Silicon Valley’s bet on AI shopping

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    A cut cable disrupted hundreds of flights across the US

    0 Views

    Kairos Power gets up to $100M from Samsung group to build nuclear reactor for Google

    0 Views

    The man who built Apple’s stores doesn’t buy Silicon Valley’s bet on AI shopping

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.