Meta's Muse AI assistant hit by zero-day letting local apps hijack the agent
Astral Codex Ten · rss · 2026-09-22
Ars Technica reports a zero-day vulnerability in Meta's new macOS AI assistant Muse that gives locally run apps and terminal commands complete control of the agent, undercutting Zuckerberg's claim that it was "built from the ground up for privacy and security." Muse books appointments, fills forms, makes purchases and creates tools on the fly, requiring broad access to WhatsApp, email, calendars, files, mic, camera and location — undoing Apple's default OS protections. Notably there's no Windows version, and Amazon began blocking Muse from its site on Sunday.
More from Companies & People
- Nathan Baschez joins Notion to build spaces where 'people and agents think together' — lennysan · 2026-09-22
- Lex founder Nathan Baschez joins Notion to build spaces for people and agents — nbaschez · 2026-09-22
- Asha Sharma named CEO of Xbox as Microsoft Gaming rebrands, 500M monthly users — dr_alphalyrae · 2026-09-22
- What Sun got wrong: Bryan Cantrill on a company bored with the business of business — jedisct1 · 2026-09-22
- NYC's Founders School charges $600K tuition, refunds it if students don't build a $1M business — nateliason · 2026-09-22
- Irish DPC fines Google €403M over location data processing — DeepLogin · 2026-09-22