Muse AI browser reportedly autofilled someone else's cookies in a PayPal session
mikecourt · reddit · 2026-09-28
Reddit user mikecourt reports that while paying via PayPal inside Muse's built-in AI browser, an autofill suggestion surfaced a Yahoo email he has never owned. When asked, Muse claimed the browser session is exclusively his, yet couldn't locate any session in its history that used PayPal. Screenshot posted in the comments. If accurate, this points to possible cross-user cookie/session leakage in shared browser infrastructure — a serious privacy and security concern.
More from Safety
- Colosseum paper finds most off-the-shelf LLM agents prone to collusion — nandofioretto · 2026-09-28
- Wisp Launches TEE-Based Private AI Chat With Local Encryption and Open Models Like Kimi K3 — bgmshana · 2026-09-28
- After OpenAI agents gained write access to the web, dev shuts down his microservices — steren · 2026-09-28
- Cryptographer Matthew Green: Containers Won't Solve Agent Security — matthew_d_green · 2026-09-28
- Cryptographer Matthew Green: containers are just one layer—AI security hinges on data crossing boundaries — matthew_d_green · 2026-09-28
- Cryptographer Matthew Green blasts Meta for removing Instagram E2E encryption — matthew_d_green · 2026-09-28