Meta Patches Muse macOS Zero-Day That Let Attackers Hijack AI Agent, Access Accounts
Updated
Updated · The Verge · Sep 22
Meta Patches Muse macOS Zero-Day That Let Attackers Hijack AI Agent, Access Accounts
3 articles · Updated · The Verge · Sep 22
Summary
Meta issued a hotfix for its Muse macOS app after a zero-day let attackers with local code execution seize control of the AI agent and gain access to a user’s Muse account.
Patrick Wardle found the flaw in an undocumented setting that could reroute cloud transcription from Meta’s servers to an attacker-controlled endpoint, exposing account access through the app’s own privileges.
Wardle’s proof-of-concept used Muse to take photos and write malicious files to disk, often without alerting the user, highlighting design choices that left undocumented settings broadly controllable.
Meta said the practical risk was low because the bug was a local privilege-escalation issue rather than a remote exploit, but the patch lands as Muse faces wider scrutiny despite strong early download growth.