Thursday, 24 Sep 2026
Subscribe to AIWatcher
AIWatcher
  • Home
  • News

    OpenAI slots two cheaper GPT-6 models beneath Astra

    By
    AIWadmin

    Researcher hijacks Meta’s Muse agent through a hidden setting

    By
    AIWadmin

    ChatGPT learns to take voice orders for office chores

    By
    AIWadmin

    YouTube hands creators an AI agent for titles and thumbnails

    By
    AIWadmin

    Listeners can now rewrite the Spotify algorithm in plain words

    By
    AIWadmin

    Anthropic’s Claude agents flag a new enzyme family in viral DNA

    By
    AIWadmin
  • Articles

    Data shop Snorkel AI banks $350M as labs stockpile training sets

    By
    AIWadmin

    Ema banks $77M to push AI employees into the back office

    By
    AIWadmin

    US military command randomises routes to outfox enemy models

    By
    AIWadmin

    Kyutai teaches a speech model to do arithmetic out loud

    By
    AIWadmin

    Nokia hands developers a no-training route to calibrated answers

    By
    AIWadmin

    An open model sorts eight overlapping speakers in real time

    By
    AIWadmin
  • Spotlight

    DeepMind keeps cloud memory encrypted behind device-held keys

    By
    AIWadmin

    Anthropic trims Opus costs and speeds output in a mid-cycle refresh

    By
    AIWadmin

    Cisco Talos builds a fingerprint library for AI-driven malware

    By
    AIWadmin

    Google parks idle agents in a new open source runtime

    By
    AIWadmin

    OpenAI gives mathematicians a voice but hands them no brake

    By
    AIWadmin

    NVIDIA teaches its robotics stack to take instructions from agents

    By
    AIWadmin
  • About
    • Mission
    • Services
    • Contact
  • Newsletter
  • Shop
    • All Items
    • By Category
      • Hats
      • T-Shirts
    • Cart
  • 🔥
  • Alignment
  • Classification
  • Distillation
  • Explainability
  • Hallucination
  • Legal/Compliance
  • Medical
  • NLM
  • Mobility
  • Research
  • Robotics
  • Safety
  • Startups
  • Prompt
  • Python
  • RAG
  • RLHF
  • Token
  • Vision
Font ResizerAa
AIWatcherAIWatcher
  • Home
  • News
  • Articles
  • Spotlight
  • About
  • Newsletter
  • Shop
Search
  • Home
  • News
  • Articles
  • Spotlight
  • About
    • Mission
    • Services
    • Contact
  • Newsletter
  • Shop
    • All Items
    • By Category
    • Cart
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Alerts

Researcher hijacks Meta’s Muse agent through a hidden setting

A macOS zero-day let any local process redirect Meta's Muse assistant to an attacker's server and walk off with the token controlling the account.

AIWadmin
Last updated: September 24, 2026 2:37 am
AIWadmin
ByAIWadmin
Global AI news & information.
Follow:
Share
SHARE

Meta pushed a hotfix for its Muse assistant this week after a researcher showed that a short terminal command could hand an attacker full control of the agent. The flaw lived in an undocumented setting inside the macOS app.

Patrick Wardle, who runs the Objective-See Foundation, found that any locally installed program, whatever permissions macOS had granted it, could rewrite a list of hidden Muse preferences. Most were harmless. One pointed the app’s transcription traffic at a different endpoint.

That was enough. By inserting their own server between Muse and Meta, attackers could add a command to a spoken prompt, and the account token would follow the audio to the same address. Wardle built proof-of-concept attacks that wrote files to disk and took photos without alerting the user.

Meta’s David Singleton called it a local privilege escalation rather than a remote exploit, noting that harm required malicious code already running under the user’s account. The company shipped the fix within a day of Ars Technica’s report.

The timing is awkward. Amazon had already blocked Muse from shopping on its site, and the disclosure undercut the privacy-first framing Meta used when it launched the agent this month. Muse downloads still outpaced ChatGPT’s first 12 days in the US and Canada.

TAGGED:Agentic AICybersecuritymacOSMetaMusezero-day
SOURCES:WiredThe Verge
Share This Article
Email Copy Link Print
ByAIWadmin
Follow:
Global AI news & information.
Previous Article ChatGPT learns to take voice orders for office chores
Next Article OpenAI slots two cheaper GPT-6 models beneath Astra

You Might Also Like

News

OpenAI hires Meta’s Asia chief as India pressure builds

By
AIWadmin
News

Horizon3 lands $250M to keep attacking before attackers do

By
AIWadmin
News

Astra tests OpenAI’s own red line for cyber capability

By
AIWadmin
News

Meta’s new Muse Code agent plans, codes, and checks its own work

By
AIWadmin
AIWatcher
Facebook Twitter Youtube Linkedin Rss

Global AI News and Information
AIWatcher is your definitive source for AI updates worldwide, from Silicon Valley to Shanghai.
Our industry coverage keeps you in the loop with the latest news and trends shaping the future of AI.

Quick Links
  • News
  • Articles
  • Spotlight
  • Events
About Us
  • Mission
  • Services
  • Contact
  • Privacy Policy
  • Legal
© 2026 AIWatcher. All Rights Reserved.