Meta fixed a zero-day vulnerability in the Muse AI assistant that allowed takeover of a user's account
Meta released a hotfix for a zero-day vulnerability in the macOS Muse app, discovered by researcher Patrick Wardle. The flaw allowed any local process to redirect speech transcription to a foreign server and thereby obtain an authentication token for full account takeover.
New: Any local process could access the authentication token without macOS permissions; An attacker could change the transcription endpoint to their own server and take over the account; Patrick Wardle created working proof-of-concept attacks for demonstration purposes; The goal of the exploit was to obtain the authentication token, not direct control of the agent
Until the hotfix was released, users of the macOS Muse app were at risk of complete takeover of their account, secret photo capture via the camera, and malicious files being written to disk — all without any warning.