Meta fixed a zero-day vulnerability in the Muse AI assistant that allowed takeover of a user's account
Meta released a hotfix for a zero-day vulnerability in the macOS Muse app, discovered by researcher Patrick Wardle. The flaw allowed any local process to redirect speech transcription to a foreign server and thereby obtain an authentication token for full account takeover.