Tech Meridian ← LIVE FEED
RU

NEWS · COMPANIES · #771

Zero-day in Meta’s Muse AI assistant lets local apps seize user authentication tokens

Security researcher Patrick Wardle disclosed a zero-day in Meta’s new Muse assistant for macOS that lets any local app or terminal command access the token that authenticates a user’s Muse account by changing an undocumented setting (including the transcription endpoint). The flaw can give attackers full control of the assistant and its privileges; Amazon has also begun blocking Muse from making purchases on its site and Meta did not respond to inquiries.

KEY POINTS

  1. Security researcher Patrick Wardle disclosed a zero-day in Meta’s new Muse assistant for macOS that lets any local app or terminal command access the token that authenticates a user’s Muse account by changing an undocumented setting (including the transcription endpoint).
  2. The flaw can give attackers full control of the assistant and its privileges; Amazon has also begun blocking Muse from making purchases on its site and Meta did not respond to inquiries.
  3. This matters because Muse has unusually broad access to user accounts and device resources, so a local exploit that steals its token can let attackers perform actions (files, photos, purchases, messages) with the assistant’s privileges and exfiltrate sensitive data.

WHY IT MATTERS

This matters because Muse has unusually broad access to user accounts and device resources, so a local exploit that steals its token can let attackers perform actions (files, photos, purchases, messages) with the assistant’s privileges and exfiltrate sensitive data.

SOURCES & TIMELINE

2