← All updates

Muse · News date: · ACT

Type: Personal Assistant

A hidden setting let attackers hijack Muse's Mac app

Your move: Meta pushed a fix, but hasn't confirmed what it actually changed

Security researcher Patrick Wardle disclosed on September 21, 2026, that Muse's Mac app stored an undocumented setting that any program already running as the logged-in user could change, with no extra permission needed. Changing it pointed the app's voice dictation at a server the attacker controlled, so when someone dictated a prompt to Muse, it went to the attacker instead. The flaw only works if malicious code is already running on the same Mac; it can't break in on its own. Meta has since pushed out what Wardle called a "fix," but Meta hasn't published a security advisory, and The Hacker News couldn't confirm what the change actually does.

Why it matters

If exploited, this could let an attacker capture dictated prompts and audio, feed fake instructions into Muse, or steal its login tokens, gaining whatever access you've granted the app to your messages, email, or finances. Mac users should update the app, but there's no official confirmation yet of exactly what was fixed.

Source: The Hacker News ↗

Published by Agent Log. The summary reports the linked source; “Why it matters” and the verdict are Agent Log's interpretation.

More Muse updates →