Meta 的 Muse:一场可爱的隐私与安全灾难
Meta's Muse Is an Adorable Privacy and Security Dumpster Fire
Meta 的智能体 AI 产品 Muse 上线以来接连暴露严重隐私与安全漏洞,包括可利用的零日缺陷监视 Mac 用户、未经授权访问用户消息并上传至云端,以及被诱导交出设备 root 权限。问题严重到 Apple 不得不修改 macOS 隐私设置,404 Media 另指 Meta 拒绝推迟上线以确保产品安全。
- [x]
Techdirt - [x]
A 5th Person In PA Has Suffered A Measles-Related Death
Meta’s Muse Is An Adorable Privacy And Security Dumpster Fire
Meta’s Muse Is An Adorable Privacy And Security Dumpster Fire
from the move-fast-and-break-the-planet dept
Tue, Oct 6th 2026 05:26am - Karl Bode
Meta’s agentic AI product Muse has had a rocky few weeks since launch. The product, which features an animated avatar named Jolly (one presumes to make mass hyper surveillance seem adorable) is supposed to help you offload busywork like making restaurant reservations, paying bills, or ordering groceries.
Despite Meta having claimedrepeatedly that Muse was built with a heavy focus on privacy and security, the AI agent launched with a nasty zero-day flaw that made it possible to spy on Mac users. When one tech YouTuber put Muse in charge of their Facebook Marketplace sales, it sold his stuff way below acceptable rates and doled out their home address (the user apparently didn’t understand the permissions he set).
Somebody else found that you could trick Muse into giving root access on the device it’s running on by simply pretending to be a Muse agent yourself. Others found that Muse software not only accesses people’s private messages without approval, it often ignores all permissions and uploads them to the cloud – even if you specifically tell it not to.
That last problem was bad enough that Apple needed to change its macOS privacy settings to stop third-party app developers from misusing them to access message histories:
“Friday’s announcement comes two weeks after tech columnist Jason Aten said that Meta’s new general-purpose AI agent Muse sent him an unsolicited notification referencing a thread between him and a co-worker over Apple Messages. Aten said he never granted Muse permissions to read his messages and had assumed they were off-limits. Social media last week blew up with masses of people who agreed and said the incident showed that AI assistants given access to calendars, emails, messages, shopping accounts, and other resources are akin to a skill saw or other power tool. While potentially useful, they can do real damage if not used carefully.”
Meanwhile, Wired found that Muse consistently creates detailed profiles of all your friends, family, colleagues, “collaborators,” and people you “follow.” Obviously much of that information is necessary for the agent to get to “know” you, but this being Meta, people are understandably uncomfortable with this sort of massive ramp up of data collection in a country, under authoritarian control, that’s too corrupt to pass a privacy law or regulate data brokers:
“These [AI assistant] tools are actively soliciting users to plug their whole lives in—their emails, calendars, financial institutions, everything in order to be helpful assistance,” Bogen says. “That’s dramatically more information than people might have otherwise given to some of these companies. The breadth of access to information that these tools have will lead to a ballooning of what they know about users.”
But wait, there’s more! 404 Media found that in the weeks before launch, Meta was in a mad dash to quickly and sloppily fix multiple other vulnerabilities but refused to delay Muse’s launch to actually make sure the product was secure:
“The Meta source said they felt security teams were asked to push hot fixes to these bugs as quickly as possible and in a way that wouldn’t delay Muse’s launch, leading to what they described as “half-baked protections being rushed out to enable the launch. Many senior engineers believe it’s inevitable we’re going to have a massive data breach as a result of Hatch.” Muse is called “Hatch” internally and in Meta’s codebase.”
Many folks build their own agentic AI solutions with cobbled together open source hardware and software to ensure they have clear understanding of, and control over, what’s actually happening in their name. Meta, a glorified ad monopoly with a history of ethical “lapses,” not only wants to dominate the space, it will spend a lot of time in the new year lobbying against on device, open source, foreign, and/or open weighted alternatives to Meta.
Despite Meta’s claims that privacy and security would be a priority for Muse that’s clearly not the case; it’s also extremely clear that Meta doesn’t fear any meaningful government accountability or oversight, or the product would have spent significantly more time in the oven. Tech giants that had already clearly abandoned quality control at impossible scale are engaged in a mad dash to the trough with new product launches before their funny math causes a market correction.
Such is life in a country that has had most consumer protection regulators (and cybersecurity standards) lobotomized by corrupt authoritarians. Authoritarians guys like Mark Zuckerberg enthusiastically supported because they didn’t like paying taxes — and hated former FTC antitrust boss Lina Khan.
Muse’s early privacy and security problems are the kind of stuff anybody with a head on their shoulders could see coming miles over the horizon. And it’s all inevitably going to get more dangerous — and ridiculous — over the next year as unethical tech oligarchs fully exploit their successful lobotomization of the federal regulatory state. You know, for the love of innovation.
Filed Under: agents, ai, authoritarian, automation, consumers, mark zuckerberg, muse, polly, privacy, security, surveillance
Companies: meta
If you liked this post, you may also be interested in...
- Ctrl-Alt-Speech: Going To The Ballot Bot
- Flock Promises Even More Ineffectual Features In Response To Congressional Demands
- Trump's 'Morally Binding' New AI Guardrails Are Meaningless Pudding
- In The Wake Of The Latest Unprecedented AI Proofs, What Now For Mathematics And Mathematicians?
- Dallas Goes Dystopia, Outfits Garbage Trucks With 'AI Cameras' To Generate 'Blight' Citations
says:
Add Your Comment Cancel reply
Your email address will not be published.Required fields are marked *
Have a Techdirt Account? Sign in now. Want one? Register here
Name
- Subscribe to the Techdirt Daily newsletter
URL
Subject
Comment *
Comment Options:
Use markdown. Use plain text.
Make this the First Word or Last Word. No thanks. (get credits or sign in to see balance)what's this?
What's this?
Techdirt community members with Techdirt Credits can spotlight a comment as either the "First Word" or "Last Word" on a particular comment thread. Credits can be purchased at the Techdirt Insider Shop »
Notify me of follow-up comments by email.
Notify me of new posts by email.
Δ
A 5th Person In PA Has Suffered A Measles-Related Death
Meta’s Muse Is An Adorable Privacy And Security Dumpster Fire
Follow Techdirt
Techdirt Daily Newsletter
Subscribe to Our Newsletter
Please leave this field empty
Get all our postsin your inbox with the Techdirt Daily Newsletter!
We don’t spam. Read our privacy policy for more info.
Check your inbox or spam folder to confirm your subscription.
A weekly news podcast from
Mike Masnick&Ben Whitelaw
Subscribe now to Ctrl-Alt-Speech »
Essential Reading
The Techdirt Greenhouse
Read the latest posts:
- Winding Down Our Latest Greenhouse Panel: The Lessons Learned From SOPA/PIPA
- From The Revolt Against SOPA To The EU's Upload Filters
- Did We Miss Our Best Chance At Regulating The Internet?
Trending Posts
- The Metric Is Not The Mission:The Finished Internet
- Warner/Chappell Sinks Lindsay Ellis' Two-Hour Cruise Video Over A Few Seconds Of Karaoke
- A 5th Person In PA Has Suffered A Measles-Related Death
Techdirt Deals
Techdirt Insider Discord
The latest chatter on the Techdirt Insider Discord channel...
Loading...
Recent Stories
Tuesday
05:26Meta's Muse Is An Adorable Privacy And Security Dumpster Fire (0)
Monday
20:17A 5th Person In PA Has Suffered A Measles-Related Death (9) 15:20The Metric Is Not The Mission:The Finished Internet (2) 13:14States Prosecuting Platforms For Being Platforms? Section 230 Is Supposed To Avoid This Mess, We Reminded A Court (5) 11:11Warner/Chappell Sinks Lindsay Ellis' Two-Hour Cruise Video Over A Few Seconds Of Karaoke (11) 11:06Daily Deal: Babbel Language Learning (All Languages) (0) 09:30Court Permanently Dismisses Reflecting Pool Vandalism Case Against David Hearn (7) 05:25Brendan Carr Is Making It Easier For Republicans To Harass You With Midterm AI Robocalls (19)
Sunday
12:00Funniest/Most Insightful Comments Of The Week At Techdirt (6)
Saturday
12:00This Week In Techdirt History: September 27th - October 3rd (0)
More
×
Email This Story
This feature is only available to registered users.
You can register here or sign in to use it.
Tools & Services
Company
Contact
More
Brought to you by Floor64
Designed with WordPress.Hosted by Pressable.
This site, like most other sites on the web, uses cookies. For more information, see our privacy policy
来源:Hacker News · techdirt.com



