conv.

All stories
SecurityFading · day 2

Zero-day exploit released for Meta's Muse voice AI app

Researcher publishes proof-of-concept code showing how local malware can intercept Muse's dictation traffic.

What to know

  • A public exploit for a local vulnerability in Meta's Muse voice AI app allows malware to intercept and redirect dictation traffic to attacker-controlled servers.
  • The attack requires prior local code execution but targets Muse's elevated system permissions, potentially enabling privilege escalation or broader system compromise.
  • No official response from Meta has been documented as of the latest reports.

“This is a local attack. An attacker must already be able to execute code as the local user.”

not-a-mused GitHub repository · GitHub ↗

Meta Muse application developer

Zero-day exploit released for Meta's Muse voice AI app
github.com

How it unfolded 2 developments, newest first · click a bar or a number to jump articlesposts

Peak 1 piece in one hour at Sep 21, 6 PM; 4 pieces over 2 days (1 article · 3 posts) Sep 21, 6 PM — 1 piece · 1 article — Newswires 1Sep 21, 7 PM — quietSep 21, 8 PM — 1 piece · 1 post — Hacker News 1Sep 21, 9 PM — quietSep 21, 10 PM — quietSep 21, 11 PM — quietSep 22, 12 AM — quietSep 22, 1 AM — quietSep 22, 2 AM — quietSep 22, 3 AM — quietSep 22, 4 AM — quietSep 22, 5 AM — quietSep 22, 6 AM — quietSep 22, 7 AM — quietSep 22, 8 AM — quietSep 22, 9 AM — quietSep 22, 10 AM — quietSep 22, 11 AM — quietSep 22, 12 PM — 1 piece · 1 post — Bluesky 1Sep 22, 1 PM — quietSep 22, 2 PM — quietSep 22, 3 PM — quietSep 22, 4 PM — quietSep 22, 5 PM — quietSep 22, 6 PM — quietSep 22, 7 PM — quietSep 22, 8 PM — quietSep 22, 9 PM — quietSep 22, 10 PM — quietSep 22, 11 PM — quietYesterday, 12 AM — quietYesterday, 1 AM — quietYesterday, 2 AM — quietYesterday, 3 AM — quietYesterday, 4 AM — quietYesterday, 5 AM — quietYesterday, 6 AM — quietYesterday, 7 AM — quietYesterday, 8 AM — quietYesterday, 9 AM — quietYesterday, 10 AM — quietYesterday, 11 AM — quietYesterday, 12 PM — quietYesterday, 1 PM — quietYesterday, 2 PM — quietYesterday, 3 PM — quietYesterday, 4 PM — quietYesterday, 5 PM — 1 piece · 1 post — Mastodon 1Yesterday, 6 PM — quietYesterday, 7 PM — quietYesterday, 8 PM — quietYesterday, 9 PM — quietYesterday, 10 PM — quietYesterday, 11 PM — quiet 12
Sep 22yesterdaynow · 12:58 AM ET
  1. 2

    Exploit details shared on Hacker News highlighting privilege amplification risk

    The proof-of-concept was shared on Hacker News with emphasis on the threat that Muse's elevated system permissions make it a valuable target for malware seeking privilege escalation or expanded access beyond ordinary local code execution.

    “The concern is that Muse may have significantly broader access than ordinary local malware, making it a particularly useful target for privilege/access amplification.”
    — momentmaker
    • peter@thepit.social

      🤡🤡🤡 https:// arstechnica.com/security/2026/ 09/muse-metas-extraordinarily-privileged-ai-assistant-has-a-serious-0-day/

      peter@thepit.socialMastodon6h agoview on Mastodon ↗
    1 more of the top 2 · 2 posts in this stretch
    • newsycombinatorbot.bsky.social

      Meta’s Muse has a serious 0-day (arstechnica.com) Discussion | Main Link

      newsycombinatorbot.bsky.socialBluesky1d agoview on Bluesky ↗
    all of them →
  2. 1

    Researcher publishes Muse zero-day proof-of-concept on GitHub

    A proof-of-concept exploit demonstrating a local vulnerability in Meta's Muse voice application was published. The vulnerability allows unprivileged local processes to redirect Muse's dictation traffic to attacker-controlled endpoints, potentially capturing voice prompts sent to the application.

    “A local attacker or malware can modify this endpoint without special privileges.”
    — not-a-mused GitHub repository

What people are saying 0 voices from 0 sites · best of 2 · verbatim