返回全部动态

Meta 修复 Muse 零日漏洞,该漏洞可让攻击者控制 AI agent

原标题:Meta patches Muse exploit that let attackers control the AI agent

The Verge AI安全质量 67

AI 摘要

Meta 的 macOS 应用 Muse 被安全研究员 Patrick Wardle 发现存在零日漏洞,攻击者可利用未公开设置将转录处理重定向到自己的服务器,从而控制 AI agent 并访问账户。Meta 在 Ars Technica 报道发布后数小时内发布热修复补丁,并称该漏洞属于本地权限提升、实际风险较低。此事发生在 Muse 发布初期,同时 Amazon 已阻止 Muse 访问其电商平台。

以上摘要由 AI 生成,可能存在误差。事实请以原文为准。

正文节选

Meta has issued a patch for its Muse macOS app following the discovery of a zero-day vulnerability that could allow someone to take control of the AI agent. The bug found by security researcher Patrick Wardle utilized an undocumented Muse setting that enabled potential attackers running local code to redirect transcription processing from Meta’s servers to their own endpoint, Ars Technica reports, giving the attacker access to the Muse account. Meta patches Muse exploit that let attackers contro


发布时间:2026-09-22 19:53
抓取时间:2026-09-22 19:56
来源机构:The Verge
阅读原文theverge.com