WTF Is Going On(Weights, Tools & Frameworks)

한국어
WIRED AI 2 outlets

Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

read it at the source — WIRED AI →

“Meta says it issued a fix for the Muse zero-day vulnerability that would have let attackers do “whatever” they wanted on a victim’s Mac, highlighting the inherent dangers of AI helpers.”

who filed

What was said about it

120 points · 49 comments
9 points · 0 comments
"it’s like they didn’t, in my opinion, think about security, which is really worrisome." yeah, weird, man. I'm sure regulators will handle it.
37 likes
A researcher says a flaw in Meta's Muse app for Mac lets any app or terminal command gain access to the token that authenticates users to their Muse account (Dan Goodin/Ars Technica) Main Link | Techmeme Permalink
6 likes
Who in their right mind would install a Meta AI with near admin privileges?
The "zero day" is something they call a "ClickFix Attack" Upon Googling "ClickFix": > "A ClickFix attack is a social engineering technique... It typically compromises devices by manipulating victims into copying and pasting malicious comma…
Maybe they should have spent the money used to buy its stupid name from a band on additional testing instead.
> macOS has long provided a simple means for apps to handle dictation and transcription in processes that stay securely on the device Not sure these guys realize that the quality and latency of those Apple services in MacOS is way lower th…

Also on the board