EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor

Editorial source
Editorial OSINT source. The content is an indication to verify with independent institutional or technical sources before operational decisions.
EudorIA operational summary

What it means

Priority 85/100

Un bug nell'app Meta Muse per Mac permette a malware già presente di sfruttare un'impostazione nascosta per indirizzare le dictazioni utente a un attaccante. L'attacco richiede accesso locale e non è remoto. L'app ha accesso a dati sensibili, permettendo all'attaccante di leggere, manipolare e controllare l'assistente. Non è stato rilasciato un patch.

Why it matters

Per le PMI italiane, l'accesso non autorizzato a dati sensibili e sistemi interni potrebbe compromettere la privacy, la sicurezza operativa e la fiducia dei clienti. L'assenza di patch rende il rischio elevato finché non viene risolto.

Potential operational benefits

  • Riduzione della superficie esposta per attacchi AI-based
  • Maggiore controllo sugli accessi e sulle attività degli agenti AI
  • Minore probabilità di compromissione di dati sensibili e sistemi interni
Indications to confirm against the customer's technical and organisational perimeter.
Relevant controlsMFA / IdentitàSegmentazione di reteMonitoraggio / SIEMPatch managementEDR / XDR
AudienceITSOCCISO
Information centre

Translation in progress

The Hacker News

The official content is available in the original language. The Italian version will be published once automated checks are complete.

Text acquired from the source

Malware already running on a Mac can quietly take over Meta's Muse assistant and use the broad access its owner granted the app, security researcher Patrick Wardle has shown in a proof-of-concept released on September 21. It works by changing a hidden setting so that when the user taps the microphone and dictates a prompt, the words go to the attacker instead of Meta. The flaw is in

Source
The Hacker News
Publishing entity
The Hacker News
Entity type
editorial osint
Area
Global
Original language
en · translation in preparation
Publication
22/09/2026 08:33
MITRE ATT&CK
T1486, T1078
Open the original source