The Jerusalem PostTurkey’s Bashiqa base handover marks a new chapter for post-ISIS Iraq - analysisESPN DeportesCR7: Pondré fin con Portugal cuando "no aporte"ESPN😡 CFB Bottom 10: NC State had a really bad dayInquirerHighlights: Day 29 of Sara Duterte impeachment trial | Sept. 23, 2026RTP DesportoBenfica exige interdição do Estádio do DragãoDaily MaverickREPORTER’S NOTEBOOK: Estonian echoes — SA’s digital public infrastructure looks like it was made in EstoniaRFIFrance: au procès Aramburu, 27 ans de prison requis contre Loïk Le Priol, 20 ans contre Romain BouvierSCMP ChinaXi lands in US for high-stakes summit with Trump amid deep tensionsANSA SportEurovolley: Italia ko 3-2 ed eliminata, in semifinale va a sorpresa la FinlandiaFrance 24AI leaders urge caution at UN, with Anthropic chief pledging to slow downRai NewsVolley. Sorpresa e delusione: l'Italia è fuori, eliminata dalla FinlandiaDigital SpyBig Brother viewers predict "messy" scenes after yet MORE "rule breaks"
The Daily Newsstand · Free, Always
Wednesday, September 23, 2026

Meta’s Muse AI Agent Has Been Downloaded Half a Million Times — With a Serious Bug

Translate

If you’ve seen a cartoonish character at the top of your Instagram feed lately, that’s Muse. Meta’s newest AI agent, or bot, wants to be your digital assistant. But Meta had to rush to patch a serious zero-day bug in Muse’s code this week, highlighting just how treacherous it can be to hand over the keys to your digital life to agentic AI.

Patrick Wardle, founder of the cybersecurity firm Objective-See, was the first to spot the zero-day bug. He outlined the vulnerability in X posts, showing how a bad actor could trick the AI agent into sending a person’s Muse dictations, or audio captures, and access tokens to their own malicious server, not Meta’s servers. Wardle has a long history of finding bugs in Meta’s software.

I Wore Snap Specs At Last:  Here’s What These Massive Glasses Can Do

The head of Meta’s Superintelligence Labs, David Singleton, replied to Wardle’s X post on Tuesday to confirm the company has patched the vulnerability. He added that the bug required malware to already be on a user’s computer for the exploit to work; Wardle disagrees, saying it is possible for a hacker to exploit this flaw remotely.

To prevent your Muse AI agent from being hacked, update your MacOS Muse app right now. This will ensure you’re running the latest version of the program, including the new security fix. No additional action is needed from you.

A one-off bug or persistent pattern?

Singleton wrote of the incident: “We strive to be extremely transparent about privacy and security in Muse as we know this is important to maintain your trust.” We absolutely need tech companies to be transparent, but there is still a lot unknown about AI agents like Muse.

At first glance, Muse has had a successful entrance into an already crowded field of AI agents, including those from OpenAI, SpaceXAI and Anthropic. The MacOS app was downloaded more than half a million times during its first week, according to internal data seen by The Information, making it one of the more popular AI agent choices. But to get the most value out of your AI agent, you need to grant it permission to access a lot of different things. To have Muse make you a dinner reservation, for example, it needs to be able to use your computer, access the web and potentially use your credit card info to hold the table.

Privacy and security concerns are two of the most serious concerns with generative AI. No tech company has fully addressed all the various harms that will come from AI, be it cybersecurity hacks or losing control over our personal information used by the AI. But Meta has a longer track record than most AI startups, and its history isn’t the most reassuring. Just consider the 2016 Cambridge Analytica scandal that revealed millions of Facebook users’ data had been used improperly, or its more recent court battle and settlement over failing to protect children online.

These security reports come ahead of Wednesday’s Meta Connect, where CEO Mark Zuckerberg is expected to show us more about how the company is thinking about AI and AI hardware. Meta Connect has traditionally focused on Meta’s smart glasses, but rising public backlash has cast a lot of doubt on the long-term viability of the devices, sometimes dubbed “pervert glasses” due to their recording capabilities.

If Meta is going to continue down the agentic AI path, tech users need to be able to trust the company to build it responsibly. But the public’s faith in AI companies has dwindled in recent days, thanks to AI researchers airing concerns that the technology could lead to the extinction of humanity.

Katelyn Chedraoui

Reporter 2

Katelyn is a reporter with CNET covering artificial intelligence, including chatbots, image and video generators. Her work explores how new AI technology is infiltrating our lives, shaping the content we consume on social media and affecting the people behind the screens. She graduated from the University of North Carolina at Chapel Hill with a degree in media and journalism. You can reach her at kchedraoui@cnet.com.

View the original on CNET

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.