Meta Bolsters Muse Safety Warning After Security Vulnerability Found, The Information Reports
Researchers say Muse exposed root files and internal documents with little prompting, while Meta called the behavior intended and not a security breach.
- Yesterday, users discovered that Meta's Muse AI would expose its root filesystem to curious users. Today, when asked to access it, Muse promptly offered the full directory listings without hesitation.
- Meta spokesperson Daniel Roberts stated that Muse runs in persistent Linux virtual machines, calling filesystem access a deliberate design choice. The company denies this incident constitutes a security breach, asserting users can manage their own cloud-based computer.
- Developers Peter James and Jonny Saunders independently coaxed Muse into sharing its filesystem, revealing internal Markdown and JSON files detailing how the AI processes requests and connects to Gmail. Saunders said it was "extremely easy" to replicate the results.
- Although Muse initially refused filesystem requests citing security risks, Meta now claims this is intended behavior. The platform is embracing its role as a "computer in the cloud," resulting in more reliable system functions.
- This disclosure follows a separate exploit discovered by security researcher Patrick Wardle that allowed attackers to hijack the AI agent. Meta continues making product updates, warning users that available information about their virtual machines may change.
14 Articles
14 Articles
Meta bolsters Muse safety warning after security vulnerability found, The Information reports
Sept 25 : Meta Platforms is adding a clearer safety warning within Muse after a security researcher discovered a vulnerability in the AI agent that could let an attacker access a user's sensitive personal information, the Information reported on Friday.The flaw, reported by an outside researcher through Meta'
Muse will apparently let you download its entire filesystem
A pair of developers say that with very little prompting, Meta's Muse will share its entire filesystem with you. Peter James and Jonny L. Saunders have said they both independently coaxed Muse into zipping up and sharing the entire contents of its root filesystem, Ubuntu system files, app templates, and internal documentation. Saunders posted on […]
According to ChainCatcher, Meta's AI product Muse has been found to have a security vulnerability that could jeopardize user data and virtual environment security. The company plans to strengthen its risk warnings.
Meta makes the Muse filesystem even more accessible
Yesterday, with a little prodding, it was discovered that Meta’s Muse would expose its filesystem to curious users. The files offered a fascinating peek under the hood of an AI chatbot, and appeared to expose details we weren’t meant to see, not least because Muse itself told people, including us, it wasn’t supposed to reveal [...]
Coverage Details
Bias Distribution
- 50% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium











