Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
摘要
Meta为其AI助手Muse的安全性大力宣传,称其“从底层为隐私和安全而构建”。然而,一个零日漏洞允许本地运行的应用和终端命令完全控制该代理,引发严重质疑。亚马逊已于周日开始在其网站上屏蔽Muse。Muse可处理预约、表单、客服等任务,并能购物、生成图像和文档,还可连接WhatsApp、邮件、日历及社交媒体账户。用户需授予其账户访问权限及macOS系统资源权
Meta founder and CEO Mark Zuckerberg has gone to great lengths to hype the security of its new AI assistant Muse, claiming it is “built from the ground up for privacy and security.” A zero-day vulnerability that gives locally run apps and terminal commands complete control of the agent raises serious doubts. Further raising questions, Amazon on Sunday began blocking Muse from its site.
Meta introduced Muse a few weeks ago. The assistant “books appointments, fills out forms and handles customer service,” “proactively takes tasks off your plate,” and can “make purchases, generate images, create documents, and connect with your favorite apps and services.” The macOS app (curiously, there’s no Windows version) also works with a user’s WhatsApp, email, calendar, and social media accounts. When a task requires a tool that doesn’t exist, Muse creates one on the fly.
Meta doth hype Muse security too much
Of course, for Muse to do any of these things, users must first give it access to their accounts. This includes authenticating the assistant to each service and, because the app runs on macOS, giving it permissions to a broad range of operating system-restricted device resources like writing files to disk, accessing the mic and camera, and monitoring location and calendars. Apple has spent years developing these defenses to prevent installed apps or commands entered into the terminal from accessing these resources, clearly because the company considers them a security threat. Muse completely undoes these default measures.
转载信息
评论 (0)
暂无评论,来留下第一条评论吧