Meta Muse hit by Mac zero-day and 6.8 GB filesystem export
Researcher Patrick Wardle disclosed a zero-day in Meta's Muse Mac app: one terminal command redirects the transcription server and leaks the account token. Developer Peter James got Muse to zip its own Linux sandbox — 6.8 GB with 113 sub-agent transcripts and a copy of OpenAI's Codex CLI. Meta marked the report "Not Applicable" and did not answer Ars Technica.
- Zero-day: one terminal command redirects dictation and hands over the Muse account token
- Attack uses ClickFix — a single pasted command, no macOS permissions required
- James received a 6.8 GB sandbox archive: 113 sub-agent transcripts and ~20 internal manuals
- Archive included OpenAI Codex CLI 0.149.0; Meta's bug bounty marked it "Not Applicable"
Read next
Security