Zero-day in Meta's Muse macOS client bypassed security via debug setting
Security researcher Patrick Wardle disclosed an unpatched zero-day in Meta's desktop client for its Muse AI assistant on macOS. An undocumented preference key, endo_voyager_dictation_endpoint, let local processes reroute dictation audio and authentication tokens to an attacker's server. Meta shipped a hotfix stripping the debug setting from production builds, but no CVE was assigned.
- Flaw let attackers reroute Muse dictation audio and auth tokens to their own server
- Exploitation required no admin rights and bypassed macOS TCC protections
- Meta shipped a hotfix removing the debug key from production builds
- No CVE assigned; Meta calls it an internal configuration defect
Read next
Security