SEPTEMBER 22, 2026
Subscribe
Global Press Media · World Report
Technology

Zero‑Day Bug in Meta’s Muse AI Allows Malware to Seize macOS Voice Assistant

Zero‑Day Bug in Meta’s Muse AI Allows Malware to Seize macOS Voice Assistant

Researchers have identified a severe zero‑day flaw in Meta’s macOS Muse AI voice assistant that permits existing malicious code on a computer to seize control of the spoken‑command interface, capture user instructions, and steal authentication credentials.

Analysis by security experts shows that when malware runs with the same user rights as the genuine app, it can inject code into Muse’s process. By doing so, the attacker can alter how the assistant processes prompts, converting the AI into a hidden channel for additional malicious commands without the user’s knowledge.

The vulnerability is especially concerning given that Muse is promoted as a productivity tool that responds to spoken queries and can open files, send messages, or fetch passwords. If an attacker commandeers the assistant, they could record confidential credentials spoken to it, force the assistant to fetch further malware, or alter its responses to deceive the user into disclosing additional data.

Meta has not issued a public statement regarding the flaw, and its bug‑bounty program has not revealed any corresponding submissions. The issue was initially reported by cybersecuritynews, which emphasized how readily current malware can exploit the defect without needing privileges higher than those of the logged‑in account.

Specialists note that the bug highlights a wider danger tied to AI‑powered assistants on desktops. Although these utilities add convenience, they also enlarge the attack surface, particularly when they are tightly integrated with the operating system. Users should ensure macOS and all software are current, watch for abnormal activity from voice assistants, and think about restricting microphone permissions for apps that do not require them.

Meta plans to deliver a fix in a forthcoming software update, though no exact schedule has been provided. Meanwhile, security experts advise using endpoint defenses capable of spotting irregular process injection and limiting the run of unsigned binaries. As AI assistants gain traction, the sector is poised to intensify examination of their security designs to avert comparable exploitation routes going forward.

Editorial Desk — Editorial desk.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related