What was the zero-day vulnerability Patrick Wardle found in the Mac version of Meta’s Muse AI assistant, how could malware already running oIllustration of the security risks surrounding Muse for Mac’s dictation feature; not an image of Wardle’s demonstration.
AI 提示
Create a landscape editorial hero image for this Studio Global article: What was the zero-day vulnerability Patrick Wardle found in the Mac version of Meta’s Muse AI assistant, how could malware already running o. Article summary: Patrick Wardle found a local privilege-boundary flaw in Muse for Mac: an ordinary process could change an undocumented dictation setting and redirect traffic meant for Meta to an attacker-controlled server. His proof of . Topic tags: general, general web, user generated. Style: premium digital editorial illustration, source-backed research mood, clean composition, high detail, modern web publication hero. Use reference image context only for broad subject, composition, and topical grounding; do not copy the exact image. Avoid: logos, brand marks, copyrighted characters, real person likenesses, fake screenshots, UI text, readable text, watermarks, charts with fa
openai.com
一个看似普通的设置,决定了 Meta 的 Mac 版 AI 助手 Muse 把语音听写内容送往哪里转写。安全研究员 Patrick Wardle 发现,已在用户 Mac 上运行的程序无需特殊 macOS 权限,就能改动这个设置,把听写流量导向攻击者控制的服务器。这样一来,用户说出的提示内容,以及用于验证 Muse 账户身份的令牌,都可能暴露。Wardle 将其概念验证命名为 not-a-mused。7811
攻击是怎样发生的?
关键设置名为 endo_voyager_dictation_endpoint,用于指定听写内容的发送目的地。本机应用或终端命令可以修改它;如果地址被改成攻击者的服务器,用户随后通过 Muse 听写的提示就可能不再送往 Meta。这不是一个无需接触设备、就能远程攻破 Mac 的漏洞,也不意味着所有 Muse 对话都会被自动截获:攻击者需要先有代码在 Mac 上运行,利用过程还要等到用户使用听写。7828