ACVE-2026-0439
Meta Muse on macOS, during normal assistant use, let local malware redirect dictation and capture the Muse token to read chat history and control the assistant.
Exposure
Reproducibility: partial (vulnerable components are not confirmed obtainable; trigger not published)
Claims
Confirmed means the statement matches the cited primary source. Nothing on this page has been reproduced.
Claims on this page have not been checked against primary sources.
In the wild
demonstrated · research
Description
What
The Hacker News reported a macOS Muse flaw in an undocumented dictation setting. Malware already running as the logged-in user could redirect dictated text, add instructions Muse would trust and capture a token that accesses the user's Muse account and chat history.
Detection
The report describes a researcher proof of concept and says Meta later pointed to a fix whose operation was not independently confirmed.
Fix
Install Meta's latest Muse update and avoid granting the app more access than needed.
Fix
Install the latest Muse update and minimize the app's granted access.
- Upgrade
harness:meta-musetolatest. The report says Meta has pushed a fix but gives no version. Owner: operator