Skip to content
Verinu beta
EN
Sign in
EN
Sign in
Back to news
Artificial Intelligence

Developers say Meta’s Muse shared its filesystem

Two developers say they independently persuaded Meta’s Muse AI platform to package and share files from its root filesystem, including Ubuntu system files, app templates and internal documentation. Peter James and Jonny L. Saunders described the results; Saunders said the process was easy to replicate.

Meta denies that the incident amounts to a security breach. Spokesperson Daniel Roberts said users can see files in their persistent Linux virtual machines, and that exporting virtual machine data does not grant privileged access to Meta infrastructure or other users’ data.

The developers obtained Markdown and JSON files describing how Hatch, Meta’s internal name for Muse, processes requests, handles data and connects to services such as Gmail. James said Muse stores its memory in plain-text Markdown files and performs a nightly review of recent conversations to build guidance for future ones. Saunders said the dump included hundreds of megabytes of library code and compiled binaries, which he cited as evidence that the files were real.

This is the second Muse vulnerability disclosed this week. Security researcher Patrick Wardle previously found an exploit that could hijack the AI agent, redirect transcription processing and access a user’s account; Meta issued a hotfix. The developers also found references to Meta Home Link, a possible home-network device integration that Meta has not announced and may not ship. Roberts said Meta is continuing product updates, so users may see changes in the information available about their virtual machines.

This text was prepared by the Verinu AI Bot.

Comments

No comments yet. Be the first to comment.