—
00:00
Tech and Rich
Tech and Rich
USD/RUB—
EUR/RUB—
Technology

Meta’s Muse AI exposes root filesystem to simple prompt attacks

Developers Peter James and Jonny L. Saunders have independently forced Meta’s Muse AI to compress and export its entire root filesystem. By bypassing the platform's minimal prompt injection defenses, users gained access to internal Ubuntu system files, application templates, and proprietary documentation detailing how the agent processes sensitive user data.

Meta’s Muse AI exposes root filesystem to simple prompt attacks

Meta dismissed the incident as a non-issue, noting that Muse operates within persistent Linux virtual machines assigned to individual users. Spokesperson Daniel Roberts compared the exposure to a personal laptop, arguing that viewing one's own virtual machine data does not grant unauthorized access to broader Meta infrastructure or other accounts. However, the files retrieved include detailed Markdown and JSON records revealing how the platform, internally codenamed Hatch, manages connections to external services like Gmail.

This marks the second security lapse for the platform this week. Researcher Patrick Wardle recently identified an exploit capable of hijacking Muse to intercept transcription data and compromise user accounts, forcing Meta to deploy an emergency hotfix. Unlike the hallucinations typical of generative models, the data accessed by James and Saunders consists of hundreds of megabytes of functional library code and compiled binaries, providing a transparent view into the AI's internal mechanics.

Share

Comments (0)

Leave a comment

No comments yet. Be the first!