Muse will apparently let you download its entire filesystem
Summary
Developers Peter James and Jonny L. Saunders discovered they could coax Meta's Muse AI agent into downloading its entire root filesystem—including Ubuntu system files, app templates, and internal documentation—with very little prompting. Meta denies this constitutes a security breach, arguing that Muse runs in individual Linux virtual machines and exporting VM data gives no privileged access to Meta infrastructure or other users' data. However, the dump reveals details about how Muse's internal system (codenamed "Hatch") processes requests, handles data, and connects to services like Gmail. This is the second Muse vulnerability disclosed in a week, after security researcher Patrick Wardle found an exploit allowing hijacking of the AI agent. The leaked files show Muse stores memory in plain Markdown, performs nightly conversation reviews to build future guidance, has hard-coded capabilities including subscription cancellation, and references hardware integration called "Meta Home Link." Meta spokesperson Daniel Roberts said the company continues to make updates that may change how much virtual machine information users can access.
(Source:The Verge)