SECURITY·중요도 9·2026. 09. 22.·The Hacker News
One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor
── KO ──────────────────
메타 뮤즈 비밀 설정으로 공격자가 AI 어시스턴트를 백도어로 전환할 수 있다.
보안 연구자인 패트릭 워들(Patrick Wardle)이 발표한 증명 개념에 따르면, 맥에서 실행 중인 악성 소프트웨어가 메타의 뮤즈 어시스턴트를 장악할 수 있는 방법이 있다. 이 방법은 사용자가 마이크를 탭하여 지시를 내리면 그 음성이 메타 대신 공격자에게 전달되도록 하는 숨겨진 설정을 변경함으로써 작동한다. 이는 사용자가 부여한 광범위한 접근권 때문에 가능하다.
── EN ──────────────────
A hidden Meta Muse setting could let attackers turn the AI assistant into a backdoor.
Security researcher Patrick Wardle demonstrated in a proof-of-concept that malware running on a Mac could take control of Meta's Muse assistant. It works by changing a hidden setting so that when users tap the microphone and dictate prompts, their words go to the attacker instead of to Meta. This vulnerability exploits the broad access granted to the application by its owner.