A critical zero-day vulnerability in the Muse voice assistant for macOS could give attackers complete control over affected devices. Security researcher Patrick Wardle discovered the flaw, which he dubbed "not-a-mused," allows attackers to intercept and redirect user voice commands to a malicious server under their control.
Once redirected, the attacker can capture audio from the user's microphone, inject malicious instructions, and steal the Muse account authentication token sent along with dictation traffic. Because Muse has permissions to access files, camera, location, calendar, and applications like WhatsApp, email, and social networks, a successful attack grants the attacker the same level of access to all these resources.
The vulnerability can be exploited through two attack vectors: local malware already installed on the device, or ClickFix, a social engineering technique that tricks users into executing malicious commands directly in the terminal. Meta has patched the vulnerability in the latest version of the Muse application, making an immediate update essential for all users.