Saturday, October 10, 2026 Today’s Paper
Log in Join free
Vol. I · No. 11 Texas Edition
Saturday, Oct 10
Texas first. Then the world.
Always free Updated 2 minutes ago
Read. React. Discuss.
Tech

Meta Rushed To Fix Muse 'VM Escape' Vulnerability Soon Before Launch

By BeauHD 2 min read 4 views 0 comments
Meta Rushed To Fix Muse 'VM Escape' Vulnerability Soon Before Launch
Image: Slashdot

An anonymous reader quotes a report from 404 Media: In the immediate weeks before Muse's launch, Meta engineers found several security vulnerabilities in the company's viral AI agent product, at least one of which could have allowed malicious users to break outside of Muse's intended environment and access Meta's own sensitive databases and services, 404 Media has learned. The issues were so severe that they reached Mark Zuckerberg and staff worked overtime to fix them. These specific vulnerabilities were discovered before the launch of the product but required a multi-team "mad dash" to fix "a sudden spike in reported KVM escapes," according to an internal post by Meta executives to its core infrastructure team seen by 404 Media. In order for Muse to work, a user gives the AI agent access to various important services and accounts that they own. On Meta's end, each individual Muse instance runs on a kernel-based virtual machine, which connects to, but is supposed to be isolated from, Meta's own critical infrastructure. A "KVM escape," then, is when, through a security vulnerability, a Muse instance is able to escape from that virtual machine and interact with the system that runs…

Slashdot Original story · yro.slashdot.org
Read the full story

Discussion (0)

No comments yet. Start the conversation!