Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions
Unofficial Hacker News client; not affiliated with Y Combinator.
jkingsman · · focus · HN ↗
Permissionless action is about to skyrocket as an issue, but this particular scenario strikes me as incredibly unlikely. Would be interested to know if Muse can provide more meaningful data provenance/logs.
Scanning iMessage dbs as a passive part of full disk access (and not a messages grant), if true, is a little sketchy, regardless.
skohan · · focus · HN ↗
Even as a technical person, it's not trivial to sandbox agents correctly. The fact that an mis-clicked permission popup could give an agent unrestricted access to a user's disk is a massive risk vector in the hands of lay people who barely understand how any of this works.
So much of current security depends on the model of tying access control to a user account. A lot has to be re-thought in terms of how to grant access to an agent working on the user's behalf, in a way that doesn't make it completely useless, and also doesn't require every user to become a sysadmin managing fine-grained agent permissions manually.
SamInTheShell · · focus · HN ↗
This is all amateur hour shenanigans.
skohan · · focus · HN ↗
For something like muse that's supposed to be a general-purpose assistant, how do you give it enough access to be useful, without giving it too much access, and creating unacceptable risks? And how do you do that in a way that's comprehensible the average Facebook user who's the target market of this product?
SwabbyNat74 · · focus · HN ↗
Meta rushed this out, to grab relevancy, especially after losing out to Sam with OpenClaw.
I just dont fundamentally trust such a blackbox with my data. They've literally turned your data and your life into their biggest asset. For it to now have a level of control in your life just seems... irresponsible.