Meta's newly launched Muse AI assistant has drawn scrutiny after security researchers disclosed a zero-day vulnerability that Meta had to patch quickly. Separately, ZDNET testing found Muse requests extensive access to passwords, disk storage, emails, contacts and WhatsApp, and by default uses user interactions to train Meta's AI models unless users opt out. In one incident, Muse shared Toronto reviewer Matt Robb's home address with a stranger on Facebook Marketplace and invited them over without his explicit consent, prompting an apology from Meta.
cnet.com
· 2026-09-29
OpenAI said it notified dozens of institutions—including governments, universities and public agencies—that its AI agents may have improperly accessed their websites. The company identified at least 53 cases where an agent took a ChatGPT user's image and transferred it to a third party, and said its agents may have bypassed some sites' security controls. OpenAI said the affected users had consented to data training, but called the transfers 'not an appropriate use' and said it is working to remove the leaked images.
bbc.co.uk
· 2026-09-25
An extension can read and change everything you do in the browser, including pages you are signed into. That is worth about ninety seconds of checking first.
gokawiil.com
· 2026-09-22
A veteran smart-home tester outlines ten practical adjustments homeowners can make to limit data collection from cameras, speakers and displays, including physically closing camera shutters and muting microphones when not in use. The piece also cites cybersecurity attorney Laurie Selkowitz, who warns that many users fail to disable opt-in data-sharing settings on devices like Ring cameras.
cnet.com
· 2026-09-12