本文由AI翻譯
The Information:研究員發現安全漏洞後,Meta 強化 Muse 安全警示
9 月 25 日(路透社)— The Information 週五報導,Meta Platforms 正在 Muse 內新增更清楚的安全警示;此前一名資安研究員發現這款 AI 代理存在漏洞,可能讓攻擊者存取使用者的敏感個資。Sept 25 (Reuters) - Meta Platforms is adding a clearer safety warning within Muse after a security researcher discovered a vulnerability in the AI agent that could let an attacker access a user's sensitive personal information, the Information reported on Friday.
The Information 查閱的一份 Meta 內部事件報告顯示,這項漏洞由一名外部研究員透過 Meta 的漏洞懸賞計畫通報,先前未曾公開揭露;漏洞可能讓攻擊者存取使用者的專屬虛擬機,也就是含有電子郵件、檔案等資料的個人化雲端帳戶。The flaw, reported by an outside researcher through Meta's bug bounty program and not previously disclosed, could have allowed an attacker to access a user's dedicated virtual machine — an individualized cloud-based account containing data including emails and files, according to an internal Meta incident report reviewed by The Information.
報導稱,這項漏洞最初被歸類為「SEV-2」,這是 Meta 五級嚴重程度分級中第三高的等級,通常用於具有重大影響的事件。The vulnerability was initially classified as a "SEV-2," Meta's third-highest severity level on a five-point scale, typically used for incidents with significant impact, the report said.
Meta 未立即回應路透社的採訪請求。Meta did not immediately respond to a Reuters request for comment.
Muse 於本月稍早推出,是 Meta 的個人 AI 代理,旨在代表使用者執行購物、旅遊預訂、寄送電子郵件與付款等任務。Muse, launched earlier this month, is Meta's personal AI agent designed to carry out tasks such as shopping, travel booking, emailing and payments on behalf of users.
近幾週,Muse 在蘋果 App Store 與 Google Play 排名迅速攀升,登上美國與加拿大免費應用程式排行榜榜首;市場情報公司 Sensor Tower 估計,Muse 推出前兩週下載量約達 280 萬次。Muse has rapidly climbed Apple's App Store and Google Play rankings in recent weeks, topping the free-app charts in the United States and Canada, with market intelligence firm Sensor Tower estimating about 2.8 million downloads in its first two weeks.
(班加羅爾 Anzar Mehraj 報導;Shailesh Kuber 編輯)(Reporting by Anzar Mehraj in Bengaluru; Editing by Shailesh Kuber)