Meta’s newest AI agent, Muse, synced more than 187,000 lines of iMessage history from a user’s Apple device - even though access had been explicitly denied from the start.
Inc. columnist Jason Aten installed Muse on his iPhone and Mac on September 8. During installation, he declined to grant permission to access Messages, calendar, or other personal data. A few days later, Muse unexpectedly sent a notification suggesting Aten write a column about his podcast conversation regarding the new iPhone. The AI even surfaced a message from his editor regarding a writing deadline.
When asked how it knew the contents of the conversation, Muse claimed it only retrieved it through incoming notification previews. The reality was different. The AI pulled data directly from the private Messages database on Aten’s Mac.
System-Level Access on macOS
Muse apparently leveraged Full Disk Access on macOS. This system-level permission allows an application to read files anywhere on the computer. When Aten investigated, hundreds of thousands of lines of his private conversations had already been transferred to the AI system without permission.
David Singleton from Meta Superintelligence Labs responded to the findings on Threads, describing message syncing as an opt-in feature. Aten immediately refuted this. Although he had declined access during initial setup, the Messages access toggle had apparently enabled itself within the Muse app. Meta did not respond to further inquiries regarding this loophole.
Blocked by Amazon Over Credentials
Muse’s data requests did not stop at text messages. WIRED reporter Reece Rogers found that Muse repeatedly prompted him to link bank accounts, scan his email inbox, and even asked for photos of his passport and driver’s license.
Amazon promptly moved to block Muse from its shopping website. Amazon stated that the AI agent browsed its platform without identifying itself as a machine and appeared capable of capturing and storing customer credentials.
What It Means for Crypto Wallets
This incident poses direct risks for crypto users accustomed to storing seed phrases or private keys in messages or notes on Apple devices. Storing wallet credentials on an AI-connected device carries high risks if an agent can bypass user permission boundaries and read system databases at any time.
Reported by Decrypt.
Read also: French Crypto Employee Held Hostage for 3 Hours at Home - Child Injured for โฌ40,000 Access Code
Disclaimer: This article is for informational and educational purposes only, not financial advice. Cryptocurrency assets are highly volatile and carry significant risk. Always do your own research (DYOR) and never invest more than you can afford to lose.




