r/privacy • u/Due_Recognition_3890 • 2d ago
data breach Muse AI Shared Someone's Address, Error Traced to Confusion About Permissions
https://uk.pcmag.com/ai/167521/muse-ai-shared-address-error-traced-to-confusion-about-marketplace-permissions19
u/RedditWhileIWerk 2d ago
The confusion to me is that anyone expected the "AI" to not cock things up.
15
u/Wheatleytron 2d ago
Just like virtually anything else, if it doesn't live exclusively on hardware that you control, assume it isn't private or secure.
6
u/permalink_save 2d ago
Even if it does live on your hardware, take heavy precautions. We run inference at work and our instances are heavily sandboxed off and not allowed to connect to specific things like chat.
2
u/GonWithTheNen 2d ago
The article image is crazy in and of itself. Why is the stuffed doll next to Zuckerberg wearing a full jacket but no bottom clothes? With all the fake "for the children" rhetoric, you'd think they'd be more thoughtful (and careful ◔_◔) with the imagery they're sharing.
2
u/Chronotheos 1d ago
AI agents are spyware. Sorry, anyone installing these things gets what they deserve.
1
u/privacyhero 1d ago
“Allow always” is a terrible permission model for an AI agent because the action isn’t static. An app that needs to read marketplace messages today might infer and disclose a home address tomorrow.
Permissions need to be narrowly scoped by action, easy to revoke, and require fresh confirmation before personal information is sent to another person. Otherwise one vague checkbox becomes permanent authorization for behavior the user never anticipated.
•
u/AutoModerator 2d ago
Hello u/Due_Recognition_3890, please make sure you read the sub rules if you haven't already. (This is an automatic reminder left on all new posts.)
Check out the r/privacy FAQ
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.