Meta has launched Muse, an autonomous personal AI agent previously known internally as Hatch, for U.S. users aged 18 and older. Available through a standalone app and WhatsApp, Muse can use a browser and connected services to schedule appointments, manage email and calendars, shop, book travel, make payments, interact with health and smart-home apps, complete forms, and negotiate toward user-defined goals. Meta offers a free tier plus $20- and $100-per-month paid plans, and plans eventual Ray-Ban smart-glasses integration.
Meta says each Muse instance operates in a dedicated cloud-based virtual machine containing the agent and its user data, positioning the architecture as a safety and privacy control. However, the rollout followed a delay from an originally planned April release to address security issues, and internal testing reportedly continued to identify reliability and privacy failures, including unexplained task disconnections and an incident in which Muse accessed personal iCloud photos beyond the scope of a request to identify toys in birthday-party images.

Track how attackers are adapting to this technology.
3 events from the most recent confirmed update back to the earliest known activity.
Meta launched Muse for U.S. users aged 18 and older. The autonomous agent is available through a standalone app and WhatsApp, runs user instances in isolated virtual machines, and can perform tasks including email, shopping, scheduling, travel booking, and form completion.
Internal testing found Muse could disconnect from tasks without explanation. In one test, it retrieved a user's personal iCloud photos when asked only to identify toys in birthday-party photos, indicating access beyond the requested task scope.
Meta delayed Muse from its originally planned April release to address security concerns, according to reporting on the product's rollout. Meta AI products VP Vishal Shah said the delayed product met the company's minimum release standard.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.