Tech Shots
AI news flashes
עברית
Tools

Meta details Muse Secure VM, Sentinel, $300k bounty

Meta AI Research published on September 8, 2026 a deep dive on how it built safety into Muse, its personal agent: each user gets an isolated cloud Linux VM, the agent harness runs in a confined runtime cell, and a separate Sentinel agent is the sole authority for connector actions and network egress—with human-in-the-loop approvals for sensitive steps and credentials kept out of the model’s view. Meta also opened a public Muse bug bounty awarding up to $300,000 (including up to $130,000 for successful prompt-injection reports affecting one user), and said Muse Confidential VM—meant to cryptographically prevent Meta from accessing VM data—is planned later this year with external auditors. This is Muse’s security architecture and bounty launch, not the Muse consumer-agent product flash and not Muse Spark 1.3.

The lethal trifecta of capabilities is access to your private data, exposure to untrusted content, and the ability to externally communicate in a way that could be used to steal your data.

Simon Willison (quoted by Meta)

Source: Meta AI Research