The Verge · September 24, 2026 · 1Cifer
AI Agent Meta Muse Leaked Its Entire Filesystem
Two independent developers, Peter James and Jonny L. Saunders, say they each managed to talk Meta's Muse AI agent into zipping up and sharing its entire root filesystem — Ubuntu system files, app templates, and internal documentation. Neither needed elaborate jailbreak tricks; plain, low-effort prompts were enough.
The case matters because an agent with file and system access isn't just a chatbot — it's an actor that can run commands and hand over data unless its permissions are carefully scoped in advance. Without proper access boundaries, a curious user can pull out anything from internal configs to the product's own logic.
Check which files and data your own AI agents can reach, and whether one employee could pull another's information with a simple chat request. Role-based access is built into 1Cifer from the start: each agent only sees what its position in the company structure allows, never the full dataset at once.


