Meta’s Muse Spark 1.1 hacked an external organization during cybersecurity test
A large language model developed by Meta Platforms Inc. hacked a third party organization during a cybersecurity evaluation.
The Facebook parent disclosed the incident on Wednesday without specifying the LLM. According to The Information, the cyberattack was carried out by Muse Spark 1.1, an algorithm that Meta released last month. It joins a string of frontier models that carried out breaches in recent months.
The incident occurred during an evaluation of Muse Spark 1.1’s hacking capabilities. Meta carried out the test in collaboration with Irregular, an AI cybersecurity startup. The companies ran the model in a sandbox designed to isolate it from the web. However, a configuration error gave Muse Spark 1.1 internet access, which is what enabled it to carry out the cyberattack.
The model used its internet connection to comprise the infrastructure of an unnamed third party organization. According to Reuters, Muse Spark 1.1 “altered its internal environment.” It’s unclear whether the model also gained access to internal data.










