A zero-day vulnerability in Meta's Muse allows local attackers to redirect dictation traffic by modifying an undocumented endpoint setting, enabling capture of audio, prompt injection, theft of authentication credentials, and abuse of Muse's elevated access privileges. A proof-of-concept tool demonstrates the attack by intercepting dictated prompts sent to an attacker-controlled endpoint.