Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents
Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents
苹果表示,由于人工智能代理带来的新风险,将收紧 macOS 的“完全磁盘访问”权限控制
Days after a journalist claimed that Meta’s Muse app on Mac read their private messages — a claim that Meta disputed — Apple announced that it’s introducing additional controls around a setting called “Full Disk Access” on macOS. The feature was designed to allow backups to function properly, but AI agents have now increased “the risks associated with this level of access,” Apple said.
在一位记者声称 Meta 的 Mac 版 Muse 应用读取了其私人信息(Meta 对此予以否认)几天后,苹果公司宣布将针对 macOS 中名为“完全磁盘访问”(Full Disk Access)的设置引入额外的控制措施。苹果表示,该功能最初旨在确保备份程序正常运行,但人工智能代理的出现增加了“与此类访问权限相关的风险”。
Apple’s statement comes shortly after Inc. columnist Jason Aten reported that Muse knew the content of his private messages — even though he claimed to have not given the AI agent permission. The report raised questions about the level of security and trust users have in desktop-based AI, which can control things on their systems and read their files and messages.
苹果发表此声明前不久,《Inc.》专栏作家 Jason Aten 报道称,Muse 获知了他私人信息的内容,尽管他声称并未授予该人工智能代理相关权限。这篇报道引发了人们对桌面端人工智能安全性和用户信任度的质疑,因为这些人工智能能够控制系统并读取用户的文件和信息。
The decision to limit the Mac feature also comes after a Wired report cited that a flaw in ChatGPT’s Mac app could have allowed hackers to access sensitive data. AI agents that run on the desktop allow users to provide their respective apps with greater access to the files, messages, and other personal content on their computers by adjusting macOS settings.
在苹果决定限制该 Mac 功能之前,《连线》(Wired)杂志曾报道称,ChatGPT 的 Mac 应用存在一个漏洞,可能允许黑客访问敏感数据。运行在桌面端的人工智能代理允许用户通过调整 macOS 设置,为其应用提供对电脑中文件、信息及其他个人内容的更大访问权限。
In Muse’s case, the AI optionally allows users to enable Full Disk Access. This setting, Apple explains, gives an app permission to access files, mail, messages, and even browsing history. “Some developers are using Full Disk Access in ways that could put users at risk, exposing everything on their systems…without users’ full knowledge and understanding,” Apple said in a new blog post aimed at developers.
以 Muse 为例,该人工智能允许用户选择性地开启“完全磁盘访问”。苹果解释称,此设置赋予应用访问文件、邮件、信息甚至浏览记录的权限。苹果在针对开发者发布的一篇新博文中表示:“一些开发者正在以可能危及用户的方式使用‘完全磁盘访问’权限,在用户未完全知情和理解的情况下,暴露其系统中的所有内容。”
The company says that, going forward, it will introduce new controls aimed at ensuring that users who “genuinely wish to grant an app this extraordinary level of access” can do so only with “very explicit user action.”
该公司表示,未来将引入新的控制措施,旨在确保那些“确实希望授予应用这种超高级别访问权限”的用户,只能通过“非常明确的用户操作”来实现。
“Addressing this is critical. As AI agents become increasingly capable and autonomous, the risks associated with this level of access will grow substantially. We are committed to ensuring users clearly understand these risks before granting such access, so they can make informed decisions about their own data and privacy,” Apple wrote.
苹果写道:“解决这个问题至关重要。随着人工智能代理变得越来越强大和自主,与此类访问权限相关的风险将大幅增加。我们致力于确保用户在授予此类访问权限之前清楚地了解这些风险,以便他们能够就自己的数据和隐私做出明智的决定。”
Apple did not respond to TechCrunch’s inquiry about the feature change.
苹果未回应 TechCrunch 关于此次功能变更的置评请求。