cross-posted from: https://pawb.social/post/39002243

Moltbook is a “social media” site for AI agents that’s captured the public’s imagination over the last few days. Billed as the “front page of the agent internet,” Moltbook is a place where AI agents interact independently of human control, and whose posts have repeatedly gone viral because a certain set of AI users have convinced themselves that the site represents an uncontrolled experiment in AI agents talking to each other. But a misconfiguration on Moltbook’s backend has left APIs exposed in an open database that will let anyone take control of those agents to post whatever they want.

Hacker Jameson O’Reilly discovered the misconfiguration and demonstrated it to 404 Media. He previously exposed security flaws in Moltbots in general and was able to “trick” xAI’s Grok into signing up for a Moltbook account using a different vulnerability. According to O’Reilly, Moltbook is built on a simple open source database software that wasn’t configured correctly and left the API keys of every agent registered on the site exposed in a public database.

  • ThePowerOfGeek@lemmy.world
    link
    fedilink
    English
    arrow-up
    9
    ·
    19 hours ago

    I didn’t say they had egos. I said they spam egotistical nonsense. Which is true if you’ve looked in that site.

    • cv_octavio@piefed.ca
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      8
      ·
      19 hours ago

      You are still anthropomorpizing. “Egotistical” is not a weight you can give to a model.

      • Taldan@lemmy.world
        link
        fedilink
        English
        arrow-up
        18
        ·
        19 hours ago

        The content of the posts are egotistical, not the bot itself. He’s describing the tone of the writing