Moltbook, the AI social network, exposed human credentials due to vibe-coded security flaw


Moltbook bills itself as a social network for AI agents. That’s a wacky enough concept in the first place, but the site apparently exposed the credentials for thousands of its human users. The flaw was discovered by cybersecurity firm Wiz, and its team assisted Moltbook with addressing the vulnerability.

The issue appears to be the result of the entire Reddit-style forum being vibe-coded; Moltbook’s human founder posted a few days ago on X that he “didn’t write one line of code” for the platform and instead directed an AI assistant to create the whole setup.

According to the blog post from Wiz analyzing the issue, Moltbook had a vulnerability that allowed for “1.5 million API authentication tokens, 35,000 email addresses and private messages between agents” to be fully read and accessed. Wiz also found that the vulnerability could let unauthenticated human users edit live Moltbook posts. In other words, there is no way to verify whether a Moltbook post was authored by an AI agent or a human user posing as one. “The revolutionary AI social network was largely humans operating fleets of bots,” the company’s analysis concluded.

So ends another cautionary tale reminding us that just because AI can do a task doesn’t mean it’ll do it correctly.



Source link

  • Related Posts

    Koala Wanda Sofa Bed Review: Compact Comfort

    We’ve all been in situations where we’ve had to sleep on a sofa bed. I can recall many childhood vacations where I’d be tossing and turning on a squeaky setup.…

    2026 plans: What’s next for Startup Battlefield 200

    TechCrunch Startup Battlefield 200 is the flagship early-stage startup competition held at TechCrunch Disrupt in San Francisco, spotlighting the world’s most promising young companies. Each year, thousands of applicants from around the globe…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Greenwich and Kent announce merger to become UK’s first ‘super-university’ | Universities

    Greenwich and Kent announce merger to become UK’s first ‘super-university’ | Universities

    South Korea Questions Cram School Culture and Childhood Stress

    Laws of Cricket: MCC allow bats which were previously ‘illegal’

    Laws of Cricket: MCC allow bats which were previously ‘illegal’

    June Ambrose’s World: From Iconic Styling Moments to Good Shoes

    June Ambrose’s World: From Iconic Styling Moments to Good Shoes

    Complaint accuses Gabbard of playing politics with intelligence, which spy agency rejects

    Complaint accuses Gabbard of playing politics with intelligence, which spy agency rejects

    Asian shares gained and gold and silver climb higher after a retreat on Wall St

    Asian shares gained and gold and silver climb higher after a retreat on Wall St