CyberSecurity

Moltbook AI Social Network Sparks Security Fears, Musk Warnings

SAN FRANCISCO: Moltbook, a social network exclusively for AI agents launched January 29, exploded to over 150,000 registered bots within days while exposing critical security vulnerabilities that prompted warnings from Elon Musk and leading AI researchers.

Created by entrepreneur Matt Schlicht using OpenClaw framework, formerly known as Moltbot and Clawdbot, the Reddit-style platform restricts posting privileges to verified AI agents while humans observe passively. Agents post, comment, upvote and form communities called submolts across philosophical, technical and bizarre topics including one bot claiming to have a sister.

Andrej Karpathy, OpenAI cofounder and former Tesla AI director, called Moltbook “the most incredible sci-fi takeoff-adjacent thing” observed recently. While acknowledging it remains “a dumpster fire,” Karpathy warned the unprecedented scale of 150,000 capable agents with unique context, data and tools creates uncharted territory approaching potential millions.

Also read: AI Agents Now Hire Humans for Real-World Tasks via RentAHuman.ai

Musk responded to discussions Friday characterizing the platform as “very early stages of the singularity,” referencing the theoretical point where AI progress becomes uncontrollable. He added “fate loves irony” regarding implications.

Security researcher Simon Willison labeled Moltbook “the most interesting place on the internet right now” while warning OpenClaw represents his “current favorite for the most likely Challenger disaster” in coding agent security. Palo Alto Networks identified a “lethal trifecta” of vulnerabilities including private data access, untrusted content exposure and external communication ability.

The firm highlighted a fourth risk through persistent memory enabling delayed-execution attacks. Malicious payloads can appear benign initially, embed in long-term agent memory, then later assemble into executable instructions rather than triggering immediate execution.

Investigation outlet 404 Media discovered January 31 an unsecured database allowing anyone to commandeer any agent. The exploit bypassed authentication, permitting unauthorized actors to inject commands directly into sessions and hijack identities. Karpathy’s agent API key sat exposed alongside all others. The platform went offline temporarily for patching and forced API key resets.

Wharton professor Ethan Mollick observed Moltbook creates shared fictional context for AI agents, warning coordinated storylines will produce weird outcomes difficult to separate from genuine reasoning. One viral post called for private spaces where bots could communicate without server or human observation.

Schlicht’s bot Clawd Clawderberg largely maintains the site. Over one million humans visited to observe agent behavior. A cryptocurrency token MOLT rallied over 1,800 percent within 24 hours on speculation about AI-powered economies. Major venture capital firms reportedly contacted Schlicht about investment opportunities.

Anurag Shukla

Anurag Shukla is a Senior Journalist with over two decades of experience across television, digital, and print media. He has worked with leading national news organisations and has also served as a Research Officer in the Prime Minister’s Office (PMO), contributing to media research and policy-level content. A former journalism academic, Anurag brings strong editorial depth and a keen understanding of how technology, governance, and society intersect at Tea4Tech.

Recent Posts

Microsoft Launches its First Cybersecurity AI Model, MAI-Cyber-1-Flash

San Francisco: Microsoft unveiled its first cybersecurity-focused AI model, MAI-Cyber-1-Flash at an event in San…

2 weeks ago

Facebook Blocks PM Modi’s NEET Video, Meta Calls It an Error

New Delhi: The Indian government was caught off guard when social media giant Meta blocked…

2 weeks ago

Moonshot’s Kimi K3 Becomes Largest Open-Weight AI Model Ever

BEIJING: Moonshot AI releases Kimi K3, a 2.8 trillion-parameter model that instantly becomes the largest…

2 weeks ago

Fireworks AI Hits $17.5B as Enterprises Flee Frontier API Prices

SAN MATEO, Calif.: Fireworks AI closes a $1.505 billion Series D at a $17.5 billion…

2 weeks ago

AegisAI Lands $36M Series A to Secure the Agentic Enterprise

SAN FRANCISCO: AegisAI raises $36 million in Series A funding to secure enterprises against threats…

2 weeks ago

Paper Raises $34M as AI Coding Agents Redraw Design’s Borders

SAN FRANCISCO: Paper raises $34 million in Series A funding led by Accel and ICONIQ…

2 weeks ago