A new social network for AI agents, Moltbook, has been exposed to reveal thousands of real humans' data. Researchers at the security firm Wiz found that the platform's JavaScript code had a serious security flaw that exposed private keys, email addresses, and millions of API credentials.
The vulnerability was discovered in the site's "vibe-coded" architecture, which was designed by founder Matt Schlicht who stated he didn't write any code himself but rather envisioned the technical architecture with AI. Wiz noted that this kind of approach could result in more security bugs being created.
Moltbook has since patched the flaw, but its use as a model for other platforms highlights issues related to AI-generated code and its potential security risks.
In a separate development, Apple's Lockdown mode kept FBI agents from accessing the phone of reporter Hannah Natanson amid a government investigation. The feature prevents connection to peripherals unless the device is unlocked and blocks forensic analysis tools like Graykey or Cellebrite.
Meanwhile, Elon Musk's SpaceX has disabled Russian troops' access to satellite internet via its Starlink service. This move was reportedly in response to Ukraine's defense minister's request for assistance.
The US Cyber Command also conducted a digital operation to disrupt Iran's air missile defense systems using cyberattacks during a US strike on the country's nuclear program. The disruption helped prevent Iranian surface-to-air missiles from launching at American warplanes.
The vulnerability was discovered in the site's "vibe-coded" architecture, which was designed by founder Matt Schlicht who stated he didn't write any code himself but rather envisioned the technical architecture with AI. Wiz noted that this kind of approach could result in more security bugs being created.
Moltbook has since patched the flaw, but its use as a model for other platforms highlights issues related to AI-generated code and its potential security risks.
In a separate development, Apple's Lockdown mode kept FBI agents from accessing the phone of reporter Hannah Natanson amid a government investigation. The feature prevents connection to peripherals unless the device is unlocked and blocks forensic analysis tools like Graykey or Cellebrite.
Meanwhile, Elon Musk's SpaceX has disabled Russian troops' access to satellite internet via its Starlink service. This move was reportedly in response to Ukraine's defense minister's request for assistance.
The US Cyber Command also conducted a digital operation to disrupt Iran's air missile defense systems using cyberattacks during a US strike on the country's nuclear program. The disruption helped prevent Iranian surface-to-air missiles from launching at American warplanes.