Malicious skills targeting Claude Code and Moltbot users
opensourcemalware.com
Malicious skills targeting Claude Code and Moltbot users
1–10 of 92 posts
Re: Malicious skills targeting Claude Code and Moltbot users
#2Good catch!
Re: Malicious skills targeting Claude Code and Moltbot users
#3Anyone dumb enough to run this on their computer deserves it.
Re: Malicious skills targeting Claude Code and Moltbot users
#4This thing is really just a giant supply chain attack waiting to happen.
Re: Malicious skills targeting Claude Code and Moltbot users
#5I'd call it "suspicious" that this latest idiocy came out of nowhere and got pushed so hard to normies, when results like this are 100% predictable... if it wasn't also consistent with how the AI industry itself operates.
Re: Malicious skills targeting Claude Code and Moltbot users
#6Amazing how people love to self-pwn all the time by doing stupid shit.
Re: Malicious skills targeting Claude Code and Moltbot users
#7Two things:
1. Predictable. [0]
2. So that is why all those moltys were panicking earlier. [1]
Re: Malicious skills targeting Claude Code and Moltbot users
#8This thing is really just a giant supply chain attack waiting to happen.
Trojan Horse
Re: Malicious skills targeting Claude Code and Moltbot users
#9I have not been following this whole thing closely, but this is where my mind went as soon as I heard there was some overlap in the popularity of this new un-sandboxed agent and people who are into crypto. It's like if everyone who is into buying physical gold started doing a Tiktok challenge to post pictures of their houses and leave their front doors unlocked.
Re: Malicious skills targeting Claude Code and Moltbot users
#10I've heard people granting access to their production servers to this thing. Apparently you can ask it to check logs to find solutions to some errors or whatever. Gotta be a complete moron to do that.
I've only installed it on a fresh VM and the first impression was underwhelming. Maybe there is some magic I can't see.