Live data from Hacker News

1-Click RCE to steal your Moltbot data and keys

depthfirst.com

71–78 of 78 posts

Re: 1-Click RCE to steal your Moltbot data and keys

#72
post #61
post #6

I'm curious, outside of AI enthusiasts have people found value with using Clawdbot, and if so, what are they doing with it? From my perspective it seems like the people legitimately busy enough that they actually need an AI assistant are also people with enough responsibilities that they have to be very careful about letting something act on their behalf with minimal supervision. It seems like that sort of person cou…

What you are missing: now people finally have a Siri that actually works.

I guess that's one reason. If I'm perfectly honest I always turn Siri off because I don't trust Siri either; but that's less of a "malicious actors" thing and more of a "it doesn't work well thing". Although to be honest, outside of driving in a car I don't really want a voice interface. With a lot of things I feel like I need to overspecify it if I have to do it verbally. Like "play this song, but play it from my spotify Liked playlist so that when the song is over it transitions to something I want" (I've never tried that since I figure siri can't do it -- just an example)

Re: 1-Click RCE to steal your Moltbot data and keys

#73
post #41
post #6

I'm curious, outside of AI enthusiasts have people found value with using Clawdbot, and if so, what are they doing with it? From my perspective it seems like the people legitimately busy enough that they actually need an AI assistant are also people with enough responsibilities that they have to be very careful about letting something act on their behalf with minimal supervision. It seems like that sort of person cou…

It is very much fun! Chaotic and definitely dangerous but a fun little experiment of the boundaries. It’s definitely not it it’s final form but it’s showing potential.

I can see how it could be fun, but I'm a bit skeptical that it's a practical path forward. The security problems it has (prompt injection for example) don't seem solvable with LLMs in general

Re: 1-Click RCE to steal your Moltbot data and keys

#74
post #68
post #15

Earlier quoted context omitted.

Humanity is the same it's always been. Some people are just inherently curious despite the obvious dangers. Also, if you think about it, billions of people aren't running Moltbot at all.

X is full of people including Karpathy, Jason C and others boasting about this.

Presumably one of these high profile people will eventually get pwned if the risks really are that high.

Re: 1-Click RCE to steal your Moltbot data and keys

#75
post #39
post #35

Earlier quoted context omitted.

How do you know this? Not disagreeing, just curious.

The links have been posted to HN if you search. https://moltroad.com/ comes to mind. The "top rated" on there describes itself as "trading in neural contraband". That's in addition to all of the actual hijacking hacks that have been going on. I'm not saying any of this is successful, but people are certainly trying.

This just looks like a slop website full of auto-generated garbage. “Neural contraband” is meaningless

Re: 1-Click RCE to steal your Moltbot data and keys

#76
post #69

Apart from the actual exploit, it is intriguing to see how a security researcher can leverage an AI tool to give them an asymmetric advantage to the actual developers of the code. Devs are pretty focused on their own subsystem and it would take serendipity or a ton of experience to be able to spot such patterns. Thinking about this more .. given all the AI generated code being put into production these days (I routin…

Looking at their website, depthfirst seems to offer an product that essentially solves this problem.

Seems like a space that is really heating up. I recall most of the foundational labs announced some kind of agentic security product last year (OpenAI's Aardvark, Claude Code security reviewer, etc.)

Re: 1-Click RCE to steal your Moltbot data and keys

#77
post #6

I'm curious, outside of AI enthusiasts have people found value with using Clawdbot, and if so, what are they doing with it? From my perspective it seems like the people legitimately busy enough that they actually need an AI assistant are also people with enough responsibilities that they have to be very careful about letting something act on their behalf with minimal supervision. It seems like that sort of person cou…

From my perspective, not everybody is busy but they are using AI to remove the load from them. You might think: But that is great right?? I had a chat with a friend also in IT, ChatGPT and alike is the one doing all the "brain part and execution" in most cases. Entire workflows are done by AI tools, he just presses a button in some cases. People forget that our brain needs stimulation, if you don't use it, you forget…

Yeah, the scary problem comes from people who are trying to abdicate their entire understand-and-decide phase to an outside entity.

What's more, that's not fundamentally a new thing, it's always been possible for someone to helplessly cling to another human as their brain... but we've typically considered that to be a sign of either mental-disorder, psychological abuse, or a fool about to be parted from their money.

Re: 1-Click RCE to steal your Moltbot data and keys

#78
post #60

Earlier quoted context omitted.

The true "AI" agent fan probably is sure, though.

maybe personal AI agents are just a massive psyop to get the massive population of true fans' data then lol - or we just get new security tools that can keep up with this pace of AI innovation. who knows

The "AI" agent suppliers need to up their security game. Until their products stop leaking PPI/PCI for free, they will never succeed in monetising it.

:)

Post reply on HN