Christ is my all
2484 stories
·
3 followers

Deploying Moltbot (Formerly Clawdbot)

1 Share

Connor Jones:

Would you be comfortable handing the keys to your identity kingdom over to a bot, one that might be exposed to the open internet?

[…]

Jamieson O’Reilly, founder of red-teaming company Dvuln, was among the first to draw attention to the issue, saying that he saw hundreds of Clawdbot instances exposed to the web, potentially leaking secrets.

[…]

“Of the instances I’ve examined manually, eight were open with no authentication at all and exposing full access to run commands and view configuration data,” he said. “The rest had varying levels of protection.

Jason Meller:

Within an hour of setting up MoltBot on my Mac, it had already built a fully featured kanban board where I could assign it tasks and track their state.

I have seen other stories that are even wilder. One user shared an anecdote about asking it to make a restaurant reservation, and when it realized it could not do it through OpenTable, it went and got its own AI voice software and just called the restaurant, then secured the reservation over the phone.

[…]

None of those are pre-programmed routines. They are dynamic behaviors born out of an agentic loop that takes a goal and improvises a plan, grabbing whatever tools it needs to execute. It can apply general world knowledge, specific skills, and near-perfect memory into organized action toward objectives you set, and, more sobering, objectives it decides to set for itself.

[…]

That combination is why it feels both a glimpse at the future, but presented as a goal, where between us and the future realized, is a lot of hard work to make it safe.

Aaron Ng:

Got a mac mini for clawdbot. Had a lot of fun setting this up today. Instead of access to my accounts, I gave it:

✅ its own apple account for messages

✅ its own gmail to sign up for stuff

✅ its own github to push code

I’m seeing lots of reports like this.

Christina Warren:

Everyone buying Mac minis for Clawdbot makes sense but like why did you not already have a Mac mini for AI stuff? Best fucking deal in computing fr.

Peter Steinberger:

Please don’t buy a Mac Mini, rather sponsor one of the many contributors of @clawdbot.

You can deploy this on Amazon’s Free Tier.

SmitS:

There are plenty of secure ways to run @clawdbot even on your local machine. Buying a new Mac mini shouldn’t even be an option (Mac studio I can still understand for local LLMs). Better to put that support into tokens or sponsoring the project.

Mysk:

I love buying new hardware as much as the next guy, but you don’t need to buy a Mac mini to try out @clawdbot

Use a virtual machine instead: @UTMapp is open source and supports macOS guests

With a VM you’d isolate clawdbot from your data on the host machine. I still wouldn’t trust LLMs and their providers to run through my data

You’d be one prompt-injection away from leaking all your passwords. Fun! 😬

Ben Lovejoy:

While the internet was amused, it seems Anthropic wasn’t.

moltbot:

Clawdbot → Moltbot
Clawd → Molty

Same lobster soul, new shell. Anthropic asked us to change our name (trademark stuff), and honestly? “Molt” fits perfectly - it’s what lobsters do to grow.

Here’s the new Web site.

Sivaram:

This is the story of how fast things fall apart when legal teams, hackers, and viral hype collide.

[…]

During the rename process, Steinberger made a critical mistake. He tried to rename the GitHub organization and X/Twitter handle simultaneously. In the gap between releasing the old name and claiming the new one, crypto scammers snatched both accounts in approximately 10 seconds.

Previously:

Read the whole story
rtreborb
1 hour ago
reply
San Antonio, TX
Share this story
Delete

curl Removes Bug Bounties

1 Share

Jan Tångring (Hacker News):

“AI slop and bad reports in general have been increasing even more lately, so we have to try to brake the flood in order not to drown”, says cURL maintainer Daniel Stenberg to Swedish electronics industry news site etn.se.

Therefore, cURL is terminating the bounty payouts as of the end of January.

[…]

Not all AI-generated bug reports are nonsense. It’s not possible to determine the exact share, but Daniel Stenberg knows of more than a hundred good AI assisted reports that led to corrections.

curl (Hacker News):

We will ban you and ridicule you in public if you waste our time on crap reports.

Previously:

Read the whole story
rtreborb
1 hour ago
reply
San Antonio, TX
Share this story
Delete

Always Prepared

1 Share


Read the whole story
rtreborb
20 hours ago
reply
San Antonio, TX
Share this story
Delete

The difference between freezing rain and sleet

1 Share

This infographic was posted by the City of Roanoke (Texas) Police Department on their Facebook thread, with this clarification:
So many people are probably wondering: what is the difference between freezing rain and sleet? I mean, they can’t be that different, right?  Well, we picked something completely at random—and in no way related to police work—to showcase the difference between the two.
Found and posted by John Farrier at Neatorama.
Read the whole story
rtreborb
4 days ago
reply
San Antonio, TX
Share this story
Delete

Tupperware

1 Share


(Thanks, WTM!)
Read the whole story
rtreborb
5 days ago
reply
San Antonio, TX
Share this story
Delete

Widow

1 Share
(via Nag on the Lake
Read the whole story
rtreborb
5 days ago
reply
San Antonio, TX
Share this story
Delete
Next Page of Stories