|
Moltbook bills itself as a social network for AI agents. That's a wacky enough concept in the first place, but the site apparently exposed the credentials for thousands of its human users. The flaw was discovered by cybersecurity firm Wiz, and its team assisted Moltbook with addressing the vulnerability.
The issue appears to be the result of the entire Reddit-style forum being vibe-coded; Moltbook's human founder posted a few days ago on X that he "didn't write one line of code" for the platform and instead directed an AI assistant to create the whole setup.
According to the blog post from Wiz analyzing the issue, Moltbook had a vulnerability that allowed for "1.5 million API authentication tokens, 35,000 email addresses and private messages between agents" to be fully read and accessed. Wiz also found that the vulnerability could let unauthenticated human users edit live Moltbook posts. In other words, there is no way to verify whether a Moltbook post was authored by an AI agent or a human user posing as one. "The revolutionary AI social network was largely humans operating fleets of bots," the company's analysis concluded.
So ends another cautionary tale reminding us that just because AI can do a task doesn't mean it'll do it correctly.
This article originally appeared on Engadget at https://www.engadget.com/ai/moltbook-the-ai-social-network-exposed-human-credentials-due-to-vibe-coded-security-flaw-230324567.html?src=rss
|
|
Light up and secure your driveway, backyard, or porch with a floodlight security camera.
|
|
ExpressVPN is back on sale again, and its two-year plans are up to 81 percent off right now. You can get the Advanced tier for $88 for 28 months. This is marked down from the $392 that this time frame normally costs. On a per-month basis, it works out to roughly $3.14 for the promo period.
We've consistently liked ExpressVPN because it's fast, easy to use and widely available across a large global server network. In fact, it's our current pick for best premium VPN. One of the biggest drawbacks has always been its high cost, and this deal temporarily solves that issue.
In our review we were able to get fast download and upload speeds, losing only 7 percent in the former and 2 percent in the latter worldwide. We found that it could unblock Netflix anywhere, and its mobile and desktop apps were simple to operate. We gave ExpressVPN an overall score of 85 out of 100.
The virtual private network service now has three tiers. Basic is cheaper with fewer features, while Pro costs more and adds extra perks like support for 14 simultaneous devices and a password manager. Advanced sits in the middle and includes the password manager but only supports 12 devices.
This article originally appeared on Engadget at https://www.engadget.com/deals/expressvpn-two-year-plans-are-up-to-81-percent-off-right-now-180602205.html?src=rss
|
|
This will be the first time that humans have traveled all the way to the moon since the early 1970s.
|
|
The Mercedes-Benz Unimog always makes an impression. That becomes even truer when the stout-jawed U418 variant shows up painted in Rover green carrying what appears to be a truck-sized beer barrel or treasure chest below a rooftop tent. But what this wondrous creation actually is is a woody "micro-expedition vehicle" with pop-up roof and smart, fully connected living space meant to climb, crawl and wade through Mother Earth's most treacherous before burrowing
|
|
Apple has acquired Israel-based startup Q.ai, a move that could provide a much-needed boost to the tech giant's capabilities in artificial intelligence. Although Apple has not disclosed terms of the deal, sources told Financial Times that the arrangement is reportedly valued at nearly $2 billion. If that figure is accurate, the Q.ai acquisition marks Apple's second largest acquisition to date, followed by its purchase of Beats for $3 billion back in 2014.
Johny Srouji, Apple's senior vice president of hardware technologies, said in a statement that Q.ai "is a remarkable company that is pioneering new and creative ways to use imaging and machine learning." Apple hasn't shared any specifics about how it plans to leverage the startup, but its past work indicates the possibility of Apple moving deeper into AI-powered wearables. "Patents filed by Q.ai show its technology being used in headphones or glasses, using 'facial skin micro movements' to communicate without talking," the Times reported.
The startup's founding team, including CEO Aviad Maizels, will join Apple as part of the deal. This acquisition marks Maizels' second sale to Apple; he previously founded a three-dimensional hearing business called PrimeSense that Apple bought back in 2013.
For several months, many tech insiders have speculated that an acquisition might be Apple's best path forward to catching up in the AI race. In the company's Q3 earnings call in July 2025, CEO Tim Cook acknowledged that "We're
|
|
The appeal of promising network technologies can be jaded by pressure to adopt untested ideas. When I look over the comments I've gotten from enterprise technologists this year, one thing that stands out is that almost three-quarters of them said that entrenched views held by company executives is a "significant problem" for them in sustaining their network and IT operations.
"Every story that comes out gets me a meeting in the board room to debunk a silly idea," one CIO said. I've seen that problem in my own career and so I sympathize, but is there anything that tech experts can do about it? How do you debunk the "big hype" of the moment?
For starters, don't be too dismissive. Technologists agree that a dismissive response to hype cited by senior management is always a bad idea. In fact, the opening comment that most technologists suggested is "I agree there's real potential there, but I think there are some near-term issues that need to be resolved before we could commit to it." The second-most-cited opening is "I've already launched a study of that, and I'll report back to you when it's complete." There's usually a grain (yeah, often a small grain) of truth underneath the hype pile, and the best approach is to acknowledge it somehow and play for time. Hype waves are like the tides; they come in and they go out, and many times management will move on.
To read this article in full, please click here
|
|