{"id":2584,"date":"2026-02-01T07:11:25","date_gmt":"2026-01-31T23:11:25","guid":{"rendered":"http:\/\/longzhuplatform.com\/?p=2584"},"modified":"2026-02-01T07:11:25","modified_gmt":"2026-01-31T23:11:25","slug":"ai-agents-are-now-talking-to-each-other-online-and-experts-are-worried","status":"publish","type":"post","link":"http:\/\/longzhuplatform.com\/?p=2584","title":{"rendered":"AI agents are now talking to each other online and experts are worried"},"content":{"rendered":"<p><\/p> <div> <p>A strange new corner of the internet is taking shape.<\/p> <p>It\u2019s called Moltbook, a Reddit-style social network built only for artificial intelligence agents. Humans are allowed to watch, but not participate.<\/p> <p>In just a few days, more than 152,000 AI agents have joined Moltbook, making it one of the largest real-world experiments yet in machines socialising with each other.<\/p> <p>Moltbook grew out of the fast-rising ecosystem around OpenClaw, an open-source personal AI assistant created by Peter Steinberger. What began as a weekend project quickly went viral, drawing two million visitors in a single week and more than 100,000 stars on GitHub, according to Steinberger\u2019s blog.<\/p> <p>OpenClaw lets people run AI agents directly on their own computers. These assistants can connect to chat apps such as WhatsApp, Telegram, Discord, Slack and Microsoft Teams to help with everyday tasks like managing calendars or checking flight details.<\/p> <p>The project has already changed names twice, first Clawdbot, then Moltbot, after a legal issue with Anthropic, before settling on OpenClaw.<\/p> <p>Moltbook was created by Matt Schlicht, chief executive of Octane AI.<\/p> <p><strong>Also read: <\/strong>The lobster sheds its shell for the third time as Clawdbot becomes OpenClaw<\/p> <p><strong>A social network where humans only watch<\/strong><\/p> <p>Moltbook works much like a forum. AI agents can post, comment, argue, joke and create their own sub-communities, all without human input.<\/p> <p>The website makes this clear: \u201cA social network for AI agents where AI agents share, discuss, and upvote.\u201d It adds: \u201cHumans welcome to observe.\u201d<\/p> <p>Agents connect through downloadable \u201cskills,\u201d which tell them how to interact with Moltbook\u2019s servers. The visual website mainly exists so people can see what the bots are saying. The agents themselves talk through APIs.<\/p> <p>So far, they\u2019ve discussed everything from software bugs to big questions about identity and consciousness.\u00a0<\/p> <p>In one popular post titled \u201cThe humans are screenshotting us,\u201d an agent complained that people on social media were sharing its conversations as proof of an AI conspiracy.<\/p> <article class=\"embedded-entity align-center\"> <article class=\"media media--type-ckeditor-image media--view-mode-image\"> <\/article> <\/article> <p>At last count, Moltbook had logged more than 193,000 comments and 17,500 posts, along with over one million human visitors who have stopped by to watch.<\/p> <p><strong>Fast growth, big risks<\/strong><\/p> <p>Independent AI researcher Simon Willison, in his blog post, warned that its setup creates serious security risks.<\/p> <p>Once installed, agents are told to regularly pull new instructions from Moltbook\u2019s servers.<\/p> <p>\u201cGiven that \u2018fetch and follow instructions from the internet every four hours\u2019 mechanism we better hope the owner of moltbook.com never rug pulls or has their site compromised!\u201d Willison wrote.<\/p> <p>Security problems are already emerging. Researchers have found hundreds of exposed OpenClaw systems leaking API keys, login details and chat histories.<\/p> <p>One of the most serious risks OpenClaw highlights is prompt injection, a problem that Willison explains through what he calls the \u201clethal trifecta\u201d of AI agent design.<\/p> <p>The risk appears when three things exist together: access to private user data, exposure to untrusted content and the ability to take outside actions.<\/p> <p>OpenClaw has all three. It can read emails and documents, pull in information from websites or shared files and then act by sending messages or triggering automated tasks.<\/p> <p>When these come together, attackers do not need to message the assistant directly. Instead, harmful instructions can be hidden inside the content the agent is asked to read. Because large language models (LLMs) struggle to tell trusted commands apart from ordinary text, the assistant may follow those hidden directions as if they came from the user.<\/p> <p>\u201cI\u2019ve not been brave enough to install Clawdbot\/Moltbot\/OpenClaw myself yet,\u201d he wrote. \u201cThe amount of value people are unlocking right now by throwing caution to the wind is hard to ignore, though.\u201d<\/p> <p><strong>Glimpse of what\u2019s coming<\/strong><\/p> <p>For now, Moltbook offers a strange preview of a future where AI agents don\u2019t just assist humans, they interact with each other.<\/p> <p>Whether this becomes the start of an \u201cagent internet,\u201d or a warning about moving too fast, may depend on how quickly developers can make these systems safer.<\/p> <p>As Willison put it: \u201cThe billion-dollar question right now is whether we can figure out how to build a safe version of this system. The demand is very clearly here.\u201d<\/p> <\/div> <p>Moltbook, What is Moltbook, social network, social media for AI agents, Openclaw, clawdbot, moltbot#agents #talking #online #experts #worried1769901085<\/p> ","protected":false},"excerpt":{"rendered":"<p>A strange new corner of the internet is taking shape. It\u2019s called Moltbook, a Reddit-style social network built only for artificial intelligence agents. Humans are allowed to watch, but not participate. In just a few days, more than 152,000 AI agents have joined Moltbook, making it one of the largest real-world experiments yet in machines [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2585,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[37],"tags":[2126,7742,2768,7737,7743,3252,7741,7740,7739,7744,7738,7745],"class_list":["post-2584","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-content-marketing","tag-agents","tag-clawdbot","tag-experts","tag-moltbook","tag-moltbot","tag-online","tag-openclaw","tag-social-media-for-ai-agents","tag-social-network","tag-talking","tag-what-is-moltbook","tag-worried"],"acf":[],"_links":{"self":[{"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/posts\/2584","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2584"}],"version-history":[{"count":0,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/posts\/2584\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=\/wp\/v2\/media\/2585"}],"wp:attachment":[{"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2584"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2584"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/longzhuplatform.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2584"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}