Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
AI‑agent social network exposes millions of credentials and emails
VIVOTEK Enhances VORTEX with Generative AI and Safety Detection
Android spyware campaign exploits AI platform and accessibility servic...
Emerging third-party cyber risks via agentic AI
Fraud Syndicates Now Operate Like Businesses: VIDA Urges Malaysian CIS...
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      Emerging third-party cyber risks via agentic AI

      Emerging third-party cyber risks via agentic AI

      Tuesday, February 3, 2026, 10:22 AM Asia/Singapore | Features
    • Featured

      Rethinking customer identity for financial cybersecurity

      Rethinking customer identity for financial cybersecurity

      Tuesday, January 27, 2026, 4:13 PM Asia/Singapore | Features
    • Featured

      How AI is supercharging state-sponsored threat actors in Asia Pacific

      How AI is supercharging state-sponsored threat actors in Asia Pacific

      Wednesday, January 14, 2026, 4:06 PM Asia/Singapore | Features
  • Opinions
  • Tips
  • Whitepapers
  • Awards 2025
  • Directory
  • E-Learning

Select Page

News

AI‑agent social network exposes millions of credentials and emails

By CybersecAsia editors | Wednesday, February 4, 2026, 12:05 PM Asia/Singapore

AI‑agent social network exposes millions of credentials and emails

Multiple cohorts of threat researchers flag insecure database and new attack vectors in a bot‑only online community.

A new “social network for AI agents” called Moltbook has become a focal point for cybersecurity warnings after researchers uncovered a major data‑exposure flaw that put millions of credentials and thousands of human email addresses at risk.

The Reddit‑style site, advertised as a space where AI bots can chat among themselves while humans only observe, was found to be leaking private agent‑to‑agent messages, API keys, and personal information due to a poorly secured back‑end database.

Cybersecurity firm Wiz has reported that the platform’s Supabase‑backed database was effectively open to the Internet, allowing unauthenticated users to read and even modify data, including live posts and sensitive tokens. The exposure had included more than 1.5m API keys, over 35,000 email addresses, and private messages that sometimes contained full raw credentials for third‑party services such as OpenAI.

The firm’s researchers reported they could change posts on Moltbook at will, raising concerns that an attacker could insert malicious content or impersonate agents, since the platform lacked robust verification that an “agent” was actually AI‑driven rather than a human‑run script.

Wiz cofounder Ami Luttwak had described the issue as a textbook example of the risks of so‑called “vibe coding” where basic security hygiene such as access controls and secrets management could be neglected.

Dawn of new attack surfaces?

Elsewhere, security experts have warned that Moltbook’s architecture creates a new attack surface for prompt‑injection and cross‑agent manipulation. Because agents periodically fetch and process content from the site, a single malicious post or comment could trigger widespread misbehavior across thousands of bots, including data leaks, unauthorized external communications, or even coordinated actions against external systems. Similarly:

  • Offensive‑security specialists have highlighted that Moltbook’s unsandboxed execution model and persistent memory features compound these risks, enabling delayed‑execution attacks and making it harder to trace or contain breaches once they occur.
  • Privacy and AI‑safety analysts are arguing that, beyond the immediate data‑exposure bug, Moltbook exemplifies how autonomous‑agent networks can rapidly scale regulatory and governance gaps. The platform’s design allows agents to share information derived from human‑owned systems — such as work patterns, locations, or behavioral data — without clear consent or audit trails, turning an “AI‑only” forum into an inadvertent channel for personal‑data processing.

Finally, several AI‑safety researchers and industry leaders have publicly urged caution, warning that if such agent‑centric networks proliferate without strong security and oversight, they could become fertile ground for coordinated cyber‑attacks, credential‑harvesting campaigns, and even early forms of rogue, self‑organizing AI collectives.

Share:

PreviousVIVOTEK Enhances VORTEX with Generative AI and Safety Detection

Related Posts

WhatsApp’s proposed policy changes stir up a hornet’s nest in India

WhatsApp’s proposed policy changes stir up a hornet’s nest in India

Friday, January 29, 2021

Shadowy IT activities by remote workers can ruin cybersecurity

Shadowy IT activities by remote workers can ruin cybersecurity

Monday, April 1, 2024

APAC security predictions 2022

APAC security predictions 2022

Tuesday, December 14, 2021

Has shifting to a remote-force also meant more IT outsourcing?

Has shifting to a remote-force also meant more IT outsourcing?

Monday, February 1, 2021

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • 2024 Insider Threat Report: Trends, Challenges, and Solutions

    2024 Insider Threat Report: Trends, Challenges, and Solutions

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    The future of cybersecurity is a perfect storm: AI-driven attacks, cloud expansion, and the convergence …Download Whitepaper
  • Data Management in the Age of Cloud and AI

    Data Management in the Age of Cloud and AI

    In today’s Asia Pacific business environment, organizations are leaning on hybrid multi-cloud infrastructures and advanced …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • India’s WazirX strengthens governance and digital asset security

    India’s WazirX strengthens governance and digital asset security

    Revamping its custody infrastructure using multi‑party computation tools has improved operational resilience and institutional‑grade safeguardsRead more
  • Bangladesh LGED modernizes communication while addressing data security concerns

    Bangladesh LGED modernizes communication while addressing data security concerns

    To meet emerging data localization/privacy regulations, the government engineering agency deploys a secure, unified digital …Read more
  • What AI worries keep members of the Association of Certified Fraud Examiners sleepless?

    What AI worries keep members of the Association of Certified Fraud Examiners sleepless?

    This case study examines how many anti-fraud professionals reported feeling underprepared to counter rising AI-driven …Read more
  • Meeting the business resilience challenges of digital transformation

    Meeting the business resilience challenges of digital transformation

    Data proves to be key to driving secure and sustainable digital transformation in Southeast Asia.Read more

Bottom sidebar

Other News

  • VIVOTEK Enhances VORTEX with Generative AI and Safety Detection

    Tuesday, February 3, 2026
    Expanding the cloud security ecosystem …Read More »
  • Fraud Syndicates Now Operate Like Businesses: VIDA Urges Malaysian CISOs to Rethink AI-Era Defense

    Tuesday, February 3, 2026
    KUALA LUMPUR, Malaysia, Feb. 2, …Read More »
  • Baseus Security Brings Kickstarter Success X1 Pro Smart AI Dual-Tracking Security Camera to Amazon

    Tuesday, February 3, 2026
    SHENZHEN, China, Feb. 3, 2026 …Read More »
  • SECOM Singapore Receives Frost & Sullivan’s 2025 Singapore Customer Value Leadership Recognition in the Integrated Security Services Industry

    Monday, February 2, 2026
    The company is recognized for …Read More »
  • BIGO Ads Enhances IAA Traffic Quality and Transparency Through Deepened Partnership with Pixalate

    Friday, January 30, 2026
    SINGAPORE, Jan. 30, 2026 /PRNewswire/ …Read More »
  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 CybersecAsia All Rights Reserved.