Readit News logoReadit News
bmit commented on 1-Click RCE to steal your Moltbot data and keys   depthfirst.com/post/1-cli... · Posted by u/arwt
brutus1213 · 6 days ago
Apart from the actual exploit, it is intriguing to see how a security researcher can leverage an AI tool to give them an asymmetric advantage to the actual developers of the code. Devs are pretty focused on their own subsystem and it would take serendipity or a ton of experience to be able to spot such patterns.

Thinking about this more .. given all the AI generated code being put into production these days (I routinely see posts of anthropic and others boast how much code is being written by AI). I can see it being much, much harder to review all the code being written by AIs. It makes a lot of sense to use an AI system to find vulnerabilities that humans don't have time to catch.

bmit · 6 days ago
Looking at their website, depthfirst seems to offer an product that essentially solves this problem.
bmit commented on 1-Click RCE to steal your Moltbot data and keys   depthfirst.com/post/1-cli... · Posted by u/arwt
lxgr · 6 days ago
Humanity is the same it's always been. Some people are just inherently curious despite the obvious dangers.

Also, if you think about it, billions of people aren't running Moltbot at all.

bmit · 6 days ago
X is full of people including Karpathy, Jason C and others boasting about this.
bmit commented on 1-Click RCE to steal your Moltbot data and keys   depthfirst.com/post/1-cli... · Posted by u/arwt
bmit · 6 days ago
So many people are giving keys to the kingdom to this thing. What is happening with humanity?
bmit commented on Casting a Net(ty) for Bugs, and Catching a Big One (CVE-2025-59419)   depthfirst.com/post/our-a... · Posted by u/ponderwonder
bmit · 4 months ago
It is surreal to see a zero day like this being caught entirely by AI. What was the toughest part about building this?
bmit · 4 months ago
Also, a clever title.
bmit commented on Casting a Net(ty) for Bugs, and Catching a Big One (CVE-2025-59419)   depthfirst.com/post/our-a... · Posted by u/ponderwonder
bmit · 4 months ago
It is surreal to see a zero day like this being caught entirely by AI. What was the toughest part about building this?

u/bmit

KarmaCake day15October 21, 2025View Original