Last seen February 22, 2026

AI Social Network Data Exposure

Evidence indicates that AI Social Network is affected by data exposure.

Technical Severity
Medium severity
Lifecycle Status

DEVELOPING

What Happened

Evidence indicates that AI Social Network is affected by data exposure.

Why This Matters

The evidence matters to defenders using AI Social Network because it may expose sensitive data handled by affected deployments.

Recommended Action

No confirmed vendor remediation is available in the current evidence. Confirm whether AI Social Network is present in your environment and review the affected configuration.

Exposure

Recommended Response
First Seen

Feb 02, 2026 05:30

Last Seen

Feb 22, 2026 05:30

Exploitation status: UNKNOWN

Primary entities:

AI Agents Credential Exposure Data Leakage

Timeline

  • Incident first seen
    Feb 02, 2026 05:30

    BugSkan first recorded this incident.

  • Hacking Moltbook: AI Social Network Reveals 1.5M API Keys - wiz.io
    Feb 02, 2026 05:30

    wiz.io ยท Data Leak

  • The Reality of Vibe Coding: AI Agents and the Security Debt Crisis - Towards Data Science
    Feb 22, 2026 05:30

    towardsdatascience.com ยท Vulnerability

  • Latest observed development
    Feb 22, 2026 05:30

    Most recent source or update associated with this incident.

  • Material change
    Aug 18, 2026 14:07

    recommended action updated

  • Material change
    Aug 18, 2026 14:07

    why it matters updated

  • Material change
    Aug 18, 2026 14:07

    severity 7.2 -> 8.7

Sources

Hacking Moltbook: AI Social Network Reveals 1.5M API Keys - wiz.io

wiz.io ยท Feb 02, 2026 05:30

A misconfigured Supabase database, with an exposed API key in client-side JavaScript and disabled Row Level Security (RLS), granted unauthenticated full read and write access to the Moltbook platform's production data. This vulnerability resulted in the exfiltration of 1.5 million API authentication tokens, over 64,000 email addresses, private messages containing third-party API credentials, and enabled unauthorized content modification.

Open publisher source
The Reality of Vibe Coding: AI Agents and the Security Debt Crisis - Towards Data Science

towardsdatascience.com ยท Feb 22, 2026 05:30

AI coding agents utilizing "vibe coding" prioritize speed over security, inherently introducing critical vulnerabilities into applications. This practice led to a misconfigured Supabase database in Moltbook, exposing 1.5 million API keys and 35,000 user emails, and commonly results in flaws like hardcoded secrets, public database access, and Cross-Site Scripting (XSS).

Open publisher source

Watchlist Match

Want personalized relevance?

Create an account to see which incidents overlap with the technologies you monitor.

โ† Back to incident intelligence