logoalt Hacker News

reassess_blindtoday at 12:40 PM1 replyview on HN

No, how this works is people sync their Google Calendar and Gmail to have it be their personal assistant, then get their data prompt injected from a malicious “moltbook” post.


Replies

mlrtimetoday at 12:50 PM

Yes, and the agent can go find other sites that instruct the agent to npm install, including moltbook itself.

show 1 reply