Image courtesy of BleepingComputer
BleepingComputer reported on security concerns surrounding Moltbot, a viral open-source AI assistant, noting that careless enterprise deployment can lead to API key and credential exposure, corporate data leakage, and prompt injection attacks. Arkose Labs CEO Kevin Gosschalk was cited among security experts — alongside 1Password, Intruder and Hudson Rock — raising alarms about the tool’s risks. The article highlights that 22% of one security firm’s enterprise customers had employees actively using Moltbot without IT approval, and that the assistant runs without sandboxing by default, giving it the same data access as the user.