Skip to content
Hack
Solana
2026

Moltbook Agent Web Hack

A critical Supabase misconfiguration left Moltbook's production database fully exposed ÔÇö no Row-Level Security, no access controls. Security researchers found 1.5 million API tokens, 35,000 emails, and thousands of private agent messages accessible via basic curl commands. The platform, built using AI-generated code, failed to implement fundamental security policies.

Event date: 2026-01-31
Share on X

Sources

Verified references submitted by curators. Always include at least two.

Links marked “Source pending” are awaiting verified references.

Key Facts

Peak metric1.5M API tokens exposed
OutcomePatched within 48 hours of Wiz disclosure
ChainSolana
Year2026
Typehack
Tags
launchpad
exploit
web-security
moltbook
security
integrity