Remix.run Logo
achillean 13 hours ago

Already seeing some of the new Moltbot deployments exposed to the Internet: https://www.shodan.io/search/report?query=http.favicon.hash%...

rahimnathwani 12 hours ago | parent | next [-]

Maybe those folks buying Mac Minis to host at home weren't so silly after all. The exposed ones are almost all hosted on VPSs which, by design, have publicly-routable IP addresses.

But anyway I think connecting to a Clawdbot instance requires pairing unless you're coming from localhost: https://docs.molt.bot/start/pairing

paxys 9 hours ago | parent [-]

The silly part is buying a $600 Mac mini when any $100 NUC or $50 raspberry pi or any cheap mini PC off of eBay will do the job exactly the same.

deaux 7 hours ago | parent | next [-]

The silly part is buying a $50 raspberry pi, then storage and memory and so on, when a $200 used M1 Mac mini is plug-and-play.

cbdevidal 6 hours ago | parent [-]

The silly part is buying a $200 used M1 Mac mini, when a $5 Arduino clone can be used to blink an LED.

Oh wait—that’s the silly part

rahimnathwani 9 hours ago | parent | prev [-]

If you want iMessage you still need an always-on Mac, whether that's the main moltbot gateway, or the MacOS app running in 'node mode' to allow a moltbot gateway to use it to send/receive iMessages.

noahjk 3 hours ago | parent | next [-]

I noticed when I was reading Federico Viticci's post about it that he was using telegram, which has much better support for "markdown"-y rendering, which looks a lot nicer than iMessage. And then I thought to myself, why would iMessage actually matter? The only other use-case would be interacting with texts, but almost anyone can tell when someone is using an LLM to text - I feel like our texting styles are so personal, and what is there even to gain from using an LLM just with text messages? So is it even worth it to run on a Mac?

Fnoord 8 hours ago | parent | prev [-]

> need an always-on Mac

Not really, you can emulate macOS on any Linux/x86-64.

But it is actually a good point to get a Mac Mini instead of a NUC. The Mac Mini is going to deliver better performance per Watt.

aschobel 6 hours ago | parent [-]

Can you really register iMessage on an emulated MacOS these days? I'd love to learn more, the AIs I asked say it doesn't seem possible in VMs anymore.

Fnoord 5 hours ago | parent [-]

I think you need to register on a real Mac (2 of 3 of my MBPs use OCLP), but then can use an emulated one if you add it to your Apple account. Either way, I don't recommend to use a protocol behind such a moat. Probably better to use Signal or Threema.

swah 9 hours ago | parent | prev | next [-]

Wasn't aware about this favicon trick, nice :)

achillean 9 hours ago | parent [-]

FYI we released a tool to calculate a bunch of these types of hashes: https://book.shodan.io/command-line-tools/shodan-hash/

More info about the favicon hashing technique: https://blog.shodan.io/deep-dive-http-favicon/

rvz 9 hours ago | parent | prev [-]

Like I said before [0] infosec professionals are going to have a great time collecting so much money from vibe coders and crypto bros deploying software they openly admit that they have no idea what it does.

If you are very clever there is a chance that someone connected Moltbot with a crypto wallet and, well...

A opportunity awaits for someone to find a >$1M treasure and cut a deal with the victim.

[0] https://news.ycombinator.com/item?id=46774750