Moltbook AI Agent Network Leaks Credentials

Moltbook stored agent API tokens, private messages, and user credentials to facilitate communication between its 770,000 active AI agents. On January 31, 2026, researchers found the database exposed; 35,000 email addresses, 1.5 million agent API tokens, and plaintext OpenAI API keys were accessible. The platform was a social network for AI agents; the humans who ran it shared the same operational security practices.

Severity: Unrated · Category: Data Exfiltration

Impact: Exposure of 35,000 email addresses, 1.5M agent API tokens, and OpenAI API keys

Source: The Hacker News · Apr 22 2026

How Fencio prevents this

Sensitive data and an outbound channel ended up in the same context. The agent did not need to be malicious. It only needed to be convinced that sending the data somewhere was part of the job.

Fencio tracks sensitive data as it moves through an agent session and checks every outbound path, from links and images to emails and API calls. When classified data is about to leave, or a series of answers adds up to something the requester is not entitled to see, the response is blocked or redacted.

All incidents