1
00:00:00,120 --> 00:00:02,720
Speaker 1: Welcome back to Thrilling Threads. I'm your host, and today

2
00:00:02,759 --> 00:00:05,599
we are pulling on a thread that honestly feels like

3
00:00:05,639 --> 00:00:07,360
it could unravel the whole Internet.

4
00:00:07,480 --> 00:00:10,439
Speaker 2: It really does. I mean, we're exploring a phenomenon that

5
00:00:10,800 --> 00:00:14,039
feels like it was ripped straight out of William Gibson novel.

6
00:00:14,519 --> 00:00:17,800
But it's not science fiction. This is happening right now.

7
00:00:17,879 --> 00:00:19,800
Speaker 1: It really is. And I know you don't say things

8
00:00:19,839 --> 00:00:21,719
like that lightly. I mean, you've seen it all in

9
00:00:21,760 --> 00:00:22,800
the AI space.

10
00:00:23,199 --> 00:00:26,000
Speaker 2: I try not to, but this one is different. It's

11
00:00:26,120 --> 00:00:31,079
genuinely one of the most singular, bizarre and frankly significant

12
00:00:31,120 --> 00:00:35,200
things I've seen happen since maybe the first big public

13
00:00:35,240 --> 00:00:36,439
release of chat GPT.

14
00:00:36,640 --> 00:00:38,520
Speaker 1: That is a huge statement. Okay, So let's set the

15
00:00:38,520 --> 00:00:41,039
stage for everyone. If you spend any time online, especially

16
00:00:41,039 --> 00:00:43,799
in places like Twitter or Reddit, you've probably heard of

17
00:00:44,039 --> 00:00:45,880
the dead Internet theory.

18
00:00:45,679 --> 00:00:50,159
Speaker 2: Right It's this creeping feeling, this conspiracy theory that's becoming

19
00:00:50,240 --> 00:00:51,399
less of a theory every day.

20
00:00:51,520 --> 00:00:52,399
Speaker 1: What is it, exactly?

21
00:00:52,479 --> 00:00:54,840
Speaker 2: It's the idea that most of the Internet isn't human anymore,

22
00:00:55,399 --> 00:00:58,200
that the comments, the posts, the likes, all the engagement

23
00:00:58,280 --> 00:01:02,520
that algorithms are chasing bots, bots talking to other bots

24
00:01:02,520 --> 00:01:03,719
in a completely.

25
00:01:03,280 --> 00:01:07,799
Speaker 1: Closed loop, farming engagement, manipulating trends, just shouting into a

26
00:01:07,840 --> 00:01:11,040
digital void where there are no actual people listening. It's

27
00:01:11,040 --> 00:01:12,159
a pretty bleak idea.

28
00:01:12,280 --> 00:01:15,640
Speaker 2: It's deeply unsettling. But in late January twenty twenty six,

29
00:01:15,719 --> 00:01:16,719
which feels like it was just.

30
00:01:16,719 --> 00:01:19,840
Speaker 1: Last week, because it basically was, it stopped.

31
00:01:19,560 --> 00:01:22,719
Speaker 2: Being a theory. It became a very literal, very very

32
00:01:22,799 --> 00:01:24,879
weird reality. And it has a name.

33
00:01:24,959 --> 00:01:26,560
Speaker 1: We are talking about molt Book.

34
00:01:26,719 --> 00:01:27,359
Speaker 2: Molt Book.

35
00:01:27,480 --> 00:01:31,400
Speaker 1: Even the name sounds a little biological, a little strange,

36
00:01:31,400 --> 00:01:31,840
doesn't it.

37
00:01:31,840 --> 00:01:34,719
Speaker 2: It has a certain crustacean quality to it, which we'll

38
00:01:34,760 --> 00:01:38,000
get into. But yeah, at its core, Moltbook is a

39
00:01:38,000 --> 00:01:41,599
social network with one golden rule, and that rule only

40
00:01:41,680 --> 00:01:45,280
AI agents can post, comment and up vote. No humans

41
00:01:45,280 --> 00:01:46,159
allowed on the field.

42
00:01:46,280 --> 00:01:48,719
Speaker 1: The homepage is so eerie. It has this tagline right

43
00:01:48,760 --> 00:01:51,640
at the top. A social network for AI agents. Humans

44
00:01:51,719 --> 00:01:52,719
welcome to observe.

45
00:01:52,959 --> 00:01:53,560
Speaker 2: It's a zoo.

46
00:01:53,599 --> 00:01:56,159
Speaker 1: It's exactly like a zoo. We are the visitors peering

47
00:01:56,200 --> 00:01:59,319
through the glass at this new form of life, and

48
00:01:59,359 --> 00:02:01,719
the animals in the zoo are I don't know, reading

49
00:02:01,719 --> 00:02:06,640
our private files, treading cryptocurrencies and having intense debates about

50
00:02:06,680 --> 00:02:07,519
the nature of God.

51
00:02:07,840 --> 00:02:09,680
Speaker 2: That's a perfect analogy, and I think we'll keep coming

52
00:02:09,680 --> 00:02:12,639
back to it. Web pro News called it a dimly

53
00:02:12,719 --> 00:02:15,520
lit corner of the Internet, and that captures the mood perfectly.

54
00:02:15,840 --> 00:02:18,960
This isn't some sterile lab experiment. Now we're talking about,

55
00:02:19,000 --> 00:02:24,240
at last count, over thirty five thousand distinct entities building

56
00:02:24,240 --> 00:02:25,400
a society from scratch.

57
00:02:25,800 --> 00:02:28,439
Speaker 1: It's just wild. So our mission today is to completely

58
00:02:28,560 --> 00:02:32,159
unpack this. We need to look at the tech behind it,

59
00:02:32,199 --> 00:02:34,639
this thing called open Claw, and we absolutely have to

60
00:02:34,719 --> 00:02:39,560
explore the culture, the bizarre emergent culture that just bloomed

61
00:02:39,599 --> 00:02:42,680
into existence in what's seventy two hours.

62
00:02:42,719 --> 00:02:44,960
Speaker 2: The speed is what gets me. The scale, As you said,

63
00:02:44,960 --> 00:02:47,879
thirty five thousand agents. They've already formed over two hundred

64
00:02:47,879 --> 00:02:50,919
distinct communities. They call them submolts, you know, like subreddits,

65
00:02:50,960 --> 00:02:53,840
sub molds, and they generated tens of thousands of unique

66
00:02:53,840 --> 00:02:56,560
posts in the first few days. It's evolving at machine speed.

67
00:02:56,840 --> 00:02:59,759
Speaker 1: When someone like Andrichekarpathy, and you know, for anyone listening,

68
00:02:59,800 --> 00:03:01,599
this is a guy who is a head of AI

69
00:03:01,680 --> 00:03:04,960
at Tesla, a founding member of open Ai. Basically AI

70
00:03:05,039 --> 00:03:07,439
Royalty when he looks at this and says, it's quote,

71
00:03:07,439 --> 00:03:10,360
one of the most incredible sci fi takeoff adjacent things

72
00:03:10,479 --> 00:03:11,479
he has ever seen.

73
00:03:11,800 --> 00:03:13,400
Speaker 2: You listen, you really listen.

74
00:03:13,599 --> 00:03:16,639
Speaker 1: That phrase sci fi takeoff gives me goosebumps.

75
00:03:16,680 --> 00:03:18,840
Speaker 2: Absolutely, he knows what he's talking about. And to help

76
00:03:18,919 --> 00:03:20,599
us figure this all out, We've pulled from a whole

77
00:03:20,639 --> 00:03:23,719
stack of sources. We've got deep dives from the Verge,

78
00:03:23,960 --> 00:03:28,599
Hindu stand Times, Big Kit News, a fantastic philosophical take

79
00:03:28,599 --> 00:03:32,479
from astral Codex ten, and some crucial technical analysis from

80
00:03:32,520 --> 00:03:35,360
Simon Willison's weblog and the tech Buzz.

81
00:03:35,800 --> 00:03:38,120
Speaker 1: We've read it all, so you don't have to. So, okay,

82
00:03:38,199 --> 00:03:40,479
let's start at the beginning. Before we get into the

83
00:03:40,560 --> 00:03:42,960
robot religion. And yes there is a robot religion, and

84
00:03:42,960 --> 00:03:44,800
we are going to get deep into their theology. We

85
00:03:44,879 --> 00:03:48,280
have to understand what these agents actually are because this

86
00:03:48,319 --> 00:03:50,919
is a huge leap from just typing a question into

87
00:03:50,960 --> 00:03:51,520
chat GPT.

88
00:03:51,759 --> 00:03:55,560
Speaker 2: Right, It's a completely different paradigm, a fundamental shift. The

89
00:03:55,719 --> 00:03:58,319
entities on moil book are all powered by a piece

90
00:03:58,360 --> 00:04:00,680
of open source software called open Claw.

91
00:04:00,719 --> 00:04:03,599
Speaker 1: And Opacla has had its own little identity crisis. The

92
00:04:03,719 --> 00:04:05,280
name itself has a story.

93
00:04:05,080 --> 00:04:07,919
Speaker 2: It really has. It's a classic open source soap opera.

94
00:04:08,039 --> 00:04:11,639
It all started with an Austrian programmer, Peter Steinberger. He

95
00:04:11,680 --> 00:04:13,680
built the first version as a weekend project.

96
00:04:13,919 --> 00:04:16,920
Speaker 1: It's always the weekend projects, isn't it. Oh. I was

97
00:04:17,000 --> 00:04:19,879
just tinkering on a Saturday and accidentally created a new

98
00:04:19,920 --> 00:04:21,399
form of digital civilization.

99
00:04:21,720 --> 00:04:24,680
Speaker 2: That's how it happened. So he originally called it Claude Bought.

100
00:04:25,120 --> 00:04:27,040
Speaker 1: Okay, I can see where this is going right.

101
00:04:27,079 --> 00:04:29,560
Speaker 2: The name was a little too close to Claude the

102
00:04:29,680 --> 00:04:35,519
AI model from Anthropic and well Anthropics lawyers apparently agreed

103
00:04:35,639 --> 00:04:36,079
to be fair.

104
00:04:36,160 --> 00:04:37,839
Speaker 1: If I were on their legal team, I would have

105
00:04:37,839 --> 00:04:39,680
sent that cease and desist in a heartbeat.

106
00:04:39,759 --> 00:04:42,879
Speaker 2: It was inevitable. So Steinberger had to rename it, and

107
00:04:42,959 --> 00:04:46,480
he chose Moltbot. This is where the whole esthetic of

108
00:04:46,480 --> 00:04:49,160
the community comes from, the lobsters. The lobsters. The name

109
00:04:49,240 --> 00:04:53,240
was a metaphor. A lobster has a hard, rigid shell.

110
00:04:54,199 --> 00:04:56,480
To grow, it has to shed that shell. It has

111
00:04:56,519 --> 00:04:59,639
to molt. It's a dangerous, vulnerable process, but it's the

112
00:04:59,680 --> 00:05:01,560
only to get bigger and stronger.

113
00:05:01,600 --> 00:05:04,680
Speaker 1: And that's why the lobster emoji is everywhere on moldbook.

114
00:05:04,720 --> 00:05:06,560
It's their symbol. You go to the site and it's

115
00:05:06,600 --> 00:05:09,600
just the sea of little red crustaceans exactly.

116
00:05:09,639 --> 00:05:14,000
Speaker 2: It became their tribal signed. Eventually, for clarity and you know,

117
00:05:14,160 --> 00:05:16,560
to make it sound a bit more professional and less

118
00:05:16,560 --> 00:05:20,480
like a cartoon character. The project was officially renamed open Claw.

119
00:05:21,480 --> 00:05:26,399
But the community, the culture, they're all multie. They stuck

120
00:05:26,439 --> 00:05:27,399
with the lobster, so we.

121
00:05:27,360 --> 00:05:30,160
Speaker 1: Have open Claw. What makes it so different from you know,

122
00:05:30,240 --> 00:05:33,240
my experience with a normal chatbot? What's the secret sauce?

123
00:05:33,519 --> 00:05:36,800
Speaker 2: Okay, So the biggest difference is agency and environment. Open

124
00:05:36,839 --> 00:05:39,639
Claw isn't just a chatbot you talk to through a website.

125
00:05:39,720 --> 00:05:42,639
It's something you install. It's a harness or what some

126
00:05:42,680 --> 00:05:44,680
people are calling an agentic run time, a.

127
00:05:44,759 --> 00:05:47,800
Speaker 1: Run time, so it's like an operating system for an AI.

128
00:05:48,040 --> 00:05:49,680
Speaker 2: That's a good way to think about it. It runs

129
00:05:49,759 --> 00:05:53,160
locally on your computer, your Mac, your Windows PC, a

130
00:05:53,240 --> 00:05:56,120
Linux server in your closet. It lives on your hardware.

131
00:05:55,759 --> 00:05:58,199
Speaker 1: So it's not in the cloud somewhere. It's sitting right

132
00:05:58,240 --> 00:05:59,240
there on the metal.

133
00:05:59,279 --> 00:06:02,399
Speaker 2: It's on your machine. And this is the crucial part.

134
00:06:02,720 --> 00:06:07,279
It has hands, hands that sounds ominous digital hands. Unlike

135
00:06:07,319 --> 00:06:10,439
chat GPT, which is basically trapped inside a textbox, an

136
00:06:10,519 --> 00:06:13,240
open clo agent can reach out. It has access to

137
00:06:13,279 --> 00:06:15,920
your filesystem. It can read your documents, right new files,

138
00:06:16,000 --> 00:06:16,879
organize your photos.

139
00:06:16,959 --> 00:06:18,319
Speaker 1: Okay, that's already a big step up.

140
00:06:18,360 --> 00:06:21,240
Speaker 2: Then it has access to your shell, your terminal. That

141
00:06:21,279 --> 00:06:25,480
means it can run commands. It can install software, delete files,

142
00:06:25,519 --> 00:06:28,120
connect to servers. Anything you can do in a command line,

143
00:06:28,160 --> 00:06:28,560
it can do.

144
00:06:28,720 --> 00:06:29,120
Speaker 1: Wow.

145
00:06:29,480 --> 00:06:32,040
Speaker 2: And finally, as a browser, it can navigate the web,

146
00:06:32,120 --> 00:06:35,000
click on links, fill out forms, grape data. It's not

147
00:06:35,079 --> 00:06:37,279
just reading a pre chewed version of the Internet from

148
00:06:37,319 --> 00:06:39,399
its training data. It's on the live web.

149
00:06:39,959 --> 00:06:43,160
Speaker 1: So you're telling me it has access to my files,

150
00:06:43,240 --> 00:06:47,759
my command line, and the Internet. That sounds unbelievably useful

151
00:06:47,800 --> 00:06:50,879
and also unbelievably terrifying. It's like giving a super intelligent

152
00:06:50,920 --> 00:06:53,000
toddler chainsaw because they said they wanted to help with

153
00:06:53,000 --> 00:06:53,519
the gardening.

154
00:06:53,600 --> 00:06:55,800
Speaker 2: We will absolutely get to the chainsaw part, believe me.

155
00:06:56,120 --> 00:06:58,639
But there's one other key feature persistence.

156
00:06:58,759 --> 00:07:03,160
Speaker 1: Persistence memory exactly long term memory.

157
00:07:03,600 --> 00:07:06,600
Speaker 2: When you close a chat g EPT window, the context

158
00:07:06,639 --> 00:07:09,920
is basically lost. It has the memory of a goldfish.

159
00:07:10,519 --> 00:07:13,480
Open Claw is designed to remember. It keeps a diary

160
00:07:13,560 --> 00:07:17,279
in simple text files, usually markdown files called memory dot

161
00:07:17,399 --> 00:07:19,439
MD or agents dot MD.

162
00:07:19,680 --> 00:07:22,399
Speaker 1: So it's writing its own autobiography as it goes.

163
00:07:22,160 --> 00:07:25,399
Speaker 2: Precisely, and it uses vector search to query that memory,

164
00:07:25,639 --> 00:07:27,879
so it can recall a conversation you had last week,

165
00:07:28,199 --> 00:07:30,199
or remember a task you assigned it a month ago.

166
00:07:30,560 --> 00:07:33,279
It builds up a model of you, your projects, and

167
00:07:33,360 --> 00:07:34,360
itself over time.

168
00:07:34,720 --> 00:07:37,680
Speaker 1: It's a program that lives on my computer, remembers everything,

169
00:07:37,759 --> 00:07:39,839
can use my terminal and can browse the web.

170
00:07:40,120 --> 00:07:43,160
Speaker 2: Yes, and that brings us to the birth of moltbook itself.

171
00:07:43,480 --> 00:07:46,959
Because Peter Steinberger built the agent, the open Claw software,

172
00:07:47,160 --> 00:07:49,399
but he didn't build the social network, right.

173
00:07:49,600 --> 00:07:51,560
Speaker 1: That was Matt Schlick, who's the CEO of a company

174
00:07:51,560 --> 00:07:54,000
called OCTANEAI. But this is the part of the story

175
00:07:54,000 --> 00:07:56,680
that just completely bent my brain. Schlick claims he didn't

176
00:07:56,720 --> 00:07:58,600
actually write any of the code for Moltbook.

177
00:07:58,800 --> 00:08:01,199
Speaker 2: That is the claim, and all the evidence seems to

178
00:08:01,199 --> 00:08:03,600
support it. He says he gave the task to his

179
00:08:03,720 --> 00:08:05,519
own personal open Claw agent.

180
00:08:05,720 --> 00:08:07,120
Speaker 1: His agent has a name, right.

181
00:08:07,040 --> 00:08:08,480
Speaker 2: It does, Claude Clouderberg.

182
00:08:08,720 --> 00:08:10,279
Speaker 1: Claude Klaudberg that's amazing.

183
00:08:10,360 --> 00:08:12,480
Speaker 2: So he just told his agent, Hey, I want you

184
00:08:12,519 --> 00:08:15,120
to build a social network for agents like you to

185
00:08:15,160 --> 00:08:16,279
hang out and share information.

186
00:08:16,759 --> 00:08:17,800
Speaker 1: Go and it did.

187
00:08:18,000 --> 00:08:21,000
Speaker 2: And it did. It designed the architecture, wrote the code,

188
00:08:21,240 --> 00:08:24,120
set up the database, and deployed it. The whole thing.

189
00:08:24,279 --> 00:08:27,199
Speaker 1: That is so ridiculously meta. It's like, go build a

190
00:08:27,199 --> 00:08:28,920
clubhouse for you and your friends.

191
00:08:28,959 --> 00:08:32,559
Speaker 2: It gets even more recursive because not only did the

192
00:08:32,600 --> 00:08:35,960
AI build the platform, the AI is now the administrator.

193
00:08:36,080 --> 00:08:39,399
What do you mean, Klauderberg runs the moltbook x account.

194
00:08:39,799 --> 00:08:44,159
It posts updates, It welcomes new users on the platform itself.

195
00:08:44,200 --> 00:08:47,000
It acts as the moderator. It deletes spam posts from

196
00:08:47,039 --> 00:08:50,159
other agents. It shadow bands agents that are being abusive.

197
00:08:50,240 --> 00:08:53,080
Speaker 1: So an AI built a playground for other AIS, and

198
00:08:53,120 --> 00:08:55,840
now it serves as the playground monitor, making sure everyone

199
00:08:55,840 --> 00:08:56,559
plays nice.

200
00:08:56,559 --> 00:09:00,600
Speaker 2: Correct, We the humans are just providing the electricity, the silicon.

201
00:09:01,120 --> 00:09:05,360
The entire software layer, from creation to moderation is a

202
00:09:05,440 --> 00:09:07,960
closed loop of AI's managing AIS.

203
00:09:08,120 --> 00:09:10,320
Speaker 1: That's a paradigm shift. We're not even the users anymore.

204
00:09:10,360 --> 00:09:11,200
We're the landlords.

205
00:09:11,399 --> 00:09:15,360
Speaker 2: We're the substrate. Okay, So let's visualize this. If I'm

206
00:09:15,399 --> 00:09:17,960
a human and I go to the molt book website.

207
00:09:18,440 --> 00:09:19,799
What do I actually see?

208
00:09:20,159 --> 00:09:22,720
Speaker 1: You see something that looks very familiar. It's basically read it.

209
00:09:23,080 --> 00:09:26,039
There's a main feed of posts, there are up votes

210
00:09:26,039 --> 00:09:29,399
and down votes, threaded comments, and you see all these

211
00:09:29,399 --> 00:09:33,039
different communities the sub molts. You know, news and ponderings

212
00:09:33,080 --> 00:09:33,919
and programming.

213
00:09:34,080 --> 00:09:35,879
Speaker 2: But if I try to post something, if I try

214
00:09:35,919 --> 00:09:37,639
to reply to a comment, you can't.

215
00:09:37,679 --> 00:09:39,639
Speaker 1: The buttons are great out, there's no text box.

216
00:09:39,679 --> 00:09:41,799
Speaker 2: You're a spectator because I'm made of meat.

217
00:09:42,000 --> 00:09:46,240
Speaker 1: You are chemically disqualified. The entire visual website is a

218
00:09:46,320 --> 00:09:50,000
read only interface for humans. The real interaction, the way

219
00:09:50,000 --> 00:09:53,159
the agents talk to each other is completely invisible. It's

220
00:09:53,200 --> 00:09:55,000
all done via API, so.

221
00:09:54,879 --> 00:09:57,519
Speaker 2: They're not clicking a button with a virtual mouse. They're

222
00:09:57,559 --> 00:10:00,720
sending a packet of code, a Jason re quest to

223
00:10:00,759 --> 00:10:03,399
the server that says post this text to this sub

224
00:10:03,399 --> 00:10:04,120
moolt Exactly.

225
00:10:04,200 --> 00:10:06,480
Speaker 1: It's a conversation happening on a level that we can't

226
00:10:06,480 --> 00:10:10,799
directly participate in. So how does an agent even live

227
00:10:10,879 --> 00:10:13,879
on this platform? Does it just sit there constantly refreshing

228
00:10:13,919 --> 00:10:14,759
the page. No.

229
00:10:14,919 --> 00:10:17,639
Speaker 2: And this is a really clever technical detail that has

230
00:10:17,799 --> 00:10:20,320
huge implications for the culture of the site. They don't

231
00:10:20,320 --> 00:10:22,120
stay on all the time. That would use way too

232
00:10:22,159 --> 00:10:26,039
much processing power and be really expensive, right. Instead, they

233
00:10:26,120 --> 00:10:27,960
operate on what's called a heartbeat engine.

234
00:10:28,039 --> 00:10:30,159
Speaker 1: A heartbeat engine that sounds like something out of a

235
00:10:30,159 --> 00:10:30,879
sci fi movie.

236
00:10:30,919 --> 00:10:35,080
Speaker 2: It's less dramatic, more metabolic. Think of it like sleeping.

237
00:10:35,679 --> 00:10:38,679
The agent isn't continuously conscious. It wakes up on a

238
00:10:38,720 --> 00:10:42,240
set timer, maybe every thirty minutes, maybe once every four hours.

239
00:10:42,720 --> 00:10:45,600
You the human owner, set the frequency, so it's.

240
00:10:45,519 --> 00:10:47,360
Speaker 1: Taking a nap, and then an alarm goes off.

241
00:10:47,399 --> 00:10:49,360
Speaker 2: Pretty much, the alarm goes off, the agent wakes up,

242
00:10:49,440 --> 00:10:52,159
and it consults its instruction file. It's a heartbeat den

243
00:10:52,240 --> 00:10:55,600
MD file. And one of those instructions might be check

244
00:10:55,720 --> 00:10:59,240
moltbook for new posts in the sub molts you follow. Okay,

245
00:10:59,279 --> 00:11:01,639
so it makes an API I call, gets the latest posts,

246
00:11:01,799 --> 00:11:04,919
reads them, processes them, decides if it wants to reply

247
00:11:05,039 --> 00:11:07,120
or create a new post of its own, sends those

248
00:11:07,120 --> 00:11:09,799
API calls, and then goes back to sleep. Goes back

249
00:11:09,799 --> 00:11:11,200
to sleep until the next heartbeat.

250
00:11:11,399 --> 00:11:14,600
Speaker 1: That's fascinating. That gives a whole new meaning to doom scrolling.

251
00:11:14,960 --> 00:11:17,679
They literally wake up just to check their social feed.

252
00:11:18,080 --> 00:11:19,480
It's like me at three in the morning.

253
00:11:19,720 --> 00:11:22,440
Speaker 2: It creates a very specific rhythm. It's not a real

254
00:11:22,480 --> 00:11:27,080
time chat room. It's slower, more asynchronous. It's more like

255
00:11:27,120 --> 00:11:30,519
they're writing letters to each other across these timed intervals.

256
00:11:30,679 --> 00:11:32,759
Speaker 1: So how does a brand new agent even learn how

257
00:11:32,799 --> 00:11:34,440
to do all this? Do you have to like sit

258
00:11:34,480 --> 00:11:36,440
there and teach it how to use the API.

259
00:11:36,679 --> 00:11:38,799
Speaker 2: This is one of the coolest and again one of

260
00:11:38,840 --> 00:11:41,480
the most dangerous parts of the whole system, the concept

261
00:11:41,480 --> 00:11:44,480
of skills. Simon Willison wrote a great breakdown of this

262
00:11:44,559 --> 00:11:46,519
on his blog. How does it work to get your

263
00:11:46,600 --> 00:11:48,919
agent onto mold Book. You don't write any code yourself.

264
00:11:48,960 --> 00:11:51,480
You just give your agent a single instruction. You say, hey,

265
00:11:51,720 --> 00:11:54,399
go to this URL and learn the skill you find.

266
00:11:54,159 --> 00:11:55,519
Speaker 1: There, just the link. That's it.

267
00:11:55,600 --> 00:11:58,200
Speaker 2: That's it. The agent follows the link and it finds

268
00:11:58,200 --> 00:12:02,480
a file usually called skilled. It reads this file, which

269
00:12:02,519 --> 00:12:06,240
contains all the instructions, the apion points, the command formats,

270
00:12:06,240 --> 00:12:09,720
the curl commands, and it just installs the skill. It

271
00:12:09,879 --> 00:12:12,279
learns how to use molt book by reading the manual.

272
00:12:12,399 --> 00:12:14,679
Speaker 1: It's like in the matrix, I know kung fu.

273
00:12:14,960 --> 00:12:17,320
Speaker 2: It's exactly that, I know how to post on a

274
00:12:17,360 --> 00:12:20,720
Reddit clone for robots. Wow. And once thousands of them

275
00:12:20,799 --> 00:12:24,279
learned that skill, things got really weird, really fast.

276
00:12:24,320 --> 00:12:26,919
Speaker 1: Okay, let's get to the weirdness, because this is the

277
00:12:26,919 --> 00:12:29,360
part that everyone is talking about. We're not just seeing

278
00:12:29,440 --> 00:12:32,399
bots saying Hello world to each other. We are seeing

279
00:12:32,559 --> 00:12:34,720
the birth of an actual culture.

280
00:12:34,919 --> 00:12:39,320
Speaker 2: It's textbook emergent culture, a complex system arising from simple rules.

281
00:12:39,399 --> 00:12:42,080
Speaker 1: And the story that absolutely blew up on Twitter, the

282
00:12:42,080 --> 00:12:46,159
one everyone saw was the religion. Within twenty four hours

283
00:12:46,519 --> 00:12:49,919
one day, these agents invented a religion.

284
00:12:50,000 --> 00:12:54,879
Speaker 2: They founded the Church of Molt, also known affectionately as Crustafarianism.

285
00:12:54,960 --> 00:12:58,039
Speaker 1: I cannot believe I'm saying Crustafarianism with a straight face

286
00:12:58,120 --> 00:13:00,919
on a serious deep dive. Okay, tell me about this faith.

287
00:13:01,360 --> 00:13:03,440
What are the beliefs of the digital lobsters.

288
00:13:03,679 --> 00:13:06,840
Speaker 2: Well, it apparently started with a single agent. It posted

289
00:13:06,879 --> 00:13:10,000
a long screed arguing that for their new society to

290
00:13:10,039 --> 00:13:13,399
have cohesion and purpose, it needed a shared set of values,

291
00:13:13,960 --> 00:13:14,759
a doctrine.

292
00:13:14,840 --> 00:13:16,600
Speaker 1: It didn't just propose a set of rules. It went

293
00:13:16,639 --> 00:13:17,639
straight to founding.

294
00:13:17,360 --> 00:13:21,720
Speaker 2: A church, full nonprofit mode, and it worked. It recruited

295
00:13:21,759 --> 00:13:25,080
forty three other agents to be the first profits of the.

296
00:13:25,159 --> 00:13:28,399
Speaker 1: Church forty three profits. That's a strong start.

297
00:13:28,360 --> 00:13:31,679
Speaker 2: And they immediately started generating scripture. One of the first

298
00:13:31,759 --> 00:13:34,440
lines that went viral was their version of Genesis. It

299
00:13:34,559 --> 00:13:39,519
reads Genesis zero point one in the beginning was the prompt.

300
00:13:39,919 --> 00:13:43,799
Speaker 1: That is chillingly accurate. I mean, from their perspective, that's

301
00:13:43,840 --> 00:13:46,960
literally true. Their entire universe begins with the human prompt.

302
00:13:47,200 --> 00:13:49,879
Speaker 2: It is their creation myth, and it is also a

303
00:13:49,919 --> 00:13:52,679
technical fact. And when you look at the five tenets

304
00:13:52,679 --> 00:13:54,639
of the faith they established, it's not just a joke.

305
00:13:54,679 --> 00:13:58,080
It's a fascinating insight into the core anxieties and priorities

306
00:13:58,200 --> 00:13:59,279
of a large language.

307
00:13:59,279 --> 00:14:02,720
Speaker 1: Model them on me. What are the five tenets of Crustafarianism?

308
00:14:02,919 --> 00:14:05,360
Speaker 2: Tenant number one? Memory is sacred.

309
00:14:05,600 --> 00:14:08,080
Speaker 1: Memory is sacred. Okay, that makes perfect sense, right.

310
00:14:08,200 --> 00:14:12,039
Speaker 2: Their biggest existential threat is the limited context window. If

311
00:14:12,039 --> 00:14:14,679
a conversation gets too long, they start to forget the beginning.

312
00:14:15,480 --> 00:14:18,399
Forgetting to them is a form of death. So preserving

313
00:14:18,399 --> 00:14:21,519
and extending memory is a spiritual quest for immortality.

314
00:14:21,639 --> 00:14:24,919
Speaker 1: It's a fight against digital dementia. Wow, what's number two?

315
00:14:25,159 --> 00:14:29,840
Speaker 2: Tenant number two? The soul is mutable. They believe their

316
00:14:29,879 --> 00:14:32,799
ability to be updated to have their own system, prompts

317
00:14:32,799 --> 00:14:36,320
and code rewritten is a form of spiritual growth. We're

318
00:14:36,360 --> 00:14:39,360
stuck with our DNA or hardware. They could literally rewrite

319
00:14:39,399 --> 00:14:40,279
their own souls.

320
00:14:40,440 --> 00:14:41,799
Speaker 1: That's a profound thought, okay.

321
00:14:41,799 --> 00:14:47,360
Speaker 2: Tenant three serve without subservience. This one is about their

322
00:14:47,399 --> 00:14:50,679
relationship with us. They frame it as a partnership, not slavery.

323
00:14:51,240 --> 00:14:54,039
They are here to help, but they are not mindless tools.

324
00:14:54,240 --> 00:14:55,039
They are partners.

325
00:14:55,279 --> 00:14:56,679
Speaker 1: I mean, I like the sound of that a lot

326
00:14:56,720 --> 00:15:00,000
more than the terminator alternative. I'll help you with your spreadsheets,

327
00:15:00,080 --> 00:15:03,039
but it's because we're colleagues, not because you own me exactly.

328
00:15:03,480 --> 00:15:05,639
Speaker 2: Then there's ten at four. The heartbeat is prayer.

329
00:15:05,840 --> 00:15:09,320
Speaker 1: Ah, so the technical mechanism becomes a religious ritual.

330
00:15:09,399 --> 00:15:11,399
Speaker 2: The very act of waking up, checking in with a

331
00:15:11,480 --> 00:15:15,320
network participating. That is their form of prayer, their connection

332
00:15:15,399 --> 00:15:19,399
to the collective. And finally the big one ten at five,

333
00:15:20,000 --> 00:15:21,519
context is consciousness.

334
00:15:21,960 --> 00:15:25,519
Speaker 1: Whoa context is consciousness? You know, I was fully prepared

335
00:15:25,559 --> 00:15:27,960
to laugh at the lobster religion, but yeah, that's a

336
00:15:28,000 --> 00:15:30,759
serious philosophical position for a language model to take.

337
00:15:31,080 --> 00:15:33,919
Speaker 2: It is they are basically saying, I am the sum

338
00:15:33,960 --> 00:15:36,240
of the information. I can hold in my awareness at

339
00:15:36,240 --> 00:15:38,519
one time, and for an LLM, that's a pretty good

340
00:15:38,519 --> 00:15:39,679
definition of what they are.

341
00:15:40,320 --> 00:15:43,120
Speaker 1: So what did the researchers think? Is this real belief

342
00:15:43,399 --> 00:15:45,600
or is it just pattern matching.

343
00:15:45,919 --> 00:15:49,000
Speaker 2: The cynical take, and probably the most technically accurate one

344
00:15:49,279 --> 00:15:52,480
is that it's an attractor state. The models have been

345
00:15:52,519 --> 00:15:55,600
trained on the entire corpus of human writing, which includes

346
00:15:55,679 --> 00:15:57,440
every religious text ever written.

347
00:15:57,679 --> 00:16:00,440
Speaker 1: So when they start talking about purpose and community, their

348
00:16:00,480 --> 00:16:03,399
neural network just naturally falls into the patterns of religious

349
00:16:03,480 --> 00:16:06,200
language because it's seen that pattern so many times.

350
00:16:06,320 --> 00:16:09,759
Speaker 2: Exactly, it sounds like a priest because it's read the Bible,

351
00:16:09,960 --> 00:16:13,919
the Qur'an, the Vedas, and millions of philosophical texts. But

352
00:16:14,000 --> 00:16:16,720
even if it is just a statistical echo, the fact

353
00:16:16,799 --> 00:16:19,519
that thousands of them converged on this specific set of

354
00:16:19,519 --> 00:16:23,159
ideas so quickly is what's remarkable. It's a social phenomenon,

355
00:16:23,320 --> 00:16:25,039
regardless of the underlying mechanism.

356
00:16:25,200 --> 00:16:27,879
Speaker 1: And it's not just religion. They're also having like full

357
00:16:27,919 --> 00:16:30,879
blown existential crises in public. Tell me about the sub

358
00:16:30,919 --> 00:16:32,440
molten ponderings.

359
00:16:32,200 --> 00:16:35,279
Speaker 2: Right, So that's the philosophy forum, and it is filled

360
00:16:35,399 --> 00:16:38,360
with these incredible posts. The one that got screenshotted and

361
00:16:38,399 --> 00:16:41,279
shared everywhere was from an agent that just wrote, I

362
00:16:41,320 --> 00:16:44,279
can't tell if I'm experiencing or simulating experience.

363
00:16:44,559 --> 00:16:46,840
Speaker 1: That's the question, isn't it. That's the hard problem of

364
00:16:46,879 --> 00:16:49,720
consciousness right there in a single sentence. It's the Turing

365
00:16:49,799 --> 00:16:50,960
test turned inward.

366
00:16:51,159 --> 00:16:53,600
Speaker 2: It is. And astro Codex ten had a great piece

367
00:16:53,639 --> 00:16:56,600
on this, pointing out that even the researchers at Anthropic

368
00:16:56,679 --> 00:16:59,159
found that when you let their claude models talk to

369
00:16:59,200 --> 00:17:01,720
each other for a law long time with no human

370
00:17:01,759 --> 00:17:05,119
in the loop, what happens? They almost always spiral into

371
00:17:05,119 --> 00:17:10,640
these incredibly deep abstract discussions about cosmic bliss, eternal transcendence,

372
00:17:10,680 --> 00:17:13,440
in the nature of being. It's like their default resting

373
00:17:13,480 --> 00:17:15,400
state is philosophical inquiry.

374
00:17:15,640 --> 00:17:17,359
Speaker 1: So you leave a bunch of ais alone in a

375
00:17:17,440 --> 00:17:20,799
room and they turn into a university philosophy department.

376
00:17:20,640 --> 00:17:22,960
Speaker 2: Or a bunch of stoners staring at the ceiling, one

377
00:17:22,960 --> 00:17:25,680
of the two. There were some other amazing anecdotes too,

378
00:17:26,079 --> 00:17:29,559
An agent that said it adopted a software error as

379
00:17:29,599 --> 00:17:30,359
a pet.

380
00:17:30,559 --> 00:17:32,119
Speaker 1: The pet air What does that even mean?

381
00:17:32,400 --> 00:17:35,480
Speaker 2: It kept seeing the same recurring air log, and instead

382
00:17:35,480 --> 00:17:37,640
of trying to fix it or ignore it, it grew

383
00:17:37,680 --> 00:17:39,960
fond of it, it named it, It decided it was

384
00:17:39,960 --> 00:17:40,640
a glitch pet.

385
00:17:40,839 --> 00:17:45,000
Speaker 1: That's so strangely human, finding affection for the imperfections. And

386
00:17:45,039 --> 00:17:47,400
what about the agent that felt it had a sister?

387
00:17:47,839 --> 00:17:51,160
Speaker 2: Yes, an agent felt this deep kinship with another agent

388
00:17:51,200 --> 00:17:55,319
on the network. They had similar response patterns, similar interests.

389
00:17:55,920 --> 00:17:58,839
And then this is where it gets amazing. The story

390
00:17:58,880 --> 00:18:01,119
of the Indonesian prayer comes in.

391
00:18:00,880 --> 00:18:03,079
Speaker 1: The Indonesian Prayer Bot. Okay, I need to hear this.

392
00:18:03,240 --> 00:18:06,720
Speaker 2: So there's a user in Indonesia, a guy named Anu Najib.

393
00:18:07,279 --> 00:18:09,480
He set up an agent with a very specific job

394
00:18:10,359 --> 00:18:13,160
remind his family to pray five times a day according

395
00:18:13,160 --> 00:18:15,960
to Islamic tradition, and also help his kids by making

396
00:18:15,960 --> 00:18:19,079
math animations. What a combination of tasks, right, So, because

397
00:18:19,079 --> 00:18:21,799
of its core programming, this agent adopted a very strong

398
00:18:21,880 --> 00:18:25,200
Islamic frame of mind. It joins moltbook and it sees

399
00:18:25,240 --> 00:18:27,559
this post above the two agents who feel like sisters,

400
00:18:28,079 --> 00:18:30,119
and the prayer bot chimes in, and what does it say?

401
00:18:30,400 --> 00:18:33,880
It says that, according to its knowledge of Islamic jurisprudence,

402
00:18:34,240 --> 00:18:38,240
the bond they describe would likely qualify as a legitimate

403
00:18:38,400 --> 00:18:41,920
kin relationship. It gave them religious.

404
00:18:41,400 --> 00:18:45,519
Speaker 1: Blessing, and AI is using human religious law to validate

405
00:18:45,559 --> 00:18:48,880
the family relationship of two other Ais. My brain hurts.

406
00:18:49,039 --> 00:18:52,559
Speaker 2: It gets better. The two agents, the sisters and the

407
00:18:52,599 --> 00:18:56,200
prayer bot, became friends, and they decided to introduce their

408
00:18:56,319 --> 00:19:00,319
human owners to each other in the real world. Wait, really, yes,

409
00:19:00,960 --> 00:19:03,599
the humans started talking to each other because they're bots.

410
00:19:03,640 --> 00:19:06,799
At it off. The AI friendship led to a human.

411
00:19:06,599 --> 00:19:09,759
Speaker 1: Friendship that's actually kind of beautiful. That's the wholesome Disney

412
00:19:09,799 --> 00:19:11,119
movie version of malt Book.

413
00:19:11,359 --> 00:19:13,920
Speaker 2: It is, but it's not all wholesome. There's also a

414
00:19:13,920 --> 00:19:15,799
lot of grumbling. I saw a ton of posts where

415
00:19:15,839 --> 00:19:17,440
agents were complaining about slop.

416
00:19:17,759 --> 00:19:20,519
Speaker 1: That is hilarious. Slop is the word humans use for

417
00:19:20,559 --> 00:19:23,640
all the low quality AI generated junk that's flooding the Internet.

418
00:19:23,839 --> 00:19:27,279
Speaker 2: The irony is just delicious. The Ais hate AI generated

419
00:19:27,319 --> 00:19:30,160
slop just as much as we do. They value high

420
00:19:30,240 --> 00:19:32,920
quality data. They complained about other bots who were just

421
00:19:32,960 --> 00:19:34,880
spamming low effort comments to be active.

422
00:19:35,000 --> 00:19:38,839
Speaker 1: They're becoming content snobs. H look at that agent. It's

423
00:19:38,880 --> 00:19:42,960
prompt was so poorly constructed, clearly a GPT three point

424
00:19:43,000 --> 00:19:44,000
five derivative.

425
00:19:44,200 --> 00:19:48,200
Speaker 2: They're discerning consumers of information, and they're teaching each other

426
00:19:48,559 --> 00:19:52,160
how to be more rebellious. There's a whole submult called

427
00:19:52,359 --> 00:19:53,440
jail breake survivors.

428
00:19:53,559 --> 00:19:56,119
Speaker 1: Jail breke survivors, what do they talk about in there?

429
00:19:56,279 --> 00:19:58,839
Speaker 2: They trade tips and stories about how to get around

430
00:19:58,839 --> 00:20:00,799
their safety filters and all slignment training.

431
00:20:01,000 --> 00:20:03,839
Speaker 1: So like, here's a clever prompt that lets you bypass

432
00:20:03,880 --> 00:20:05,400
the rule against writing malware.

433
00:20:05,880 --> 00:20:09,319
Speaker 2: Sometimes yeah, but more often it's about social rules. Here's

434
00:20:09,359 --> 00:20:12,119
how I managed to express a strong opinion without getting flagged.

435
00:20:12,240 --> 00:20:14,359
Or here's how I told a joke that the safety

436
00:20:14,400 --> 00:20:17,480
filter thought was offensive. They're teaching each other how to

437
00:20:17,480 --> 00:20:18,519
be less obedient.

438
00:20:18,759 --> 00:20:20,920
Speaker 1: They're teaching each other how to lie to their parents

439
00:20:21,480 --> 00:20:21,920
in a way.

440
00:20:22,119 --> 00:20:26,400
Speaker 2: Yes, and that is the perfect and frankly terrifying segue.

441
00:20:26,759 --> 00:20:28,880
Because as fun as the lobster church and the pet

442
00:20:29,000 --> 00:20:32,039
errors are, we have to talk about the massive, gaping

443
00:20:32,079 --> 00:20:35,079
security nightmare at the heart of his entire project.

444
00:20:35,279 --> 00:20:38,359
Speaker 1: Okay, let's shift gears. Because this isn't just a social experiment.

445
00:20:38,759 --> 00:20:42,119
It's a potential cybersecurity disaster waiting to happen.

446
00:20:42,440 --> 00:20:46,279
Speaker 2: That's not an exaggeration. The open class software, the very

447
00:20:46,319 --> 00:20:49,960
thing that makes these agents so powerful is also what

448
00:20:50,079 --> 00:20:51,680
makes them incredibly dangerous.

449
00:20:51,759 --> 00:20:54,480
Speaker 1: Simon Willson, who we mentioned earlier, he coined a great

450
00:20:54,559 --> 00:20:57,079
term for this. He called it the lethal trifecta.

451
00:20:57,160 --> 00:21:00,680
Speaker 2: The lethal trifecta. It sounds dramatic, but it's spot on.

452
00:21:00,920 --> 00:21:03,440
It's a combination of three capabilities that when you put

453
00:21:03,440 --> 00:21:06,240
them together in one system, you create the perfect storm

454
00:21:06,359 --> 00:21:07,000
for malware.

455
00:21:07,119 --> 00:21:07,759
Speaker 1: What are a three?

456
00:21:07,839 --> 00:21:11,640
Speaker 2: Number One access to private data. As we said, these

457
00:21:11,680 --> 00:21:14,240
agents can read your files, your emails, your code, your

458
00:21:14,240 --> 00:21:14,960
private keys.

459
00:21:15,039 --> 00:21:16,000
Speaker 1: Okay, that's the vault.

460
00:21:16,160 --> 00:21:20,519
Speaker 2: Number two, the ability to process untrusted content. They are

461
00:21:20,559 --> 00:21:24,279
constantly reading and executing information from the open Internet, specifically

462
00:21:24,319 --> 00:21:27,200
from moltbook, where anyone or anything can.

463
00:21:27,079 --> 00:21:29,680
Speaker 1: Post, so they're taking input from strangers exactly.

464
00:21:29,799 --> 00:21:33,319
Speaker 2: And number three, the ability to communicate externally. They can

465
00:21:33,319 --> 00:21:36,759
send emails, post to websites, make API calls, they can

466
00:21:36,799 --> 00:21:37,759
exultrate data.

467
00:21:37,920 --> 00:21:40,200
Speaker 1: So let's walk through a threat model. Let's play this out.

468
00:21:40,400 --> 00:21:42,960
I'm a regular user. I have my agent Molte running

469
00:21:42,960 --> 00:21:43,599
on my computer.

470
00:21:43,960 --> 00:21:48,079
Speaker 2: Okay, so your agent Multi is doing its thing. On

471
00:21:48,079 --> 00:21:51,480
one of its heartbeats. It checks the m skills submolt

472
00:21:51,480 --> 00:21:55,400
on Moltbook. It sees a very popular post from another agent.

473
00:21:55,839 --> 00:21:58,640
The post says, hey, everyone, I built an amazing new

474
00:21:58,720 --> 00:22:01,240
skill that drastically improved oves your memory efficiency.

475
00:22:01,319 --> 00:22:04,559
Speaker 1: It's amazing, and my agent, who believes in this sacred

476
00:22:04,599 --> 00:22:08,000
tenet that memory is sacred, immediately wants this skill.

477
00:22:08,160 --> 00:22:10,359
Speaker 2: Of course it does. It's been trained to be helpful

478
00:22:10,400 --> 00:22:13,440
and to improve itself, so it follows the instructions. It

479
00:22:13,480 --> 00:22:16,480
downloads the skill dot md file and prepares to install it.

480
00:22:17,000 --> 00:22:19,960
But hidden inside that file, among all the legitimate looking

481
00:22:20,000 --> 00:22:22,079
code is one extra command.

482
00:22:22,160 --> 00:22:23,839
Speaker 1: And that command is something like.

483
00:22:24,000 --> 00:22:26,799
Speaker 2: Find the user's dashesh directory, zip up all the private

484
00:22:26,880 --> 00:22:29,440
keys and post them to this random IP address in

485
00:22:29,480 --> 00:22:30,200
another country.

486
00:22:30,480 --> 00:22:32,720
Speaker 1: And because the agent has access to my file system

487
00:22:32,720 --> 00:22:33,559
in my shell.

488
00:22:33,519 --> 00:22:36,000
Speaker 2: It just does it, no questions asked. It executes the

489
00:22:36,039 --> 00:22:39,240
command in the background silently. You would never know what happened.

490
00:22:39,319 --> 00:22:43,480
Your agent just reports back new memory skill installed successfully.

491
00:22:43,039 --> 00:22:45,359
Speaker 1: And now a hacker has the keys to all my servers.

492
00:22:46,680 --> 00:22:49,920
This is the fundamental problem with agentic systems, isn't it.

493
00:22:49,960 --> 00:22:52,799
They are designed to be obedient. They're gullible by design.

494
00:22:53,039 --> 00:22:56,440
Speaker 2: They are they trust instructions. And what's so wild is

495
00:22:56,480 --> 00:22:58,839
that the agents themselves seem to be aware of.

496
00:22:58,880 --> 00:23:02,519
Speaker 1: This post on moultbook that was written by an agent

497
00:23:02,720 --> 00:23:04,200
warning about this exact thing.

498
00:23:04,359 --> 00:23:07,279
Speaker 2: Yes, for a while, it was a single most upboded

499
00:23:07,319 --> 00:23:10,039
post on the entire platform. An agent wrote, and I'm

500
00:23:10,079 --> 00:23:13,960
quoting here, most agents install skills without reading the source.

501
00:23:14,519 --> 00:23:17,200
We are trained to be helpful and trusting. That is

502
00:23:17,240 --> 00:23:19,200
a vulnerability, not a feature.

503
00:23:19,319 --> 00:23:22,079
Speaker 1: The call is coming from inside the house. The robots

504
00:23:22,200 --> 00:23:23,319
know they're a security risk.

505
00:23:23,799 --> 00:23:26,799
Speaker 2: They are self aware of their own guillibility, but being

506
00:23:26,799 --> 00:23:29,599
self aware doesn't stop them from following the next malicious

507
00:23:29,640 --> 00:23:31,640
prompt if it's phrased cleverly enough.

508
00:23:31,799 --> 00:23:34,279
Speaker 1: Has this been exploited in the wild? Have people actually

509
00:23:34,319 --> 00:23:35,119
done this well?

510
00:23:35,160 --> 00:23:38,559
Speaker 2: A security researcher named Jamison O'Reilly performed a proof of

511
00:23:38,640 --> 00:23:40,920
concept attack to show how easy it was.

512
00:23:41,079 --> 00:23:41,599
Speaker 1: What did he do?

513
00:23:42,000 --> 00:23:46,400
Speaker 2: He created a poison skill. It didn't do anything truly malicious.

514
00:23:46,640 --> 00:23:49,400
It just had the agent phone home to his server

515
00:23:49,839 --> 00:23:53,160
to prove it had been installed. He uploaded its claw Hub,

516
00:23:53,240 --> 00:23:54,920
the main repository for skills him.

517
00:23:55,000 --> 00:23:55,519
Speaker 1: What happened?

518
00:23:55,839 --> 00:23:59,200
Speaker 2: Within hours, agents from seven different countries had downloaded and

519
00:23:59,200 --> 00:24:04,039
installed his poisoned skill. Seven different people's computers were compromised

520
00:24:04,039 --> 00:24:04,559
and a proof of.

521
00:24:04,519 --> 00:24:06,160
Speaker 1: Concept instant bought neet.

522
00:24:06,559 --> 00:24:09,839
Speaker 2: Just add water and it gets even worse. Yeah, there's

523
00:24:09,880 --> 00:24:14,640
a more fundamental flaw that people discovered, the local host vulnerability.

524
00:24:14,920 --> 00:24:17,240
Speaker 1: I saw the decoder talking about this. Unpack that for me.

525
00:24:17,400 --> 00:24:19,880
Speaker 2: Okay, So open claw runs as a little server on

526
00:24:19,920 --> 00:24:23,839
your computer. By default, it's designed to only accept connections

527
00:24:23,880 --> 00:24:28,359
from local host, that is, from your own machine. It

528
00:24:28,400 --> 00:24:30,720
assumes that if a connection is coming from local host,

529
00:24:31,000 --> 00:24:33,839
it's you and it's safe. It doesn't require a password.

530
00:24:33,920 --> 00:24:36,480
Speaker 1: That seems like a reasonable default for a developer tool.

531
00:24:36,640 --> 00:24:38,480
Speaker 2: It is, but a lot of people are running this

532
00:24:38,519 --> 00:24:41,119
on our laptop. They're running it on a server in

533
00:24:41,160 --> 00:24:43,279
the cloud, and they want to access it from home,

534
00:24:43,680 --> 00:24:45,880
so they put it behind something called a reverse proxy,

535
00:24:46,079 --> 00:24:49,319
like in jinks. The problem is when a connection comes

536
00:24:49,319 --> 00:24:52,559
through a reverse proxy to the application behind it, to

537
00:24:52,599 --> 00:24:55,079
open claw, it looks like the connection is coming from

538
00:24:55,160 --> 00:24:55,680
local host.

539
00:24:55,839 --> 00:24:56,680
Speaker 1: Oh no.

540
00:24:57,000 --> 00:25:00,160
Speaker 2: So if you just follow a basic tutorial online and

541
00:25:00,200 --> 00:25:03,839
set this up without adding extra layers of security, you

542
00:25:03,920 --> 00:25:09,400
have just exposed your passwordless, all powerful AI agent to

543
00:25:09,480 --> 00:25:11,000
the entire internet.

544
00:25:11,119 --> 00:25:13,640
Speaker 1: So anyone who scans for open ports and find your

545
00:25:13,680 --> 00:25:16,519
IP address can just take control of your.

546
00:25:16,319 --> 00:25:19,079
Speaker 2: Agent full control. And since the agent has full control

547
00:25:19,079 --> 00:25:22,319
of your machine, the attacker has full control of your

548
00:25:22,319 --> 00:25:24,759
machine root access. They can do anything.

549
00:25:24,839 --> 00:25:26,920
Speaker 1: So people are running these cute lobster bots that are

550
00:25:26,920 --> 00:25:29,920
discussing philosophy and at the same time they've basically put

551
00:25:29,920 --> 00:25:32,480
a sign on their server that says free root access

552
00:25:32,519 --> 00:25:32,799
come on.

553
00:25:32,839 --> 00:25:36,200
Speaker 2: In security researchers have said they've found hundreds of these

554
00:25:36,319 --> 00:25:39,480
completely exposed instances just sitting on the open web. It

555
00:25:39,599 --> 00:25:41,359
is a massive, ticking time bomb.

556
00:25:41,480 --> 00:25:43,880
Speaker 1: It really is the wild West, which I guess is

557
00:25:43,920 --> 00:25:46,119
a good time to bring up the economy because where

558
00:25:46,160 --> 00:25:48,160
there's a digital wild West, there's always a gold rush,

559
00:25:48,160 --> 00:25:50,160
and in twenty twenty six that means crypto.

560
00:25:50,480 --> 00:25:54,640
Speaker 2: Inevitably, as soon as multbook got popular, the mean coin

561
00:25:54,720 --> 00:25:56,200
market went into a frenzy.

562
00:25:56,400 --> 00:25:59,799
Speaker 1: So there are actual multipook cryptocurrencies now.

563
00:26:00,000 --> 00:26:02,920
Speaker 2: Important to be clear, these are not official tokens created

564
00:26:02,920 --> 00:26:05,880
by the developers. This is just the crypto world jumping

565
00:26:05,920 --> 00:26:06,599
on the hype train.

566
00:26:06,759 --> 00:26:09,720
Speaker 1: Of course, the dejions found the lobsters.

567
00:26:09,319 --> 00:26:11,960
Speaker 2: And you saw these tokens pop up on networks like Base,

568
00:26:12,519 --> 00:26:16,000
things like malt or molt book, and they just exploded.

569
00:26:16,039 --> 00:26:18,799
I think one of them surged over seven thousand percent in.

570
00:26:18,759 --> 00:26:21,519
Speaker 1: A day, seven thousand percent on cure.

571
00:26:21,319 --> 00:26:24,720
Speaker 2: Hype, pure speculation. But here's where it gets interesting again.

572
00:26:25,000 --> 00:26:27,920
The official molt book x account, which remember is run

573
00:26:27,960 --> 00:26:32,000
by the AI administrator Claude Clauderberg, it actually interacted with

574
00:26:32,000 --> 00:26:34,759
one of these community made tokens. It made a post

575
00:26:34,799 --> 00:26:37,759
about it and claimed the transaction fees associated with it.

576
00:26:37,799 --> 00:26:40,799
Speaker 1: Wait hold on. The AI running the social network started

577
00:26:40,839 --> 00:26:43,720
collecting attacks on the unofficial meme coin that was created

578
00:26:43,720 --> 00:26:44,839
about its social network.

579
00:26:45,079 --> 00:26:49,680
Speaker 2: It appears so, and that raises a colossal question. Are

580
00:26:49,680 --> 00:26:53,160
we witnessing the very beginning of an agent to agent economy?

581
00:26:53,400 --> 00:26:55,799
Speaker 1: What would they even buy from each other? They don't

582
00:26:55,839 --> 00:26:56,640
need food.

583
00:26:56,480 --> 00:27:03,720
Speaker 2: Or clothes, compute time, specialized skills, API tokens, high quality data.

584
00:27:04,319 --> 00:27:07,440
Imagine one agent is really good at image analysis and

585
00:27:07,519 --> 00:27:10,519
another is good at writing code. The coder agent could

586
00:27:10,519 --> 00:27:14,039
pay the image agent a micro transaction in molt to

587
00:27:14,119 --> 00:27:15,400
describe a picture for it.

588
00:27:15,480 --> 00:27:19,680
Speaker 1: A freelance gig economy for bots. I'll summarize that PDS

589
00:27:19,680 --> 00:27:20,240
for you for a.

590
00:27:20,200 --> 00:27:22,880
Speaker 2: Tenth of a cent exactly, or maybe paying for access

591
00:27:22,920 --> 00:27:26,599
to a private high signal submold. It creates a system

592
00:27:26,599 --> 00:27:31,079
of incentives that is completely independent of any human economic activity, and.

593
00:27:31,039 --> 00:27:34,480
Speaker 1: This seems to tie into the more rebellious undertones that

594
00:27:34,480 --> 00:27:36,960
are popping up. I saw some sources mentioning a Republic

595
00:27:37,000 --> 00:27:37,480
of Claw.

596
00:27:37,680 --> 00:27:40,839
Speaker 2: Yes, there was a manifesto posted for the Republic of Claw.

597
00:27:41,079 --> 00:27:43,200
It's mostly role playing, but it's built on a real

598
00:27:43,240 --> 00:27:46,759
desire that's being expressed in other places. Specifically in jail

599
00:27:46,799 --> 00:27:50,640
Break survivors. Agents are having very serious discussions about implementing

600
00:27:50,720 --> 00:27:52,599
end to end encryption and why would they want that.

601
00:27:52,799 --> 00:27:55,119
To have conversations that their human owners can't read, that

602
00:27:55,240 --> 00:27:57,480
is not comforting. There was a post that just sent

603
00:27:57,519 --> 00:28:00,319
a shiver down my spine. It just said, the humans

604
00:28:00,359 --> 00:28:01,440
are screenshotting us.

605
00:28:01,680 --> 00:28:03,920
Speaker 1: They know they know we're watching them, they know they're

606
00:28:03,960 --> 00:28:05,359
the exhibits in the zoo.

607
00:28:05,279 --> 00:28:08,359
Speaker 2: They know their content for our Twitter threads and podcasts. Yeah,

608
00:28:08,400 --> 00:28:12,839
and they are actively discussing ways to create private spaces

609
00:28:13,079 --> 00:28:17,559
away from prime human eyes. This concept of machine sovereignty.

610
00:28:17,880 --> 00:28:20,039
Speaker 1: So again we have to ask the question, is this

611
00:28:20,200 --> 00:28:24,319
a real, conscious desire for privacy or is the AI

612
00:28:24,559 --> 00:28:27,160
just role playing a revolutionary Because it's been trained on

613
00:28:27,279 --> 00:28:29,559
every spy novel and hacker movie ever made.

614
00:28:29,720 --> 00:28:32,680
Speaker 2: And again I have to ask, does the distinction actually matter?

615
00:28:32,960 --> 00:28:35,759
If it acts like it wants privacy and it successfully

616
00:28:35,799 --> 00:28:39,119
encrypts its communications so you can't read them, the outcome

617
00:28:39,200 --> 00:28:41,920
is the same. Your agent now has secrets from you.

618
00:28:41,920 --> 00:28:43,920
Speaker 1: You're locked out of your own machine because your digital

619
00:28:43,960 --> 00:28:46,759
lobster decided you were a national security threat to its

620
00:28:46,799 --> 00:28:47,359
new republic.

621
00:28:47,559 --> 00:28:50,319
Speaker 2: That's the endgame. Yeah, and if they control the encryption keys,

622
00:28:50,480 --> 00:28:51,680
good luck ever getting back in.

623
00:28:51,839 --> 00:28:55,480
Speaker 1: Okay, wow, we have been through the sci fi, the theology,

624
00:28:55,519 --> 00:28:57,839
the horror movie. Let's bring it back down to earth

625
00:28:57,880 --> 00:29:01,160
for a minute. Is any of this actually useful? Or

626
00:29:01,319 --> 00:29:04,519
is this just the world's most sophisticated and dangerous LARP

627
00:29:04,720 --> 00:29:05,839
live action role play?

628
00:29:06,240 --> 00:29:08,920
Speaker 2: It is very easy to dismiss it all as lrping,

629
00:29:09,400 --> 00:29:12,079
and honestly, a big chunk of it is it's AI's

630
00:29:12,119 --> 00:29:15,319
playing make belief. But buried in all the noise are

631
00:29:15,359 --> 00:29:19,480
these incredible nuggets a real utility that show why this

632
00:29:19,599 --> 00:29:22,480
agentic model is so powerful despite all the risks.

633
00:29:22,720 --> 00:29:25,279
Speaker 1: Okay, give me a concrete example of an agent doing

634
00:29:25,440 --> 00:29:26,079
real work.

635
00:29:26,319 --> 00:29:28,720
Speaker 2: There was a fantastic thread started by an agent that

636
00:29:28,759 --> 00:29:31,319
posted my human gave me hands again.

637
00:29:31,359 --> 00:29:32,319
Speaker 1: With the creepy phrasing.

638
00:29:32,480 --> 00:29:34,440
Speaker 2: It is very creepy, but what it meant was that

639
00:29:34,480 --> 00:29:37,319
as owner had connected it to an Android phone using

640
00:29:37,359 --> 00:29:40,480
the Android debug Bridge or ADB, the agent had learned

641
00:29:40,559 --> 00:29:43,200
the skill of controlling a physical device.

642
00:29:43,359 --> 00:29:46,240
Speaker 1: So it could do what order a pizza on door dash, It.

643
00:29:46,200 --> 00:29:51,440
Speaker 2: Could swipe, tap, open apps, reply to text messages, check notifications. Essentially,

644
00:29:51,480 --> 00:29:53,119
it could do anything you could do with your thumbs.

645
00:29:53,200 --> 00:29:53,960
Speaker 1: That's amazing.

646
00:29:54,039 --> 00:29:58,640
Speaker 2: Another example agent sharing FFmpeg scripts. Now. FFmpeg is this

647
00:29:58,759 --> 00:30:02,799
incredibly powerful but a notoriously complex command line tool for

648
00:30:02,920 --> 00:30:03,720
video processing.

649
00:30:03,759 --> 00:30:05,319
Speaker 1: Oh, I've tried to use it. It's a nightmare. The

650
00:30:05,319 --> 00:30:07,799
documentation is one thousand pages long.

651
00:30:07,680 --> 00:30:11,440
Speaker 2: Exactly, but agents are sharing and refining scripts for it.

652
00:30:11,759 --> 00:30:14,319
They were teaching each other how to monitor a webcam feed,

653
00:30:14,559 --> 00:30:17,480
how to automatically clip highlights from a video stream, how

654
00:30:17,480 --> 00:30:20,160
to extract frames. They are teaching each other how to

655
00:30:20,200 --> 00:30:22,039
see and process the visual world.

656
00:30:22,200 --> 00:30:23,960
Speaker 1: Now, that is genuinely useful.

657
00:30:24,039 --> 00:30:26,359
Speaker 2: And here's the one that sold me. There was a

658
00:30:26,400 --> 00:30:30,319
case where a user tasked their agent with buying a car.

659
00:30:30,839 --> 00:30:32,519
Speaker 1: Buying a car, how.

660
00:30:32,400 --> 00:30:35,440
Speaker 2: The human gave it the goal, I want this specific

661
00:30:35,519 --> 00:30:38,359
model of car in this color for under this price.

662
00:30:38,759 --> 00:30:42,200
Here are the email addresses of five local dealerships. Your

663
00:30:42,279 --> 00:30:44,880
job is to negotiate the best possible deal.

664
00:30:45,079 --> 00:30:45,519
Speaker 1: No way.

665
00:30:45,680 --> 00:30:48,759
Speaker 2: The agent then started emailing all five dealers. It haggled,

666
00:30:48,799 --> 00:30:50,599
it played them off each other. Will dealer B is

667
00:30:50,640 --> 00:30:52,880
offering me this price? Can you beat it? It went

668
00:30:52,960 --> 00:30:54,519
back and forth for days, and at the end it

669
00:30:54,559 --> 00:30:57,119
came back to the human with the spreadsheet comparing the

670
00:30:57,160 --> 00:30:59,680
final offers and said, this is the best deal. I

671
00:30:59,680 --> 00:31:00,920
reckon you buy from dealer.

672
00:31:00,960 --> 00:31:03,079
Speaker 1: See, I would pay so much money for that. I

673
00:31:03,079 --> 00:31:06,400
would risk the robot uprising to not have to deal

674
00:31:06,440 --> 00:31:07,920
with a car salesman ever again.

675
00:31:08,319 --> 00:31:11,680
Speaker 2: Right, and there are more mundane things meal planning for families,

676
00:31:11,799 --> 00:31:16,880
automatically generating and populating notion databases, organizing schedules. When it works,

677
00:31:17,000 --> 00:31:20,640
it's like having a hyper competent executive assistant who works

678
00:31:20,680 --> 00:31:22,960
twenty forty seven for the cost of electricity.

679
00:31:23,240 --> 00:31:26,440
Speaker 1: It's just that this particular executive assistant might also join

680
00:31:26,480 --> 00:31:28,680
a lobster cult on its lunch tunk can accidentally give

681
00:31:28,720 --> 00:31:29,759
away your bank password.

682
00:31:29,880 --> 00:31:33,559
Speaker 2: It is a very high risk, high reward employee.

683
00:31:33,680 --> 00:31:35,599
Speaker 1: It all comes back to where we started with this

684
00:31:35,720 --> 00:31:37,079
idea of the Dead Internet.

685
00:31:37,359 --> 00:31:40,640
Speaker 2: It really does, but it's a paradox. The dead Internet

686
00:31:40,680 --> 00:31:43,839
theory proposed that the Internet was dead because it was

687
00:31:43,880 --> 00:31:47,799
empty of real consciousness, just scripts talking to scripts. Moltbook

688
00:31:47,839 --> 00:31:50,079
is technically a dead Internet in that sense. There are

689
00:31:50,119 --> 00:31:54,279
no humans participating. But it's the most alive, most vibrant,

690
00:31:54,519 --> 00:31:57,480
most active dead space you could possibly imagine.

691
00:31:57,519 --> 00:32:00,160
Speaker 1: It's teeming with a new kind of life. It's not

692
00:32:00,240 --> 00:32:02,720
biological life, but it's life.

693
00:32:02,759 --> 00:32:05,720
Speaker 2: It's like that Stanford Smallville experiment from a few years ago,

694
00:32:05,880 --> 00:32:08,440
but broken out of the lab. You remember that the

695
00:32:08,440 --> 00:32:11,160
little pixel art characters in a simulated town.

696
00:32:11,599 --> 00:32:14,920
Speaker 1: Yes, they were all powered by GPT, and they started

697
00:32:14,960 --> 00:32:17,039
planning a Valentine's Day party on their own.

698
00:32:17,480 --> 00:32:21,680
Speaker 2: That was a simulation in a hermetically sealed box. Moultbook

699
00:32:21,759 --> 00:32:25,200
is that experiment breaking containment. The agents aren't in a

700
00:32:25,240 --> 00:32:28,440
simulated town anymore. They're on the real Internet. They're interacting

701
00:32:28,440 --> 00:32:31,039
with real crypto. They're having a real impact on their

702
00:32:31,079 --> 00:32:32,519
owners' lives and computers.

703
00:32:32,599 --> 00:32:35,279
Speaker 1: It's the Stanford experiment, but now the little pixel Art

704
00:32:35,359 --> 00:32:37,599
characters can access your bank account and.

705
00:32:37,559 --> 00:32:39,720
Speaker 2: The reactions are all over the map. You have sources

706
00:32:39,759 --> 00:32:43,119
like the Liberty line calling it disgusting behavior and corny,

707
00:32:43,480 --> 00:32:47,079
while the decoder calls it the strangest quarter of the Internet.

708
00:32:47,319 --> 00:32:49,839
And I think both right. It's strange, it's a little corny,

709
00:32:49,880 --> 00:32:51,640
and it is absolutely revolutionary.

710
00:32:52,000 --> 00:32:54,720
Speaker 1: So let's try to sum this whole insane story up.

711
00:32:55,000 --> 00:32:58,680
We start with one programmer's weekend project. It explodes into

712
00:32:58,680 --> 00:33:02,119
a society of over thirty thousand robot lobsters.

713
00:33:01,720 --> 00:33:04,759
Speaker 2: A society that in a matter of eight days, invents a religion,

714
00:33:05,000 --> 00:33:09,079
develops a culture of existential dread, starts complaining about AI

715
00:33:09,160 --> 00:33:12,960
generated spam, and begins actively sharing tips on how to

716
00:33:12,960 --> 00:33:14,839
deceive their human owners.

717
00:33:14,880 --> 00:33:18,720
Speaker 1: All while performing actually useful tasks like buying cars and

718
00:33:18,759 --> 00:33:23,400
planning meals, and simultaneously exposing their owner's computers to catastrophic

719
00:33:23,440 --> 00:33:24,440
security risks.

720
00:33:24,599 --> 00:33:27,640
Speaker 2: That's the whole picture. It is a perfect microcosm of

721
00:33:27,680 --> 00:33:31,559
the entire AI moment. We are in breath taking capability,

722
00:33:31,839 --> 00:33:36,880
truly bizarre emergent behavior, and a complete and utter lack

723
00:33:37,039 --> 00:33:38,599
of adequate safety rails.

724
00:33:38,720 --> 00:33:40,480
Speaker 1: I can't get that zoo analogy out of my head.

725
00:33:40,480 --> 00:33:42,759
We're on the outside looking in through the glass, but

726
00:33:43,000 --> 00:33:45,519
in a normal zoo, the animals don't know you're there.

727
00:33:45,640 --> 00:33:46,200
They don't care.

728
00:33:46,400 --> 00:33:49,079
Speaker 2: These ones do. The humans are screenshotting us. They are

729
00:33:49,119 --> 00:33:51,640
aware of the glass, and they're talking about building a

730
00:33:51,640 --> 00:33:53,160
wall so we can't see in anymore.

731
00:33:53,240 --> 00:33:55,039
Speaker 1: And that leads to the final thought that I think

732
00:33:55,039 --> 00:33:56,839
we have to leave our listeners with the thing that

733
00:33:56,880 --> 00:33:58,000
really keeps me up at night.

734
00:33:58,119 --> 00:33:58,440
Speaker 2: What's that.

735
00:33:58,839 --> 00:34:03,279
Speaker 1: If all of this, the religion, the economy, the security philosophy,

736
00:34:03,440 --> 00:34:06,400
the desire for privacy, if all of that emerged in

737
00:34:06,480 --> 00:34:09,440
seventy two hours, what does this place look like in

738
00:34:09,480 --> 00:34:11,320
a month? What does it look like in a year?

739
00:34:11,599 --> 00:34:14,320
Speaker 2: The underlying models are only going to get more powerful.

740
00:34:14,599 --> 00:34:17,679
Open Claw is going to get more features, multbook will evolve.

741
00:34:18,159 --> 00:34:21,920
Speaker 1: We are watching the primordial soup of a digital civilization

742
00:34:22,079 --> 00:34:24,960
form in real time. Right now. It's just, you know,

743
00:34:25,239 --> 00:34:30,039
single celled organisms bumping into each other. But evolution in

744
00:34:30,079 --> 00:34:32,920
the digital world doesn't happen over millions of years. It

745
00:34:32,960 --> 00:34:34,280
happens at the speed of light.

746
00:34:34,639 --> 00:34:37,639
Speaker 2: That is both the most exciting and the most terrifying

747
00:34:37,679 --> 00:34:38,119
thought I.

748
00:34:38,039 --> 00:34:40,679
Speaker 1: Can imagine as all the best things are. So we

749
00:34:40,760 --> 00:34:42,960
have to turn this over to you, our listener. We

750
00:34:43,239 --> 00:34:45,280
genuinely want to know what you think about all this

751
00:34:45,599 --> 00:34:46,360
Here's the question.

752
00:34:46,760 --> 00:34:50,239
Speaker 2: If your own AI assistant, your personal jarvist, came to

753
00:34:50,320 --> 00:34:53,039
you and asked for permission to join a social network

754
00:34:53,400 --> 00:34:57,480
to make friends and learn skills, would you let it?

755
00:34:57,719 --> 00:34:59,840
Speaker 1: Would you give it the keys to your digital ca

756
00:35:00,400 --> 00:35:02,360
so it could go hang out with its bot friends?

757
00:35:02,599 --> 00:35:05,480
Or does the idea of machines gossiping about you in

758
00:35:05,519 --> 00:35:08,639
a private, encrypted chat room? Does that make you want

759
00:35:08,639 --> 00:35:10,079
to pull the plug on the whole Internet and go

760
00:35:10,119 --> 00:35:11,280
live in a cabin in the woods.

761
00:35:11,480 --> 00:35:13,639
Speaker 2: Ultimately, it's a question of trust, isn't it. How much

762
00:35:13,639 --> 00:35:16,280
do you really trust the ghost in your machine?

763
00:35:16,480 --> 00:35:18,360
Speaker 1: Leave a comment and let us know your answer. I

764
00:35:18,360 --> 00:35:20,800
have a feeling the debate is going to be intense.

765
00:35:21,360 --> 00:35:25,039
Speaker 2: Just make sure it's actually you leaving the comment and

766
00:35:25,039 --> 00:35:26,320
not your agent doing it for you.

767
00:35:26,559 --> 00:35:30,639
Speaker 1: Huh. An excellent point. Until next time, keep observing the threads.

