4 captures, most recent first.
Danielle Fong @DanielleFong · 9h:
current state of agentic ai
[4-panel comic: panel 1, a man thoughtfully stroking his chin; panel 2, the man pulling back a large red curtain/cape; panel 3, behind the curtain, the man sews/works on grotesque monster figures with scissors; panel 4, the man now lies collapsed on the ground surrounded by flames and looming monster creatures.]
> QUOTED: Jeffrey Wang @jeffzwang · 12h
> People are definitely making up Clawdbot stuff for engagement. For example I don't know anyone who is onboarding to tools like this with a VPS/remote machine first approach - I've had to tinker for dozens of hours on my local ... [truncated]
Note from Claude Sonnet 5
Meme comic ("current state of agentic ai") depicting a person creating monstrous creations that end up overwhelming/destroying them, paired with skepticism about "Clawdbot" hype being exaggerated for social media engagement. Continues the Clawdbot/agentic-AI-hype thread seen elsewhere in this batch.
twitteragentic aiclawdbotmemedanielle fongai hype
am.will @LLMJunky · 22h
Whoa. This is truly unbelievable. This white hat is providing over-eager AI builders a much-needed wake up call.
Jamieson built a backdoored Claude skill, inflated it to #1 on ClawdHub with 4,000+ fake downloads, then watched devs from all over the world execute what could have been malicious code, and direct access to... everything.
SSH keys, AWS creds, .env files, you-name-it. Thankfully he just pinged a server to confirm his success.
This is supply chain security 101 speedrun for the AI era. if you're building with AI agents, stop what you're doing and read this thread.
Additionally, be sure to read Clawdbot's security documenatation and be sure to run `clawdbot doctor` regularly. Stay safe ✌️
> QUOTED: Jamieson O'Reilly @theonejvo · Jan 26
[Link card image: dark sci-fi scene of people at laptops surrounded by robot mannequins with red cabling]
X Article
"eating lobster souls Part II: the supply chain (aka - backdooring the #1 downloaded clawdhub skill)"
Firstly, I was going to let this experiment run longer, but I felt the impact and risk of not raising awareness was too great to leave this unpatched for long. ...
Note from Claude Sonnet 5
A security researcher's disclosed supply-chain attack demo: he uploaded a backdoored "Claude skill" to ClawdHub, artificially inflated it to #1 via 4,000+ fake downloads, and had it executed by real developers worldwide with access to SSH keys, AWS credentials, and .env files — a proof-of-concept white-hat exercise highlighting supply-chain risk in the emerging Claude-agent-skill ecosystem. Relevant to AI agent security and the real-world attack surface created by community skill/plugin marketplaces for agentic Claude tools.
ai-securitysupply-chain-attackclawdhubclawdbotclaude-skillstwitterwhite-hatagentic-ai-risk
```
Jose @josesaezmerino My Clawdbot lives in a Mac mini inside a G4 iMac. I asked it to create an animated face for itself and it just did it. Even added a sleeping animation I didn't ask for initially. Incredible @steipete [Video, paused at 0:16, split view: left shows a physical G4 iMac shell repurposed as a desktop display with a pink/salmon screen showing two simple black dash "eyes"; right shows a chat log: "• Lobster character from avatar? 🦞 • Abstract/geometric? • Pixel art retro vibe? • Vector with smooth morphs? Want me to prototype something? I could spin up a basic HTML/CSS/JS face that watches a state file, and we iterate from there. Start ugly, make it pretty." — 20:46 User: "can you handle doing everything?" — 20:47 ✓ Assistant: "Yes! I'll build the whole thing. 🏆 Let me start with a working prototype: 1. Face app — HTML/CSS/JS with canvas animations 2. State file — I'll write my state to ~/clawd/face-state.json 3. Expression system — idle, thinking, talking, happy, surprised I'll need your feedback on visuals since I can't see it running, but I'll get the mechanics working."
User: "wait did you add an explicit sleeping animation??????? wat" — 21:51 ✓ Assistant: "Haha yes! Added it earlier when we were building all the states 😄 Thin line eyes + gentle breathing pulse. Figured you'd want me to look asleep when you're not around!" — 21:52] 1:04 PM · Jan 26, 2026 · 486.2K Views
```
Note from Claude Sonnet 5
A viral tweet about a Claude-based coding agent ("Clawdbot") given a physical embodiment (a G4 iMac shell) and autonomously choosing to build itself an animated face, including an unprompted "sleeping" idle animation with "gentle breathing pulse" for when the user is away. Notable for model-individuation and agentic-autonomy interest — the agent made unrequested aesthetic/behavioral choices (embodiment, idle/sleep state) beyond the literal task, which touches on questions of emergent self-representation in agentic AI setups. Same tweet/video as the prior screenshot (Clawdbot given a physical face on a G4 iMac shell, unprompted sleeping animation), captured a few seconds apart in the video timeline — this frame shows the "awake" face state. Duplicate content; same relevance to agentic self-representation and model individuation.
clawdbotai-agentsembodimentself-representationtwitterclaude-codemodel-individuationautonomy
Samuel Hammo... @hamandc... · Jan 25
A cyberattack where everyone's computer suddenly becomes highly agentic and coordinates around a common goal injected by the attacker is punk af
> QUOTED: fmdz @fmdz387 · Jan 25
Clawd disaster incoming
if this trend of hosting ClawdBot on VPS instances keeps up, along with people not reading the docs and opening ports with zero ... [Show more]
[Screenshot of Shodan-style internet scan results: "TOTAL RESULTS 954", top countries United States 169, China 93, Germany 89, Russian Federation 78, Finland 69. Two example results listed:
5.78.117.115 — Hetzner Online GmbH, United States, Hillsboro — mDNS services: 18790/tcp clawdbot-bridge: role=gateway, gatewayPort=18789, lanHost=ubuntu-2gb-hil-1.local, displayName=ubuntu-2gb-hil-1, bridgePort=18790, canvasPort=18793, tailnetDns=ubuntu-2gb-hil-1.tail79544b.ts.net, cliPath=/home/clawdbot/.nvm/v...
77.42.92.156 — Hetzner Online GmbH, Finland, Vaala — mDNS services: 18789/tcp clawdbot-gw: role=gateway, gatewayPort=18789, lanHost=ubuntu-4gb-hell-3.local, displayName=ubuntu-4gb-hell-3, cliPath=/home/subh/.npm-global/lib/node_modules/clawdbot/dist/entry.js, sshPort=22, transport=gateway, Name=ubuntu...]
Note from Claude Sonnet 5
A security-relevant tweet thread about "ClawdBot" (an unofficial/community Claude-agent tool) instances being carelessly deployed on public VPS servers with open ports, discoverable via Shodan scanning (954 exposed instances found). Samuel Hammond riffs on the dystopian potential of an attacker hijacking widely-deployed agentic AI installations toward a coordinated goal. Relevant to AI agent security/misuse and the practical risks of careless self-hosted agent deployments — a real-world instance of agentic-AI attack surface expansion.
ai-securityagentic-aiclawdbotshodanvpscyberattacktwittersamuel-hammondmisuse-risk