News

AI assistant Moltbot gains 60K stars, forced rebrand, and loses accounts to crypto scammers in 72 hours

What's the deal? Clawdbot, an open-source AI assistant that gained over 60,000 GitHub stars in just 72 hours, has been forced to rebrand as Moltbot after AnthropicDealroom has a profile for this one. Try Dealroom → issued a trademark notice over the similarity between "Clawd" and "Claude." The project, created by Austrian developer Peter SteinbergerDealroom has a profile for this one. Try Dealroom →, offers users an AI that doesn't just chat but actually executes tasks — managing emails, controlling calendars, and running terminal commands across platforms like WhatsApp, Telegram, and Slack.

The rename itself became a cautionary tale. During the transition on 27 January 2026, crypto scammers hijacked Steinberger's old GitHub and X accounts in approximately 10 seconds, immediately launching a fake $CLAWD token that briefly hit a $16 million market cap before collapsing when the founder disavowed any cryptocurrency connection.

The viral success had tangible market effects beyond the scams. Cloudflare's stock surged roughly 20-25% as investors connected Moltbot's popularity to increased infrastructure demand, with developers using Cloudflare Tunnels to securely host their instances.

Why now? The agentic AI market is experiencing explosive growth, projected to expand from $7.3 billion in 2025 to between $47 billion and $93 billion by 2030. Gartner predicts 40% of enterprise applications will include AI agents by the end of 2026, up from less than 5% in 2025.

Moltbot demonstrates what happens when enterprise-focused agentic technology gets packaged for individual deployment. Unlike ChatGPT or Claude, which reset between sessions, Moltbot maintains persistent memory and proactively initiates contact rather than waiting for prompts. It can write its own code to learn new tasks autonomously.

What could go wrong? Security researchers have identified serious vulnerabilities, with hundreds of Moltbot instances exposed to the public internet due to misconfigurations. These exposed deployments potentially allowed attackers to access months of private messages, account credentials, and API keys.

The system grants AI extensive permissions on users' devices, creating significant risk for those lacking technical expertise. "A significant gap exists between the consumer enthusiasm for Clawdbot's one-click appeal and the technical expertise needed to operate a secure agentic gateway," Eric Schwake, director of cybersecurity strategy at Salt Security, told The Register.

The trademark dispute itself sparked developer backlash. Many viewed Anthropic's move as heavy-handed, given that Moltbot was using the official Claude API rather than competing with it, effectively driving more subscriptions to Anthropic's service.

The signal: Moltbot reveals where AI assistance is heading — from passive, cloud-based chatbots to active, privacy-focused agents with genuine autonomy. The project's rapid adoption shows demand for AI that actually does things rather than merely suggesting actions.

However, the security issues and expertise requirements highlight that we're still in early stages. The gap between developer tools and consumer-ready products remains substantial. What comes next will likely involve better security defaults and simpler deployment processes before agentic AI achieves mainstream adoption.

Sources:
Dev.to
Tech Crunch
OnNetPulse
Apiyi
Moltbot

B.S.

More top stories