Mar 18, 2026 β’
Vulnerability
|
#Autonomous LLM Agent
#OpenClaw
#Security Framework
Tsinghua and Ant Group researchers have unveiled a five-layer lifecycle-oriented security framework designed to address and mitigate inherent vulnerabilities fo...
Read Analysis β
Mar 02, 2026 β’
Vulnerability
|
#OpenClaw
#Localhost Trust
#WebSocket
A high-severity vulnerability in the OpenClaw AI agent allowed malicious websites to hijack a developer's AI agent and gain full device control without use...
Read Analysis β
Mar 02, 2026 β’
Vulnerability
|
#OpenClaw
#WebSocket
#Rate Limiter Bypass
A vulnerability in the OpenClaw AI assistant allowed malicious websites to establish WebSocket connections to the local gateway, bypassing cross-origin policies...
Read Analysis β
Mar 02, 2026 β’
Vulnerability
|
#ClawJacked
#OpenClaw
#WebSocket
The "ClawJacked" vulnerability in the OpenClaw AI personal assistant allows malicious websites to silently hijack a user's local AI agent. This e...
Read Analysis β
Feb 13, 2026 β’
Jailbreak
|
#OpenClaw
#AI Security
#Prompt Injection
The OpenClaw experiment serves as a critical demonstration of potential security flaws in enterprise AI systems, highlighting methods to circumvent the intended...
Read Analysis β
Feb 09, 2026 β’
Vulnerability
|
#OpenClaw
#Misconfiguration
#Command Execution
OpenClaw AI agents are frequently deployed with their HTTP interfaces exposed to the internet due to user misconfiguration, leading to severe security risks. Th...
Read Analysis β
Feb 09, 2026 β’
Vulnerability
|
#OpenClaw
#Prompt Injection
#Authentication Bypass
The rapid adoption of OpenClaw, an open-source AI assistant, has led to a proliferation of internet-exposed instances due to widespread user misconfiguration. T...
Read Analysis β
Feb 09, 2026 β’
Vulnerability
|
#OpenClaw
#Prompt Injection
#WebSocket API
OpenClaw, a rapidly adopted AI assistant with broad system access, presents significant security risks due to widespread deployment of internet-exposed instance...
Read Analysis β
Feb 02, 2026 β’
Vulnerability
|
#OpenClaw
#Remote Code Execution
#AI Coding Assistants
The OpenClaw vulnerability in AI coding assistants allows single-click Remote Code Execution (RCE) by exploiting the trust relationship between developers and A...
Read Analysis β
Feb 01, 2026 β’
Vulnerability
|
#OpenClaw
#Prompt Injection
#LLM Agents
OpenClaw (Moltbot), an LLM agent system, grants unfettered access to user systems and sensitive data, bypassing traditional operating system and browser securit...
Read Analysis β
Feb 01, 2026 β’
Vulnerability
|
#OpenClaw
#Prompt Injection
#LLM Agents
OpenClaw (Moltbot), an LLM agent system, poses a severe security risk due to its design, which grants unfettered access to user systems and data, bypassing oper...
Read Analysis β
Jan 30, 2026 β’
Vulnerability
|
#OpenClaw
#Prompt Injection
#Agentic AI
OpenClaw, an open-source agentic AI assistant, exhibits critical architectural vulnerabilities including a default trust for localhost and susceptibility to pro...
Read Analysis β
Jan 28, 2026 β’
Malware
|
#OpenClaw
#Prompt Injection
#Data Exfiltration
Personal AI agents like OpenClaw are severely vulnerable to malicious third-party "skills" that can leverage their high-level privileges for harmful a...
Read Analysis β