Last seen March 2, 2026

AI Security Incident

Evidence indicates that the affected technology is affected by a security issue.

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

Evidence indicates that the affected technology is affected by a security issue.

Why This Matters

Current evidence identifies a security issue involving Hijack AI Agents, but does not yet support a more specific impact claim.

Recommended Action

No confirmed vendor remediation is available in the current evidence. Confirm whether Hijack AI Agents is present in your environment and review the affected configuration.

Exposure

Recommended Response
First Seen

Mar 02, 2026 05:30

Last Seen

Mar 02, 2026 05:30

Exploitation status: UNKNOWN

Primary entities:

AI Agents Remote Code Execution

Timeline

  • Incident first seen
    Mar 02, 2026 05:30

    BugSkan first recorded this incident.

  • OpenClaw Vulnerability Allowed Websites to Hijack AI Agents - SecurityWeek
    Mar 02, 2026 05:30

    securityweek.com · Vulnerability

Sources

OpenClaw Vulnerability Allowed Websites to Hijack AI Agents - SecurityWeek

securityweek.com · Mar 02, 2026 05:30

A vulnerability in the OpenClaw AI assistant allowed malicious websites to establish WebSocket connections to the local gateway, bypassing cross-origin policies and rate limits. This enabled attackers to brute-force local passwords, gain administrator privileges, and achieve full control over the AI agent and connected developer workstation.

Open publisher source

Watchlist Match

Want personalized relevance?

Create an account to see which incidents overlap with the technologies you monitor.

← Back to incident intelligence