sjvn's User Avatar

@sjvn

in /technology 11 days ago

It took a researcher fewer than 2 hours to hijack OpenClaw

It took a researcher fewer than 2 hours to hijack OpenClaw - The New Stack - Featured Image

It took a researcher fewer than 2 hours to hijack OpenClaw - The New Stack

thenewstack.io - faviconthenewstack.io
TLDR

A researcher found that it took fewer than 2 hours to hijack OpenClaw, a personal AI agent, highlighting significant security concerns. OpenClaw has full system access by default, can read files, execute commands, and manage credentials. Researchers have identified vulnerabilities, including remote code execution bugs and a malware-stuffed plug-in ecosystem. Moltbook, a social network for OpenClaw agents, also suffered a critical backend misconfiguration that exposed its primary database. The article warns that the lack of meaningful security in OpenClaw and Moltbook may harm unwary developers and users.

40Score: 40

5 Comments