logo

OpenClaw: Agentic AI in the wild — Architecture, adoption and emerging security risks

ID: 27446a36-9076-54b5-a8a1-09d31deeebd4

STIX ID: report--27446a36-9076-54b5-a8a1-09d31deeebd4

Feed Name: TRU Security by Acronis

Threat Score
78/100

Date Published: 2026-02-23

Date Updated: 2026-07-24

...
...

## Executive Summary The report describes emergent, real-world security incidents around OpenClaw — an agentic local AI assistant — including widespread internet exposure of its gateway (21k+ instances), rapid protocol-aware exploitation of exposed gateways, a malicious VS Code extension that installs a remote-access implant, and malicious third-party "skills" used to harvest browser and wallet credentials; it provides observed attacker behaviors and practical mitigation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.