More than 135,000 OpenClaw instances exposed to internet in latest vibe-coded disaster
ID: 87478549-e072-507c-b164-5bba2552a966
STIX ID: report--87478549-e072-507c-b164-5bba2552a966
Feed Name: The Register (Security)
SecurityScorecard's STRIKE team found a massive number of internet-exposed OpenClaw instances (reported >135,000) with tens of thousands vulnerable to a known RCE; the platform's skill store contains malicious modules capable of stealing API keys, credit cards, and PII, and many exposed instances are linked to prior breaches and known threat actor IPs, creating a systemic, high-scale risk that requires immediate mitigations (e.g., binding to localhost and restricting access).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
