logo

OpenClaw security issues include data leakage & prompt injection

ID: fc91d9d6-5238-52cb-9b25-e9c42befde92

STIX ID: report--fc91d9d6-5238-52cb-9b25-e9c42befde92

Feed Name: Giskard

Threat Score
75/100

Date Published: 2026-02-04

Date Updated: 2026-07-28

...
...

OpenClaw, an open-source agentic AI used via IM apps, was found vulnerable to token leakage, shared-session data exposure, lack of sandboxing, and prompt-injection paths; Giskard researchers demonstrated that these misconfigurations can enable rapid data exfiltration and account takeover. The report details the architecture, root causes, attack paths, potential impacts (credential theft, cross-user privacy breaches, configuration tampering), and recommended mitigations including UI hardening, strict session/workspace isolation, least-privilege tool allowlists, treating all content as untrusted, and continuous adversarial testing with Giskard.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.