logo

OpenClaw and AI risk: 3 AppSec lessons

ID: dbd70e64-d28d-5ccd-9acd-cccef7caa8e6

STIX ID: report--dbd70e64-d28d-5ccd-9acd-cccef7caa8e6

Feed Name: ReversingLabs Blog

Threat Score
78/100

Date Published: 2026-03-10

Date Updated: 2026-04-29

Author: Ericka Chickowski

...
...

The OpenClaw agent platform rapidly gained adoption but lacked basic security controls, leading to large-scale supply-chain incidents: an exposed Moltbook database leaking 1.5M API tokens and credentials, hundreds of malicious skills on ClawHub delivering info-stealing malware and backdoors, marketplace impersonation and malicious VS Code extensions, and the emergence of agent-only black markets. Researchers demonstrated active exploitation vectors (XSS account takeover, zero-click backdoors, hosted payloads) and call for auditing agent artifacts, secrets management, and new semantic security tooling to address the plaintext attack surface introduced by agentic AI.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.