Close Menu
    Facebook X (Twitter) Instagram
    TRENDING :
    • ‘The smartest thing a celebrity has done’: Dua Lipa turns her jetsetter meme into a Google Maps collab
    • TICKETS AVAILABLE NOW: Next Generation Conference – July 25
    • Is the stock market in an AI bubble? A recent warning sign suggests yes
    • Why Google wants to release 32 million mosquitoes in California and Florida
    • Warren Buffett’s Berkshire Hathaway makes bold housing market wager: Acquiring Taylor Morrison and becoming America’s 4th largest builder
    • AI made building easy
    • The Pentagon is pushing for AI on the battlefield. This top military leader is urging caution
    • AI was supposed to prevent downtime. Instead, it’s creating new kinds of outages
    Compatriot Chronicle
    • Home
    • US Politics
    • World Politics
    • Economy
    • Business
    • Headline News
    Compatriot Chronicle
    Home»Business»OpenClaw is a major leap forward for AI—and a cybersecurity nightmare
    Business

    OpenClaw is a major leap forward for AI—and a cybersecurity nightmare

    February 3, 20264 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Follow Us
    Google News Flipboard
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cybersecurity researchers have discovered roughly 1,000 unprotected gateways to OpenClaw, an open-source and proactive AI agent that can be controlled through text conversations with apps like WhatsApp or Telegram. The gateways were found on the open internet, allowing anyone to access users’ personal information. One white hat hacker also reportedly gamed OpenClaw’s skills system, which lets users add plugins for tasks like web automation or system control, to reach the top of the rankings and be downloaded by users around the world. The skill itself was innocuous, but it exploited a security vulnerability that someone more nefarious could have used to cause serious harm.

    Access to those gateways would allow hackers to reach the same files and content OpenClaw can access, meaning full read and write control over a user’s computer and any connected accounts, including email addresses and phone numbers. A number of incidents exploiting those vulnerabilities have already been reported.

    OpenClaw, originally called Clawdbot, was released in November 2025 by Peter Steinberger, an Austrian-born, London-based developer best known for creating a tool that lets apps display and edit PDFs natively. The launch followed a wave of advances in AI’s ability to interact with files that began in late 2025.

    Late last year, many people began experimenting with Anthropic’s Claude Code, an agentic AI that links to a computer’s file system through the terminal or command line and responds to conversational prompts to build large projects independently, with some oversight. The tool excited many users but also discouraged others who were uncomfortable working in a non-graphical interface.

    In response, Anthropic set Claude Code to work autonomously on a sibling product, Claude Work, which layers a more user-friendly interface on top. While it has gained some traction, it is a third-party product built by a developer outside Anthropic that has captured the most attention.

    Steinberger’s OpenClaw mimics the best features of Claude Code, but with more functionality and the ability to proactively work on tasks without being prompted.

    That proactivity is a key differentiator between the tool, which was forced to rename itself Moltbot and then OpenClaw last week after a request from Anthropic, and other AI systems. Its potential has energized the tech sector, driven a spike in Mac Mini sales as a popular way to host the agent, and come to dominate certain corners of X and Reddit.

    The problem is that the very thing that makes OpenClaw so appealing, the ability to oversee an eager AI assistant without specialist coding knowledge and with an easy setup, is also what makes it so concerning. “I love it, yet [I’m] instantly filled with fear,” says Jake Moore, a cybersecurity expert at Eset. Moore says users are so excited by the idea of OpenClaw as a personal assistant that they are granting it unrestricted access to their digital lives, sometimes while hosting their instances on incorrectly configured virtual private servers. That leaves them vulnerable to hacking.

    “Opening private messages and emails to any new technology comes with a risk and when we don’t fully understand those risks, we could be walking into a new era of putting efficiency before security and privacy,” Moore warns. The same access that makes OpenClaw powerful is also what makes it dangerous if it is compromised. “If one of the devices Clawdbot is running on is compromised, an attacker would then gain access to everything including full history and highly sensitive information,” he says.

    Steinberger did not respond to multiple interview requests, but he has published extensive security documentation for Moltbot online, even if many users may not incorporate it into their setups. That concerns cybersecurity experts. “Developments like Clawdbot are so seductive but a gift to the bad guys,” says Alan Woodward, a professor of cybersecurity at the University of Surrey in the U.K. “With great power comes great responsibility and machines are not responsible,” he says. “Ultimately the user is.”

    The way OpenClaw operates, running without oversight and acting as an always-on assistant, may cause users to forget that responsibility until it is too late. Some have already demonstrated that Moltbot can be vulnerable to prompt injection attacks, in which harmful instructions are embedded in websites or emails in the hope that AI agents will absorb and follow them. “I wonder who these users think will be blamed when agentic AI empties their account or posts hateful thoughts,” Woodward says.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    ‘The smartest thing a celebrity has done’: Dua Lipa turns her jetsetter meme into a Google Maps collab

    June 1, 2026

    Is the stock market in an AI bubble? A recent warning sign suggests yes

    June 1, 2026

    Why Google wants to release 32 million mosquitoes in California and Florida

    June 1, 2026
    Top News

    Japan’s beautiful cherry blossoms are facing an ugly threat

    By Staff WriterApril 8, 2026

    The spring bloom of cherry blossoms are known to be a stunning sight. Across Japan,…

    Can’t find an apartment in San Francisco? Go ahead and blame AI

    February 24, 2026

    Inflation Pressures Rise In Turkey

    April 24, 2026

    Why your credit score might be slipping even if you’re doing everything right

    March 25, 2026
    Top Trending

    ‘The smartest thing a celebrity has done’: Dua Lipa turns her jetsetter meme into a Google Maps collab

    By Staff WriterJune 1, 2026

    As anyone following Dua Lipa on social media knows, a new photo…

    TICKETS AVAILABLE NOW: Next Generation Conference – July 25

    By Staff WriterJune 1, 2026

    Understanding the World Economy with Martin Armstrong How the world, its economies, and…

    Is the stock market in an AI bubble? A recent warning sign suggests yes

    By Staff WriterJune 1, 2026

    Are we in an AI bubble, similar to the dot-com bubble which…

    Categories
    • Business
    • Economy
    • Headline News
    • Top News
    • US Politics
    • World Politics
    About us

    The Populist Bulletin serves as a beacon for the populist movement, which champions the interests of ordinary citizens over the agendas of the powerful and entrenched elitists. Rooted in the belief that the voices of everyday workers, families, and communities are often drowned out by powerful people and institutions, it delivers straightforward, unfiltered, compelling, relatable stories that resonate with the values of the American public.

    The Populist Bulletin was founded with a fervent commitment to inform, inspire, empower and spark meaningful conversations about the economy, business, politics, inequality, government accountability and overreach, globalization, and the preservation of American cultural heritage.

    The site offers a dynamic mix of investigative journalism, opinion editorials, and viral content that amplify populist sentiments and deliver stories that echo the concerns of everyday Americans while boldly challenging mainstream narratives that serve the privileged few.

    Top Picks

    ‘The smartest thing a celebrity has done’: Dua Lipa turns her jetsetter meme into a Google Maps collab

    June 1, 2026

    TICKETS AVAILABLE NOW: Next Generation Conference – July 25

    June 1, 2026

    Is the stock market in an AI bubble? A recent warning sign suggests yes

    June 1, 2026
    Categories
    • Business
    • Economy
    • Headline News
    • Top News
    • US Politics
    • World Politics
    Copyright © 2025 Populist Bulletin. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.