Home / Mar 02, 2026 / Story
0
#1 BleepingComputer general March 01, 2026 at 21:44 UTC

ClawJacked attack let malicious websites hijack OpenClaw to steal data

By Lawrence Abrams

AI Summary

Security researchers discovered a high-severity vulnerability called "ClawJacked" in the OpenClaw AI agent that allows malicious websites to silently brute-force access to locally running instances and take control. This represents a significant supply chain risk as AI agents become more integrated into enterprise workflows and could potentially expose sensitive data or systems to remote attackers.

Relevance score: 95.0/100

# More from March 02