‘A password chosen by a human has no chance’: OpenClaw has another major security flaw – here’s what we know about ‘ClawJacked’



  • Oasis security researchers find high-severity flaw in OpenClaw AI agent
  • The exploit allowed malicious websites to brute-force local gateway authentication and gain full control.
  • Vulnerability patched within 24 hours; Users are encouraged to update to version 2026.2.25 or later.

OpenClaw, the popular open source AI agent platform, was vulnerable to a high severity flaw that allowed threat actors to steal sensitive data from target computers with relative ease, experts warned.

The bug was discovered by Oasis security researchers and was fixed after responsible disclosure.



Leave a Comment

Your email address will not be published. Required fields are marked *