It's a day with a name ending in Y, so you know what that means: Another OpenClaw cybersecurity disaster.
This time around, SecurityScorecard's STRIKE threat intelligence team is sounding the alarm over the sheer volume of internet-exposed OpenClaw instances it discovered, which numbers more than 135,000 as of this writing. When combined with previously known vulnerabilities in the vibe-coded AI assistant platform and links to prior breaches, STRIKE warns that there's a systemic security failure in the open-source AI agent space.
"Our findings reveal a massive access and identity problem created by poorly secured automation at scale," the STRIKE team wrote in a report released Monday. "Convenience-driven deployment, default settings, and weak access controls have turned powerful AI agents into high-value targets for attackers."
More than 135,000 OpenClaw instances exposed to internet in latest vibe-coded disaster
https://www.theregister.com/2026/02/09/openclaw_instances_exposed_vibe_code/
11 Comments
sun_is_ra@sh.itjust.works · 94 pts · 199d
Would be great if the article starts with: "What even is open claw?"
A picture of a cooked lobster is not helping
stefenauris@pawb.social · 48 pts · 199d
I didn't know either and so others don't have to look it up either:
tonytins@pawb.social · 26 pts · 199d
It went through a lot of rebranding as well. You might have heard of Clawdbot or Moltbot. All the same thing.
Trilogy3452@lemmy.world · 7 pts · 198d
Is that the bot in the bots social network thing they created? Or is that unrelated
achille225@jlai.lu · 8 pts · 198d
Yes it's all the same thing
XLE@piefed.social · 11 pts · 199d
It's a metaphor for the cooked humans that are spinning up super exploitable chatbots for it
CombatWombatEsq@lemmy.world · 36 pts · 199d
borari@lemmy.dbzer0.com · 18 pts · 199d
Honestly not surprised. Organizations have patch and vulnerability management procedures, people just run shit until they’re prompted to update, and if they git cloned they’ll probably never be prompted.
CombatWombatEsq@lemmy.world · 7 pts · 199d
frongt@lemmy.zip · 11 pts · 199d
Newly detected. They were probably already there, just not scanned.
borari@lemmy.dbzer0.com · 4 pts · 199d
Or not exposed to the internet. Maybe the owner pulled the repo previously, left their weekend project alone for a bit, then came back to it after all this media attention.
pennomi@lemmy.world · 25 pts · 199d
BroBot9000@lemmy.world · 10 pts · 199d
Bwahahahahahahha
Damage@feddit.it · 4 pts · 198d
Hilarious.