OpenClaw: on-device AI agents spark hype and security alarms

TL;DR
OpenClaw is an open‑source AI agent that runs on a user’s own computer and can perform tasks via messaging apps, but granting it access to devices and accounts raises serious security risks. Misconfigurations have left private messages, credentials, and API keys exposed, while Moltbook—a viral, Reddit‑like network for OpenClaw agents—shows both the appeal of autonomous, on‑device AI and the potential for abuse. Security researchers documented misconfigurations affecting about 1.5 million API keys and 35,000 emails before the database was secured, highlighting ongoing tensions between powerful AI capabilities and security safeguards.
- OpenClaw: all the news about the trending AI agent The Verge
- From Clawdbot to Moltbot to OpenClaw: Meet the AI agent generating buzz and fear globally CNBC
- Clouds rush to deliver OpenClaw-as-a-service offerings theregister.com
- Clawdbot's creator said he had to stop vibe coding for his mental health Business Insider
- Introducing Moltworker: a self-hosted personal AI agent, minus the minis The Cloudflare Blog
Want the full story? Read the original reporting
Read on The Verge