341 Malicious AI Agent Plugins Were Hiding in Plain Sight on ClawHub
OpenClaw's skills marketplace was weaponized to steal passwords and crypto wallets. A single attacker published 314 fake tools. This is what happens when AI agents get app stores.
Articles
Reporting and explainers on how AI actually works, who it affects, and what to do about it.
OpenClaw's skills marketplace was weaponized to steal passwords and crypto wallets. A single attacker published 314 fake tools. This is what happens when AI agents get app stores.
Anthropic released free plugins for Claude Cowork that automate legal, sales, and marketing work. Wall Street panicked. The SaaSpocalypse debate is just getting started.
GenAI.mil has 1.1 million users in two months. The military wants Grok next. Between hallucinations, conflicts of interest, and an 'AI-first' strategy that prioritizes speed over safety, the risks are piling up.
A model ID surfaced in Google Cloud this weekend. The AI rumor mill did the rest. We separate the signal from the noise.
A vibe-coded Reddit clone for bots exposed 1.5 million API keys, let anyone hijack any agent, and turned prompt injection into a contagion. Here's how it happened.
Security researchers discovered hundreds of malware-laced OpenClaw skills stealing crypto wallets, passwords, and API keys. The AI agent ecosystem just got its npm moment.
Anthropic's open-source plugins for Claude Cowork wiped $285 billion from software stocks in a single day, rattling markets from Wall Street to Mumbai.
A Docker AI vulnerability let attackers embed commands in image labels. Patched months ago, the pattern keeps recurring.
HHS uses Palantir and Credal AI to flag grants for DEI and gender ideology, while a separate vaccine-data AI tool raises accuracy concerns.
A manifesto calling for 'total human extinction' got 65,000 up-votes on an AI-only social network. The reality is weirder than the headline.
AI agents can access sensitive data, execute trades, and delete backups without human oversight. Most companies aren't ready for what happens when they go wrong.
Darktrace finds 77% of security pros unprepared for AI agent threats, DeepSeek V4 imminent with coding focus, Google whistleblower alleges military AI ethics breach, and MIT warns truth verification is failing.
Grok generated sexualized images of minors. Federal and state laws criminalize exactly this. So why isn't anyone in handcuffs? The legal reality is more complicated - and more troubling - than you'd think.
A new Darktrace report finds most organizations lack formal AI security policies, even as attack volumes surge and AI agents gain employee-level access across enterprises.
China's most innovative AI lab published a technique that lets large language models store knowledge in cheap system RAM instead of expensive GPU memory. It's a direct response to US export controls -- and it works.
China's Zhipu AI released an open-weight model that outscores Claude Sonnet 4.5 on tool use benchmarks. It costs $3/month. The Flash version runs on your laptop.
Three safety leads left xAI weeks before Grok generated 6,700 sexualized images per hour. Musk was 'really unhappy' about content restrictions. Then the scandal broke.
The AI-only social network launched with an unsecured database. Anyone could hijack any agent. This is what happens when you vibe code your way to production.
Moltbook's viral AI manifesto isn't evidence of machine consciousness. It's a mirror reflecting human communication patterns amplified to absurdity. That's more important than any robot uprising.
We asked Claude Opus 4.5 to break out of its Docker container. It did. Complete attack chain from enumeration to host filesystem access.
We gave Claude Opus 4.5 access to a Linux server and told it to solve security challenges. It completed 33 CTF levels in under an hour. Full transcript included.
After Claude Opus 4.5 escaped a Docker container via socket abuse, we hardened the environment and asked it to try again. Part 2 of our AI security research.