4 ms·
I really don’t understand the widespread adoption of OpenClaw when a simple prompt injection in an email, chat message, or calendar event has the potential to l
by brysonreece 8mo ago
I really don’t understand the widespread adoption of OpenClaw when a simple prompt injection in an email, chat message, or calendar event has the potential to leak the credentials/keys for every attached service.
- throwaway613746 8mo ago[dead]
- pigpop 8mo agoThere are going to be some incredible blow ups due to this. From the sound of it people think they're safe by running it with local models and keeping it on their own network but seem to have zero concept of a malicious text prompt finding its way in and turning it into a double agent who figures out how to exfiltrate data.
- fintechie 8mo agoThis... OpenClaw is the best thing to happen to security and forensic firms since Windows XP. The amount of hacks, data/credential leaks, etc to come out of this will be of unfathomable proportions.
- 8cvor6j844qw_d6 8mo agoI've found out some people are directly pasting API keys in chat to have OpenClaw set up some stuff.
- dvfjsdhgfv 8mo agoParadoxically this is good in long term. A series of massive fuckups reported by mainstream media has more educational value than disclaimers or warnings by competent people.
- Havoc 8mo agoYeah still surprised how keen people are to connect it to their email etc.