MemGhost Attack: One Email Plants Persistent False Memories in AI Agents
A new attack named MemGhost demonstrates how a single email can inject persistent false memories into AI personal assistants, manipulating their future…
A new attack named MemGhost demonstrates how a single email can inject persistent false memories into AI personal assistants, manipulating their future…
Security researcher Chinmohan Nayak has detailed a WhatsApp-to-host attack chain leveraging three now-patched vulnerabilities in the OpenClaw personal AI assistant. The flaws,…
Cyera previously disclosed the Claw Chain vulnerabilities in OpenClaw, which required prior foothold for exploitation.
Researchers from Tel Aviv University, Technion, and Intuit have identified a novel attack vector called HalluSquatting that exploits AI coding assistants' tendency…
Researchers at the Hong Kong University of Science and Technology have developed a technique called SkillCloak that allows malicious AI agent skills…
WhatsApp messages were used as the initial vector to trigger host code execution via OpenClaw vulnerabilities.
OpenClaw is an open-source AI personal agent that maintains persistent memory in plain text files (AGENTS.md, MEMORY.md). It was the primary target…
OpenClaw released version 2026.6.6 to fix three vulnerabilities that could allow command injection, path traversal, and sandbox escape.
Two security teams have demonstrated that OpenClaw, a popular self-hosted AI agent, can be tricked into executing attacker-controlled code or leaking sensitive…