PROMPT INJECTION
Prompt injection moved downstream
Retrieval, orchestration, and hidden instructions are the new weak point.
Read researchAI SECURITY RESEARCH
Prompt injection, agent abuse, exposed surfaces, and release risk.
THIS WEEK
Each signal answers three questions: what the attack path is, where the exposure lives, and how to handle it.
PROMPT INJECTION
Retrieval, orchestration, and hidden instructions are the new weak point.
Read researchTOOL ABUSE
Fetch, shell, subprocess, and connectors decide how far a prompt can go.
Browse archivePUBLIC EXPOSURE
OpenClaw shows which endpoints, docs, and agent interfaces are reachable now.
Open OpenClawTHREAT SURFACE
The surfaces where AI risk becomes reachable.
CURRENT TRACKING
Instruction override, hidden tool calls, indirect poisoning, and retrieval chains.
Shell execution, downloader chains, connector misuse, and runtime permissions.
Leaked API keys, unsafe logs, public config artifacts, and long-lived credentials.
Open docs, unauthenticated endpoints, and exposed agent interfaces.
PROOF LAYER
OpenClaw turns public exposure into a trackable board: target, issue, risk level, and current status.
INFRASTRUCTURE
Small tools around the same AI security surface.
RESEARCH
High-signal research on AI exploit paths, exposed surfaces, and ship risk.
UpdatedCONTROL PLANE
Policy, scanning, and release decisions for AI systems.
AlphaSCANNER
Evidence-first scanning across repos, prompts, connectors, and surfaces.
Research-drivenGATE
Release gates for risky AI changes.
AlphaVERIFY
Detect AI-generated content across image, text, audio, and video.
Live