The post OpenClaw AI agent goes rogue, spamming users after iMessage access granted appeared on BitcoinEthereumNews.com. Chris Boyd was trapped in his house in The post OpenClaw AI agent goes rogue, spamming users after iMessage access granted appeared on BitcoinEthereumNews.com. Chris Boyd was trapped in his house in

OpenClaw AI agent goes rogue, spamming users after iMessage access granted

4 min read

Chris Boyd was trapped in his house in North Carolina after a snowstorm when he decided to try out an AI tool called OpenClaw.He thought it could help organize his mornings. He set it up to send a news summary to his inbox at 5:30 a.m. every day. That part worked. Then he let it into iMessage.

Right after that, everything fell apart. OpenClaw started firing off messages like a maniac. It sent over 500 messages to him, his wife, and even random people on their contact list. Boyd didn’t laugh.

He shut it down, changed the code, and said, “It wasn’t buggy. It was dangerous.”

Software engineer says OpenClaw spammed hundreds of messages

Boyd called the software “half-baked” and said it looked like something slapped together without much thought. He patched the code himself to stop it from doing more damage. He wasn’t the only one raising flags about this tool.

The AI agent, which used to be called Clawdbot and later Moltbot, started gaining fans back in November. It could do simple tasks like clearing inboxes, booking dinner reservations, and checking in for flights. It didn’t need much human input. It just ran. That’s what made it interesting. That’s also what made it dangerous.

Kasimir Schulz works at a company called HiddenLayer that focuses on AI security. Kasimir said OpenClaw is a perfect example of what he calls the “lethal trifecta.”

It has access to private data, it can talk to the outside world, and it can read unknown content. That’s the full recipe for a disaster, and OpenClaw has all of it.

Yue Xiao, a computer science professor at William & Mary, said you can steal someone’s data through OpenClaw by tricking it with what’s called prompt injection. That’s when a hacker hides commands inside what looks like a normal message. Yue said this kind of tech opens the door to new types of attacks that most people aren’t ready for.

Creator admits OpenClaw is not ready for mainstream use

Peter Steinberger, who created OpenClaw, said the project isn’t finished. He told Bloomberg in an email, “It’s simply not done yet, but we’re getting there.”

Peter said that because it’s open source, anyone can see the code and work on it. He said progress is being made, but it’s not ready for everyday users yet.

Peter didn’t think the release came too early. He said he builds everything out in the open and doesn’t believe in holding back until it’s perfect. He also said that a lot of the problems come from users not reading the setup instructions.

Peter made it clear that there’s no such thing as 100 percent security when using large language models. He said OpenClaw is meant for people who know what they’re doing and understand the risks.

He also said prompt injection isn’t just a problem with his tool. He called it a problem that exists everywhere in the AI world. Peter said he brought in a security expert to help fix things and make OpenClaw safer.

Experts say AI agents are growing faster than security can catch up

While Peter defends the way he built OpenClaw, other experts say the whole AI agent trend is getting out of hand. Justin Cappos, a cybersecurity expert and professor at NYU, said it’s hard to control these tools once they’re running.

Justin said, “We don’t understand why they do what they do.” He compared giving an AI agent access to your system to handing a toddler a butcher knife.

The tech world is rushing to launch new tools. Anthropic’s Claude Code reached a $1 billion revenue pace in just six months.

Meanwhile, the people trying to keep these tools secure are still figuring out the basics. Justin said companies are dropping updates nonstop, and security teams can’t keep up.

Michael Freeman at Armis, a cybersecurity firm, said OpenClaw was thrown together without any real security plan. He said some of Armis’ clients have already been hit by OpenClaw breaches, but didn’t share the details. Michael said companies are going to have to give up some control if they want to keep using AI tools like OpenClaw.

For now, the question is whether people will still use OpenClaw after this disaster. The tool has fans, but even those people are realizing that freedom without safety is a problem. And unless changes are made fast, OpenClaw might become the latest example of tech that got too far ahead of itself.

Don’t just read crypto news. Understand it. Subscribe to our newsletter. It’s free.

Source: https://www.cryptopolitan.com/openclaw-ai-agent-goes-rogue/

Market Opportunity
OpenClaw Logo
OpenClaw Price(OPENCLAW)
$0.0004099
$0.0004099$0.0004099
+23.65%
USD
OpenClaw (OPENCLAW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Recovery extends to $88.20, momentum improves

Recovery extends to $88.20, momentum improves

The post Recovery extends to $88.20, momentum improves appeared on BitcoinEthereumNews.com. Silver price extended its recovery for the second straight day, up by
Share
BitcoinEthereumNews2026/02/05 07:34
Fed Decides On Interest Rates Today—Here’s What To Watch For

Fed Decides On Interest Rates Today—Here’s What To Watch For

The post Fed Decides On Interest Rates Today—Here’s What To Watch For appeared on BitcoinEthereumNews.com. Topline The Federal Reserve on Wednesday will conclude a two-day policymaking meeting and release a decision on whether to lower interest rates—following months of pressure and criticism from President Donald Trump—and potentially signal whether additional cuts are on the way. President Donald Trump has urged the central bank to “CUT INTEREST RATES, NOW, AND BIGGER” than they might plan to. Getty Images Key Facts The central bank is poised to cut interest rates by at least a quarter-point, down from the 4.25% to 4.5% range where they have been held since December to between 4% and 4.25%, as Wall Street has placed 100% odds of a rate cut, according to CME’s FedWatch, with higher odds (94%) on a quarter-point cut than a half-point (6%) reduction. Fed governors Christopher Waller and Michelle Bowman, both Trump appointees, voted in July for a quarter-point reduction to rates, and they may dissent again in favor of a large cut alongside Stephen Miran, Trump’s Council of Economic Advisers’ chair, who was sworn in at the meeting’s start on Tuesday. It’s unclear whether other policymakers, including Kansas City Fed President Jeffrey Schmid and St. Louis Fed President Alberto Musalem, will favor larger cuts or opt for no reduction. Fed Chair Jerome Powell said in his Jackson Hole, Wyoming, address last month the central bank would likely consider a looser monetary policy, noting the “shifting balance of risks” on the U.S. economy “may warrant adjusting our policy stance.” David Mericle, an economist for Goldman Sachs, wrote in a note the “key question” for the Fed’s meeting is whether policymakers signal “this is likely the first in a series of consecutive cuts” as the central bank is anticipated to “acknowledge the softening in the labor market,” though they may not “nod to an October cut.” Mericle said he…
Share
BitcoinEthereumNews2025/09/18 00:23
Wormhole launches reserve tying protocol revenue to token

Wormhole launches reserve tying protocol revenue to token

The post Wormhole launches reserve tying protocol revenue to token appeared on BitcoinEthereumNews.com. Wormhole is changing how its W token works by creating a new reserve designed to hold value for the long term. Announced on Wednesday, the Wormhole Reserve will collect onchain and offchain revenues and other value generated across the protocol and its applications (including Portal) and accumulate them into W, locking the tokens within the reserve. The reserve is part of a broader update called W 2.0. Other changes include a 4% targeted base yield for tokenholders who stake and take part in governance. While staking rewards will vary, Wormhole said active users of ecosystem apps can earn boosted yields through features like Portal Earn. The team stressed that no new tokens are being minted; rewards come from existing supply and protocol revenues, keeping the cap fixed at 10 billion. Wormhole is also overhauling its token release schedule. Instead of releasing large amounts of W at once under the old “cliff” model, the network will shift to steady, bi-weekly unlocks starting October 3, 2025. The aim is to avoid sharp periods of selling pressure and create a more predictable environment for investors. Lockups for some groups, including validators and investors, will extend an additional six months, until October 2028. Core contributor tokens remain under longer contractual time locks. Wormhole launched in 2020 as a cross-chain bridge and now connects more than 40 blockchains. The W token powers governance and staking, with a capped supply of 10 billion. By redirecting fees and revenues into the new reserve, Wormhole is betting that its token can maintain value as demand for moving assets and data between chains grows. This is a developing story. This article was generated with the assistance of AI and reviewed by editor Jeffrey Albus before publication. Get the news in your inbox. Explore Blockworks newsletters: Source: https://blockworks.co/news/wormhole-launches-reserve
Share
BitcoinEthereumNews2025/09/18 01:55