OpenClaw Security Crisis: 135K Exposed Instances, RCE, AMOS Stealer
OpenClaw security crisis escalates: CNCERT China March 2026 alert warns of 220K+ unprotected instances exposed to public internet (up from 135K in February). CVE-2026-25253 CVSS 8.8 RCE, AMOS Stealer targeting macOS users. Microsoft recommends isolated VM only. 156 total security advisories in jgamblin tracker.
Score Breakdown
Social Proof 7 sources
Existing Solutions 4 competitors
Open-source security layer with 55 automated checks covering gateway auth, CVE patching, skill supply chain scanning.
OpenClaw variant with minimal attack surface โ isolates agents inside containers instead of running with broad system permissions.
Enterprise AI agent security platform by Cisco addressing OpenClaw runtime risks.
Kernel-level sandbox with deny-by-default network access and YAML policy enforcement for OpenClaw agents.
Gap Assessment
SecureClaw, NanoClaw, Cisco DefenseClaw, Palo Alto, NVIDIA OpenShell all address this. Well-covered by established vendors.