OpenClaw Founder Responds, Confirming 360’s Exclusive Discovery of a Security Flaw
11 hour ago / Read about 0 minute
Author:小编   

On March 22, the 360 Security Cloud team received an official email from Peter, the founder of OpenClaw, verifying that 360 had exclusively uncovered a zero-day vulnerability in the OpenClaw Gateway WebSocket. This vulnerability enables unauthorized upgrades without authentication. In response, 360 promptly reported this high-risk security issue to the China National Vulnerability Database (CNVD), aiming to eliminate the potential risk at its source. The vulnerability allows attackers to bypass authentication checks and take control of the smart agent gateway, which could result in the depletion or crash of the target system's resources.