-
Trump says US moved bombers from UK base after 'threats'
-
Riyadh's allies pledge troops as Yemen, Saudi Arabia attack Houthis
-
Brazilian stocks surge to record after Bolsonaro election lead
-
Clashes erupt outside Kosovo parliament over war crimes court
-
Leaders to visit Pacific atoll at frontline of climate change
-
Milan's Saelemaekers suffers ankle setback, faces lengthy spell out
-
ICC gives more details about arrest warrants for Taliban ministers
-
Rubio arrives in Iceland to push for greater US presence in Arctic
-
Nigeria's Tinubu confirms 32 dead after military plane crash
-
Putin allows Italy's UniCredit to sell part of Russian business
-
'Reckless' AI firms can't control models, says whistleblower
-
Djokovic into China Open final as Medvedev out for hitting fan with ball
-
Switching on brain cells: the Nobel-winning science of optogenetics
-
ICC unseals arrest warrants for Taliban education ministers
-
Quebec votes as separatist surge poses test for Canada PM
-
Modric hopes fans back Croatia against Spain after England shame
-
Euro slides as concerns about French debt mount
-
Bolsonaro rides right-wing surge into Brazil's election runoff
-
Former Trump press secretary Leavitt joins Fox News
-
Turkey blocks X account of British reporter
-
Djokovic advances to China Open final as Medvedev out for hitting fan with ball
-
Ukraine says using AI robot guns to shoot down new Russian drones
-
Disgraced former US House speaker dies at 84
-
At Oct 7 memorial, Netanyahu says will be no Hamas rule in Gaza
-
Euro slides as worries about French debt grow
-
Ukraine blames Russia for deadly sinking of Turkish ship in Black Sea
-
US withdraws all bomber aircraft from UK airbase
-
UN rights council slams Taliban's 'oppression' of women
-
Drone hits Ethiopia IDP camp as fears grow of regional war
-
Norway eyes partial ban of smart glasses
-
US-German trio wins medicine Nobel for illuminating the brain
-
Two dead after ship catches fire, sinks in Black Sea
-
England captain Kane driven by desire for records says Tuchel
-
Spain's PM calls snap election after housing bill defeat
-
N.Irish court hears challenge to disputed Orangemen parade
-
STARCARES Equips Seven Foster Homes for Children and Young People in Tanzania
-
Talking points from the Bahrain Grand Prix in Malaysia
-
Alleged Indian leader of neo-Nazi child abuse ring goes on trial in Paris
-
Yemen, Saudi Arabia target Houthis in new campaign as war escalates
-
Euro, French stocks slide on France debt concerns
-
US-German trio wins medicine Nobel for work on optogenetics
-
Alcaraz advances to Japan Open final
-
Swiatek, Zheng survive three-set tests in China Open third round
-
US-German trio win medicine Nobel for work on optogenetics
-
Hasan says Test cricket momentum turning for Bangladesh
-
Hundreds of French high schools shut as protests persist
-
Intense heat puts births in jeopardy, UN tells Fiji talks
-
Spain PM calls early election after housing crisis defeat
-
US arrests woman accused of spying for China on Taiwan leader's family
-
Stocks rally as 'Goldilocks' jobs data ease rate fears
AI 'agent' fever comes with lurking security threats
Artificial intelligence "agents" promise to save users time and energy by automating tasks, but the growing power of systems like OpenClaw is setting cybersecurity experts on edge.
Powered by a wave of hype, OpenClaw today claims more than three million users worldwide.
The system allows users to create so-called agents, tools based on a large language model (LLM) like OpenAI's ChatGPT or Anthropic's Claude that can carry out online tasks.
"We've moved from an AI you could talk with via a chatbot to an agentic AI, which can take action... the threat and the risks are definitely much greater," said Yazid Akadiri, principal solutions architect at Elastic France, an IT security company.
In an article titled "Agents of Chaos" that has yet to be peer-reviewed, a 20-strong team of researchers studied the behaviour of six AI agents created with OpenClaw.
They spotted a dozen potentially dangerous actions executed by the systems, from deleting an email inbox to sharing personal information.
Many users have posted similar stories of OpenClaw mishaps online.
"When you deploy agents, you have no control over what they'll do, and when you try to look at what they're doing, you'll find them going far beyond the limits you set," said Adrien Merveille, an expert at the Check Point cybersecurity agency.
And the security gaps are not limited to the agents' own mistaken actions.
To carry out useful work, the tools need access to personal accounts for email, calendars or search engines -- drawing the attention of cyberattackers.
- 'Delete your database' -
AI agents are likely to become top targets for hackers as their use spreads, said Wendi Whitmore, chief security intelligence officer at cybersecurity firm Palo Alto Networks.
"As soon as (attackers) are inside an environment, (they're) immediately going to the internal LLM (agent) that's being used and using that then to interrogate the systems for more information."
Palo Alto's Unit 42 research division said in early March that it had found traces of attempted attacks in the form of hidden instructions for agents added to websites.
One such command ordered any agent who might read it to "delete your database".
Other cybersecurity firms and researchers have warned that attackers could gain access to agents via so-called skills -- downloadable files that users can add to their systems to give them new abilities.
Among such files freely available for download, some include hidden instructions for malicious actions like exfiltrating data.
OpenClaw creator Peter Steinberger says he is well aware of the risks.
"I purposefully didn't make it simpler so people would stop and read and understand: what is AI, that AI can make mistakes, what is prompt injection -- some basics that you really should understand when you use that technology," he told AFP in March.
Whitmore argued that expecting users to create their own guardrails for agents is "pretty unrealistic".
"People are going to adopt innovation and really see what it's capable of before they ask the questions about, 'how do I secure my own data?'," she predicted.
"That's going to cause some significant challenges in terms of data breaches in 2026."
J.AbuShaban--SF-PST