-
Trump's devoted 'human printer' in media glare
-
Germany, France, UN condemn far-right Israeli minister's 'inhumane' Gaza remarks
-
Top seed Zverev bundled out by Paul in rain-hit Cincinnati upset
-
Prince Harry and Meghan moving back to UK: British press
-
WADA pledges vigilance on Russian athletes ahead of 2028 Olympics
-
Lee, Baena guide Atletico to opening Liga win over Malaga
-
NASA satellite rescue mission fails
-
Ecuador intel chief, five Americans killed in Kenya helicopter crash
-
Cobolli halts Jodar to reach Cincinnati quarter-finals
-
Robinson and Tongue share match ball after dismissing Pakistan
-
As election looms, Netanyahu puts Turkey in Israel's crosshairs
-
Israel army admits firing on car in death of five-year-old Hind Rajab
-
McIlroy questions LIV stars 'value' as talk of PGA return builds
-
Honduras places 80% of country on El Nino drought alert
-
'Breakthrough' mRNA cancer drug curbs melanoma in large trial
-
Some of Meta's safety tools were 'designed to fail': witness
-
Many US Fed policymakers back interest rate hikes if inflation stays high
-
PSG Ligue 1 opener moved over state of Parc des Princes pitch
-
Robinson and Tongue star as Pakistan collapse in England opener
-
UK PM launches bid to help homeless, donating part of his wages
-
All Blacks must get 'everything right' to beat Springboks, says legend Fitzpatrick
-
Golden Shoe winner Kane hopes for Ballon d'Or after 'best season ever'
-
Robinson and Tongue star as Pakistan all out for 171 in England opener
-
Kyiv's ex-defence chief makes risky bet by venturing into electoral grounds
-
Lake Zurich sees water level hit record low amid drought
-
Coventry have survival inspiration says Lampard
-
Merck and Moderna's tailored cancer drug curbs melanoma recurrence in trial
-
Reijnders leaves Man City for Saudi's Al Qadsiah
-
Referees chief Webb wants clamp-down on Premier League set-piece grappling
-
Trump says will meet North Korea's Kim later this year
-
Robinson makes history as Pakistan collapse against England
-
Stocks waver, dollar drops as US Treasury moves to lower bond yields
-
Alvarez can win back Atletico fans in two games: club chief
-
France recalls rare disease drug Tavneos after deaths
-
Oldest human brain cells grown in lab 'recorded passage of time'
-
Arsenal agree to sign Villa defender Konsa: reports
-
7,300 excess deaths and counting in France's historically hot summer
-
Evacuation orders lifted in Belgian wildfire zone
-
Ukraine MPs approve new defence minister after divisive reshuffle
-
UK media skewered for 'hounding' black academic
-
North Korea leader's sister says 'unaware' of reported Kim-Trump communication
-
More than 7,300 excess deaths in France's historically hot summer so far
-
Russia, Ukraine exchange 103 captured soldiers each
-
US socialists score shock Florida win as Trump picks stumble
-
Sainz signs new contract with F1 team Williams
-
Iran warns Gulf countries against helping US after UAE cuts trade ties
-
Playing at Real Madrid 'not for everyone': Bernardo Silva
-
Senior FIFA official withdraws support from embattled Infantino
-
As election nears, Israelis fear polarisation could spark violence
-
Lawson replaces injured Hadjar for Red Bull at Dutch GP
AI 'agent' fever comes with lurking security threats
Artificial intelligence "agents" promise to save users time and energy by automating tasks, but the growing power of systems like OpenClaw is setting cybersecurity experts on edge.
Powered by a wave of hype, OpenClaw today claims more than three million users worldwide.
The system allows users to create so-called agents, tools based on a large language model (LLM) like OpenAI's ChatGPT or Anthropic's Claude that can carry out online tasks.
"We've moved from an AI you could talk with via a chatbot to an agentic AI, which can take action... the threat and the risks are definitely much greater," said Yazid Akadiri, principal solutions architect at Elastic France, an IT security company.
In an article titled "Agents of Chaos" that has yet to be peer-reviewed, a 20-strong team of researchers studied the behaviour of six AI agents created with OpenClaw.
They spotted a dozen potentially dangerous actions executed by the systems, from deleting an email inbox to sharing personal information.
Many users have posted similar stories of OpenClaw mishaps online.
"When you deploy agents, you have no control over what they'll do, and when you try to look at what they're doing, you'll find them going far beyond the limits you set," said Adrien Merveille, an expert at the Check Point cybersecurity agency.
And the security gaps are not limited to the agents' own mistaken actions.
To carry out useful work, the tools need access to personal accounts for email, calendars or search engines -- drawing the attention of cyberattackers.
- 'Delete your database' -
AI agents are likely to become top targets for hackers as their use spreads, said Wendi Whitmore, chief security intelligence officer at cybersecurity firm Palo Alto Networks.
"As soon as (attackers) are inside an environment, (they're) immediately going to the internal LLM (agent) that's being used and using that then to interrogate the systems for more information."
Palo Alto's Unit 42 research division said in early March that it had found traces of attempted attacks in the form of hidden instructions for agents added to websites.
One such command ordered any agent who might read it to "delete your database".
Other cybersecurity firms and researchers have warned that attackers could gain access to agents via so-called skills -- downloadable files that users can add to their systems to give them new abilities.
Among such files freely available for download, some include hidden instructions for malicious actions like exfiltrating data.
OpenClaw creator Peter Steinberger says he is well aware of the risks.
"I purposefully didn't make it simpler so people would stop and read and understand: what is AI, that AI can make mistakes, what is prompt injection -- some basics that you really should understand when you use that technology," he told AFP in March.
Whitmore argued that expecting users to create their own guardrails for agents is "pretty unrealistic".
"People are going to adopt innovation and really see what it's capable of before they ask the questions about, 'how do I secure my own data?'," she predicted.
"That's going to cause some significant challenges in terms of data breaches in 2026."
A.Ruiz--AT