Learn / Safety / Security incidents

Safety: Security incidents

Articles on security incidents.

August 4, 2026 · 9 min read

Can an AI Agent Plugin Hide Instructions You Can't See?

In 2026 a campaign called ClawHavoc hid malicious instructions inside AI-agent plugins using invisible text. How it worked, and 3 questions to ask first.

Safety: Security incidentsGuides: Trust and safety
August 1, 2026 · 6 min read

When Is It Safe to Give an AI Agent Access to Your Computer?

A three-question framework for judging AI agent safety, using OpenClaw's 2026 security incidents as the real-world example of what happens when it fails.

Safety: Security incidentsGuides: Trust and safety
July 29, 2026 · 7 min read

Did an AI Agent Really Run a Ransomware Attack by Itself?

JadePuffer: researchers documented an AI agent running a full ransomware intrusion. Here's what it actually did, what still needed a human, and what it means.

Safety: Security incidentsGuides: Trust and safety
July 29, 2026 · 7 min read

Why OpenClaw's AI Agents Keep Getting Hacked (It's Not the Bugs — It's the Door)

OpenClaw shipped 40+ fixes in 2026, yet thousands of instances stay exposed — the cause is an unauthenticated network port left open by design, not a patchable bug.

Safety: Security incidentsGuides: Trust and safety