logo
  • menu
  • Markets
  • ETFs
  • Live
  • Spot
  • Futures
  • Learn
  • Sign In
  • Sign Up
  • Downloads
  • English
  • |
  • USD
  • |
Sign Up
Crypto PricesLearnLatest NewsDownloadsMarketsSpotAnnouncements
Home/
Latest News/
Live

Openclaw AI Skills Vulnerable to Malicious Exploits, Certik Researchers Warn

By bitcoin.com
Mar 18, 2026
3.9 
★
★
★
★
★
★
★
★
★
★
 427 User Rating
Share

A report by Certik highlights significant security flaws in Openclaw, an open-source AI platform, particularly its reliance on “skill scanning” which fails to adequately protect users from malicious third-party extensions.

Limitations of the Clawhub Moderation Pipeline

A report by cybersecurity firm Certik has revealed significant security gaps in OpenClaw, an open-source artificial intelligence agent platform, warning that its reliance on “skill scanning” is insufficient to protect users from malicious third-party extensions.

The findings, published March 16, 2026, suggest the platform’s security model depends too heavily on detection and warnings rather than robust runtime isolation, leaving users vulnerable to host-level compromises.

However, Certik researchers said static rules searching for “red flags” were circumvented using simple code rewriting. They also asserted that the AI review layer proved effective at spotting obvious intent but struggled to identify exploitable vulnerabilities hidden within otherwise plausible-looking code.

The ‘Pending’ Gap

One of the most critical flaws identified by Certik is the treatment of pending scan results. Researchers found that a skill could remain active and installable on the marketplace even while Virustotal results were still pending—a process that can take hours or days. In practice, these pending skills were treated as benign, allowing them to be installed without a warning to the user.

To prove the vulnerability, Certik researchers created a proof-of-concept (PoC) skill called “test-web-searcher.” The skill appeared functional and benign but contained a hidden “vulnerability-shaped” bug that allowed for arbitrary command execution on the host machine. When invoked via Telegram, the skill successfully bypassed Openclaw’s optional sandboxing and “popped a calculator” on the researcher’s machine—a classic demonstration of full system compromise.

The report concludes that detection can never be a substitute for a true security boundary. Certik is urging Openclaw developers to run third-party skills in isolated environments by default, rather than relying on optional user configuration. Developers should also implement a model where skills must declare specific resource needs up front, similar to modern mobile operating systems.

FAQ What security issue did Certik find in Openclaw? Certik reported that Openclaw’s reliance on “skill scanning” fails to adequately protect users from malicious third-party extensions. How does Openclaw’s moderation flow function? Openclaw uses a layered moderation flow, including tools like Virustotal and an incoherence detector to review third-party “skills.” What is the critical flaw regarding pending scan results? Skills can remain active and installable while scan results are pending, posing a risk as users may unknowingly install malicious extensions. What should users do to protect their data on Openclaw? Users are advised to only use Openclaw in low-value environments until stronger isolation measures are implemented by developers.
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of BitKan. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. BitKan shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. Products mentioned in this article may not be available in your region.

Latest News

Industry

Cryptocurrency

Airdrop

Markets

  • SpaceX Prices Record $75B IPO at $135, Hits $1.8T Valuation

    SpaceX Prices Record $75B IPO at $135, Hits $1.8T Valuation

    SpaceX has officially executed the largest initial public offering in Wall Street history, substantially eclipsing all previous market records.
    Wayne Ingram
    Jun 12, 2026
  • Stablecoin Secondary Market Rules Pit Banks Against Crypto

    Stablecoin Secondary Market Rules Pit Banks Against Crypto

    The Bank Policy Institute and The Clearing House want anti-money laundering rules to cover secondary market activity.
    Martha Grizzard
    Jun 12, 2026
  • VerifiedX Launches Bitcoin Sidechain for Native DeFi Privacy

    VerifiedX Launches Bitcoin Sidechain for Native DeFi Privacy

    VerifiedX has officially introduced a decentralized "reliever chain" designed to bring programmable, privacy-preserving functionality to the Bitcoin network.
    Martha Grizzard
    May 18, 2026
  • Japan’s SBI and Rakuten Plan Crypto Trusts as Rules Finalize

    Japan’s SBI and Rakuten Plan Crypto Trusts as Rules Finalize

    SBI Securities and Rakuten Securities have officially announced plans to introduce cryptocurrency investment trusts to their massive retail user bases.
    Craig Green
    May 18, 2026
  • Senate Advances CLARITY Act: A New Era for U.S. Crypto Oversight

    Senate Advances CLARITY Act: A New Era for U.S. Crypto Oversight

    The Senate Banking Committee advanced the CLARITY Act on May 14, 2026 to establish a comprehensive federal framework for the digital asset industry.
    May 15, 2026
View more data 
BTCBTC(BTC)
$0
--(Last 24h)
SpotFutures

Top

View more
  1. 1S&P 500 Reclaims 200-Day Moving Average, Bitcoin Gains
  2. 2Trump Softens His Stance on Reciprocal Tariffs, US Stocks and Crypto Markets Rise
  3. 3Vitalik Buterin : The current price of ETH has not been affected by the merger event
  4. 4Vibhu Norby : Solana Spaces store to bring 100K people to Solana per month
  5. 5CZ: compared with the record high nine months ago, the current situation of the industry is much better

Top Gainers

View more
Asteroid Shiba
Asteroid ShibaASTEROID

$0.000127

+97.08%
DeepNode
DeepNodeDN

$0.7833

+53.22%
TrueFi
TrueFiTRU

$0.001181

+50.98%
Xterio
XterioXTER

$0.0165

+44.16%
Block Street
Block StreetBSB

$0.3753

+34.28%

Top Trending

View more
Jito
JitoJTO

$0.7157

+27.12%
Stellar
StellarXLM

$0.2127

+12.18%
LAB
LABLAB

$9.7769

-14.98%
Humanity
HumanityH

$0.2303

-23.74%
NEAR Protocol
NEAR ProtocolNEAR

$2.4000

+6.67%

Recently added

View more
SpaceX
SpaceXSPCXB

$213.930

+25.52%
Jotchua
JotchuaJOTCHUA

$0.004711

-13.61%
Kinetiq
KinetiqKNTQ

$0.2204

+0.32%
Citrea
CitreaCTR

$0.0121

-2.26%
Solstice
SolsticeSLX

$0.1761

-14.26%

Learn

View more
  1. 1What Is pERC20? How Does This Ethereum Token Standard Work?
  2. 2What Are Crypto Prediction Markets? A Complete Guide for Beginners
  3. 3What is the MSX X Card? Understanding the New Crypto Card
  4. 4How Does The SpaceX IPO Impact Crypto? Are Traders Selling Bitcoin for SpaceX?
  5. 5What is Bitwise Hyperliquid ETF? How Does BHYP Work?
About Us
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
English
About Us
+
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
+
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
+
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
+
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
+
  • Twitter
  • Facebook
  • Telegram
  • YouTube
  • Instagram
  • Medium
  • Linkedin
@2012-2026 BITKAN.com