‼️🚨 An ex-Anthropic engineer just published a 1-click remote code execution exploit for OpenClaw (formerly Moltbot and ClawdBot).
The attack occurs in milliseconds after the victim visits a webpage, giving the attacker access to Moltbot and the system it's running on. The victim does not need to type anything or approve any prompts.
The lobster has molted into its final form 🦞
Clawd → Moltbot → OpenClaw
100k+ GitHub stars. 2M visitors in a week.
And finally, a name that'll stick.
Your assistant. Your machine. Your rules.
https://t.co/d39LXKRE9h