Viral AI assistant ‘Clawdbot’ risks leaking private messages, credentials

Viral AI assistant 'Clawdbot' risks leaking private messages, credentials

A security vulnerability in the Clawdbot AI assistant has exposed hundreds of servers, leaking API keys and other sensitive information due to misconfigured proxies, cybersecurity professionals warn.

Cybersecurity researchers have raised red flags about a new artificial intelligence personal assistant called Clawdbot, warning it could inadvertently expose personal data and API keys to the public. 

On Tuesday, Blockchain security firm SlowMist said a Clawdbot “gateway exposure” has been identified, putting “hundreds of API keys and private chat logs at risk.”

“Multiple unauthenticated instances are publicly accessible, and several code flaws may lead to credential theft and even remote code execution,” it added

Read more

Read Entire Article


Add a comment