Hacker News new | ask | show | jobs
by makeitcount00 124 days ago
This article fails to mention the bigger security issue with openclaw/anything else like this is prompt injection, not exposed network ports.

Isolating it from incoming requests is better than not, but does nothing to prevent data exfiltration via outgoing requests after being prompted to do so by a malicious email or webpage that it is reading as part of a task you've given it.