China flags security risks in OpenClaw open-source AI agent

The Chinese Ministry of Industry and Information Technology’s National Vulnerability Database (NVDB) has identified security vulnerabilities in the OpenClaw open-source AI agent, highlighting risks such as cyberattacks and data leaks due to default or improper configurations. OpenClaw, which integrates multi-channel communications with large language models to create customized assistants, has rapidly gained popularity since its November 2025 release, attracting significant attention on GitHub and among Chinese tech enthusiasts. Major Chinese cloud service providers like Alibaba, Tencent, and Baidu have introduced hosting solutions for OpenClaw. The NVDB advises users to enhance security measures, including reviewing network exposure, permission settings, credential management, and implementing robust identity authentication, access control, data encryption, and security auditing to mitigate potential threats.

Click here for the official article/release

Disclaimer

The Legal Wire takes all necessary precautions to ensure that the materials, information, and documents on its website, including but not limited to articles, newsletters, reports, and blogs (“Materials”), are accurate and complete. Nevertheless, these Materials are intended solely for general informational purposes and do not constitute legal advice. They may not necessarily reflect the current laws or regulations. The Materials should not be interpreted as legal advice on any specific matter. Furthermore, the content and interpretation of the Materials and the laws discussed within are subject to change.

Also Read:  DraftPilot Keeps Contract Review Where It Belongs: Inside Word