HomeNewsClawdbot surge: exposed gateways, zero-auth risks and runaway token costs alarm users...

Clawdbot surge: exposed gateways, zero-auth risks and runaway token costs alarm users now!

-

Clawdbot, an open-source AI assistant released in January, lets users browse the web, run commands, manage files and place phone calls through common messaging apps. The tool has rapidly gained attention on developer channels and promises automation by connecting models to real-world actions via a local gateway (the project’s code on GitHub).

The system preserves user context on-device and supports WhatsApp, Telegram, Discord, Slack, Signal and iMessage, according to developer reports (developer Dan Peguine wrote). One user said it even completed a restaurant booking by calling a venue when an API failed (Alex Finn wrote).

Security researchers warn that some deployments left gateways exposed. A Shodan scan found open ports, and researcher Luis Catacora wrote _”Clawdbot gateways are exposed right now with zero auth… That means shell access, browser automation, API keys.”_ (Ed. note: the default binding can be changed to local and restarted.)

Responders advise restricting network access, adding authentication, rotating keys, and adding logging and rate limits, as outlined in a recommended response (stated here) and the project’s security guide. Users also report high token use; one account burned 180 million tokens in a week (reported), and another developer spent about $300 in two days.

Clawdbot was built by Peter Steinberger, founder of PSPDFKit (now Nutrient), aiming to deliver a continuously running personal assistant.

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

U.S. posts weakest non-recession job growth since 2003 in 2025; markets, yields rise today

In 2025, U.S. employers added 181,000 jobs, the lowest single-year non-recession gain since 2003, the Bureau of Labor Statistics reported Wednesday after benchmark revisions cut...

Bitcoin Slumps Below $66K as Waning U.S. Demand Pressures Market

Bitcoin's price has declined for three consecutive days, falling below $66,000. The retreat follows a failed attempt to break above $70,000, with on-chain data indicating...

U.S. Ethereum ETF Holders Down 40%, Show Resilience Amid Market Plunge

Spot Ethereum ETF investors are facing significant losses, with holdings down approximately 40% from their average cost basis of $3,520 according to Bloomberg analyst James...

SUI Stabilizes Near Support, Eyes Potential Trend Reversal

The SUI token shows early signs of stabilization after a period of strong selling pressure, consolidating near a key support level. Analysts note the downtrend...

Most Popular

spot_img