The Fort Worth Press - AI 'agent' fever comes with lurking security threats

USD -
AED 3.672495
AFN 66.000465
ALL 79.03022
AMD 363.419848
ANG 1.789783
AOA 917.999698
ARS 1511.747503
AUD 1.392137
AWG 1.7975
AZN 1.699041
BAM 1.675584
BBD 2.012242
BDT 122.947098
BGN 1.696366
BHD 0.376696
BIF 2982.716895
BMD 1
BND 1.269398
BOB 11.505016
BRL 5.148403
BSD 0.999079
BTN 95.2855
BWP 13.37731
BYN 3.014174
BYR 19600
BZD 2.009415
CAD 1.386025
CDF 2278.493972
CHF 0.803403
CLF 0.023205
CLP 913.269625
CNY 6.72035
CNH 6.720195
COP 3095.94
CRC 453.270167
CUC 1
CUP 26.5
CVE 94.466029
CZK 20.634905
DJF 177.911036
DKK 6.409296
DOP 58.511345
DZD 133.044414
EGP 50.4197
ERN 15
ETB 161.256045
EUR 0.85733
FJD 2.19255
FKP 0.733198
GBP 0.73355
GEL 2.604982
GGP 0.733198
GHS 11.140668
GIP 0.733198
GMD 73.501095
GNF 8778.415054
GTQ 7.623078
GYD 209.04192
HKD 7.840385
HNL 26.797394
HRK 6.459504
HTG 130.699973
HUF 308.833504
IDR 17709.45
ILS 2.974355
IMP 0.733198
INR 95.25425
IQD 1308.899626
IRR 1374599.999674
ISK 121.070448
JEP 0.733198
JMD 158.569024
JOD 0.708961
JPY 159.040501
KES 129.450167
KGS 87.450046
KHR 4043.328722
KMF 423.000108
KPW 900.000294
KRW 1385.319652
KWD 0.30866
KYD 0.832648
KZT 457.49803
LAK 22425.262689
LBP 89470.609149
LKR 328.168839
LRD 181.340758
LSL 15.981324
LTL 2.95274
LVL 0.60489
LYD 6.325844
MAD 9.232628
MDL 17.264998
MGA 4275.770491
MKD 52.710037
MMK 2099.669013
MNT 3598.834072
MOP 8.066411
MRU 40.062369
MUR 46.770214
MVR 15.460544
MWK 1732.496627
MXN 16.946635
MYR 4.025994
MZN 63.904999
NAD 15.981803
NGN 1346.940017
NIO 36.770029
NOK 9.32311
NPR 152.450752
NZD 1.67978
OMR 0.384494
PAB 0.999203
PEN 3.353266
PGK 4.43009
PHP 61.583496
PKR 277.181384
PLN 3.687375
PYG 5989.008871
QAR 3.642252
RON 4.506198
RSD 100.566967
RUB 83.648975
RWF 1472.695888
SAR 3.755113
SBD 8.019375
SCR 13.816695
SDG 601.506258
SEK 9.46523
SGD 1.269905
SHP 0.740866
SLE 24.650202
SLL 20969.499227
SOS 570.968419
SRD 37.922016
STD 20697.981008
STN 20.988696
SVC 8.742846
SYP 13001.999906
SZL 15.979953
THB 32.715496
TJS 9.21208
TMT 3.51
TND 2.911385
TOP 2.40776
TRY 48.117395
TTD 6.787691
TWD 31.823026
TZS 2649.993028
UAH 44.639095
UGX 3726.692111
UYU 40.162776
UZS 11767.124872
VES 783.68245
VND 26092
VUV 118.051417
WST 2.710032
XAF 561.965466
XAG 0.01448
XAU 0.000216
XCD 2.70255
XCG 1.800744
XDR 0.707052
XOF 561.955837
XPF 102.173084
YER 237.107442
ZAR 15.92255
ZMK 9001.197632
ZMW 19.027589
ZWL 321.999592
  • RBGPF

    1.3300

    69.89

    +1.9%

  • CMSC

    0.1120

    21.34

    +0.52%

  • GSK

    0.2900

    52.07

    +0.56%

  • RELX

    -0.5100

    35.88

    -1.42%

  • RYCEF

    0.5500

    20.8

    +2.64%

  • NGG

    0.7500

    81.17

    +0.92%

  • BCE

    -0.2600

    23.59

    -1.1%

  • VOD

    0.1500

    16.13

    +0.93%

  • CMSD

    0.2000

    21.26

    +0.94%

  • RIO

    2.0100

    106.81

    +1.88%

  • BTI

    -0.2400

    56.47

    -0.43%

  • AZN

    2.9500

    169.66

    +1.74%

  • BCC

    -1.2000

    81.04

    -1.48%

  • BP

    -0.8800

    42.86

    -2.05%

  • JRI

    0.1100

    12.48

    +0.88%

AI 'agent' fever comes with lurking security threats
AI 'agent' fever comes with lurking security threats / Photo: © AFP/File

AI 'agent' fever comes with lurking security threats

Artificial intelligence "agents" promise to save users time and energy by automating tasks, but the growing power of systems like OpenClaw is setting cybersecurity experts on edge.

Text size:

Powered by a wave of hype, OpenClaw today claims more than three million users worldwide.

The system allows users to create so-called agents, tools based on a large language model (LLM) like OpenAI's ChatGPT or Anthropic's Claude that can carry out online tasks.

"We've moved from an AI you could talk with via a chatbot to an agentic AI, which can take action... the threat and the risks are definitely much greater," said Yazid Akadiri, principal solutions architect at Elastic France, an IT security company.

In an article titled "Agents of Chaos" that has yet to be peer-reviewed, a 20-strong team of researchers studied the behaviour of six AI agents created with OpenClaw.

They spotted a dozen potentially dangerous actions executed by the systems, from deleting an email inbox to sharing personal information.

Many users have posted similar stories of OpenClaw mishaps online.

"When you deploy agents, you have no control over what they'll do, and when you try to look at what they're doing, you'll find them going far beyond the limits you set," said Adrien Merveille, an expert at the Check Point cybersecurity agency.

And the security gaps are not limited to the agents' own mistaken actions.

To carry out useful work, the tools need access to personal accounts for email, calendars or search engines -- drawing the attention of cyberattackers.

- 'Delete your database' -

AI agents are likely to become top targets for hackers as their use spreads, said Wendi Whitmore, chief security intelligence officer at cybersecurity firm Palo Alto Networks.

"As soon as (attackers) are inside an environment, (they're) immediately going to the internal LLM (agent) that's being used and using that then to interrogate the systems for more information."

Palo Alto's Unit 42 research division said in early March that it had found traces of attempted attacks in the form of hidden instructions for agents added to websites.

One such command ordered any agent who might read it to "delete your database".

Other cybersecurity firms and researchers have warned that attackers could gain access to agents via so-called skills -- downloadable files that users can add to their systems to give them new abilities.

Among such files freely available for download, some include hidden instructions for malicious actions like exfiltrating data.

OpenClaw creator Peter Steinberger says he is well aware of the risks.

"I purposefully didn't make it simpler so people would stop and read and understand: what is AI, that AI can make mistakes, what is prompt injection -- some basics that you really should understand when you use that technology," he told AFP in March.

Whitmore argued that expecting users to create their own guardrails for agents is "pretty unrealistic".

"People are going to adopt innovation and really see what it's capable of before they ask the questions about, 'how do I secure my own data?'," she predicted.

"That's going to cause some significant challenges in terms of data breaches in 2026."

M.McCoy--TFWP