Live data from Hacker News

OpenClaw privilege escalation vulnerability

nvd.nist.gov

131–140 of 306 posts

Re: OpenClaw privilege escalation vulnerability

#132
post #66
post #179

[stub for offtopicness and general piling-on behavior, which we don't want on this site] [[attacking project creators when they show up to discuss their work is particularly harmful; please don't ever do that here]] [[[if you posted any of these, we'd appreciate it if you'd please review https://news.ycombinator.com/newsguidelines.html and stick to the rules from now on]]]

[flagged]

[flagged]

Re: OpenClaw privilege escalation vulnerability

#133
post #95

Earlier quoted context omitted.

my claw controls my old M2 mac, mostly my claw uses Claude code to code

So you're using a different llm to control claude code to get around the Anthropic TOS about openclaw usage?

At this point I'm personally lost, unless GP's comment wasn't some sort of satire (which would be valid, this being a topic about AI).

Re: OpenClaw privilege escalation vulnerability

#134
post #80
post #179

[stub for offtopicness and general piling-on behavior, which we don't want on this site] [[attacking project creators when they show up to discuss their work is particularly harmful; please don't ever do that here]] [[[if you posted any of these, we'd appreciate it if you'd please review https://news.ycombinator.com/newsguidelines.html and stick to the rules from now on]]]

[flagged]

I'm critical of OpenClaw and even the author to some extent, but I prefer to have nuanced and compartmentalized conversations, on a thread about a specific vulnerability, it's much more productive to talk about the specific vulnerability rather than OpenClaw as a whole. Otherwise we would only have generic OpenClaw conversations and we would only be saying the same thing.

Re: OpenClaw privilege escalation vulnerability

#135
post #179

[stub for offtopicness and general piling-on behavior, which we don't want on this site] [[attacking project creators when they show up to discuss their work is particularly harmful; please don't ever do that here]] [[[if you posted any of these, we'd appreciate it if you'd please review https://news.ycombinator.com/newsguidelines.html and stick to the rules from now on]]]

[flagged]

Re: OpenClaw privilege escalation vulnerability

#136

Earlier quoted context omitted.

It does not need access to your full machine. It can literally run in a vps.

The thing is that if you want it to do useful things, you kinda have to give it access to some of your accounts.

This is not true. It is useful without having access to a single account of mine. My setup runs on its own accounts and hardware. Obviously it is not sending out emails from my inbox, but that is not a usecase of any value to me. And if it was, there are actually plenty of ways to do that safely as well.

If you think you need to give it the keys to your kingdoom to be useful, you are not actually experimenting with this stack but regurgitating the words of others. I really don't understand the mindset of comments like this.

Re: OpenClaw privilege escalation vulnerability

#137

Honest question: What do people actually USE OpenClaw for? The most common usage seems to be "it reads your emails!", that's the exact opposite of "exciting"...

so far, I've used it to kill a bunch of time trying to get it to respond to "Hi @Kirk" in a private Slack channel.

...and to laugh a little every time it calls me "commander" or asks "What's the next mission?" or (and this is the best one) it uses the catchphrase I gave it which is "it's probably fine" (and it uses it entirely appropriately...I think there must have been a lot of sarcasm in qwen 3.5's training data)

and I've treated it like it's already been compromised the whole time.

Re: OpenClaw privilege escalation vulnerability

#138
post #81

Earlier quoted context omitted.

It does not need access to your full machine. It can literally run in a vps.

Most of the people using it probably don't even know what SSH is, let alone using a VPS to maintain a personal bot for them for years with no maintenance. They know Vercel and Supabase. They will run it on their local machine and just keep clicking yes to everything until they get the result they want.

That is not how the software works.. I take it you have no first hand knowledge with this stack? This isn't a double click the exe and you are off the races. The hostinger vps is actually the easiest way for a normie to get this running.

Re: OpenClaw privilege escalation vulnerability

#139

Honest question: What do people actually USE OpenClaw for? The most common usage seems to be "it reads your emails!", that's the exact opposite of "exciting"...

so far, I've used it to kill a bunch of time trying to get it to respond to "Hi @Kirk" in a private Slack channel. ...and to laugh a little every time it calls me "commander" or asks "What's the next mission?" or (and this is the best one) it uses the catchphrase I gave it which is "it's probably fine" (and it uses it entirely appropriately...I think there must have been a lot of sarcasm in qwen 3.5's training data)…

So basically an eggdrop like we had in the 90s except, by the sounds of it, less useful and considerably less fun.

Re: OpenClaw privilege escalation vulnerability

#140

Honest question: What do people actually USE OpenClaw for? The most common usage seems to be "it reads your emails!", that's the exact opposite of "exciting"...

I use it to manage a media server. And use natural language to download movies and series. Also I use to for homeassistant so I csn use natural language for vacuuming the house and things like that. I do use it for a number of other tasks but those are the most partical.

Good use cases, but I do want to point out that you can do all of that with HA itself. Are you using skills to talk to *arr services?
Post reply on HN