Threat Talks - Your Gateway to Cybersecurity Insights
Threat Talks - Your Gateway to Cybersecurity Insights

OpenClaw and The Dark Side of Agentic AI

24 February 2026 19:56 Threat Talks

Listen to episode

About this episode

Your biggest threat this year isn’t malware. It’s your own AI assistant.

OpenClaw connects an LLM directly to your terminal, browser, email, and chat.
 It runs with your permissions.
 It executes tasks without hesitation.

Days after launch, researchers found a One-Click RCE.

Cisco called it a security nightmare.

Gartner called it an unacceptable risk.

OpenClaw (formerly known as Clawdbot and Moltbot) represents a new phase of agentic AI: autonomous assistants operating inside your environment with almost no guardrails.

The headlines around OpenClaw have been clear: it’s a serious threat. But how should we handle agentic AIs like OpenClaw moving forward?

In this Threat Talks episode, Field CTO Rob Maas and SOC analyst Yuri Wit break down what OpenClaw actually does, where AI agent security breaks, and whether or not you should deploy OpenClaw.

OpenClaw is powerful. It’s useful.

It’s also proof that many of us are not ready for AI agents with this level of autonomy. 

Before you let an AI agent into your systems, understand what happens when it runs unchecked.

Timestamps

Key Topics Covered

·         How OpenClaw works and why agentic AI changes the security model

·         The One-Click RCE and what it reveals about AI agent security

·         Malicious skills, default allow design, and autonomous privilege abuse

·         Realistic mitigation strategies including sandboxing and controlled environments

Resources

·         Threat Talks: https://threat-talks.com/ 

·         ON2IT (Zero Trust as a Service): https://on2it.net/ 

·         AMS-IX: https://www.ams-ix.net/ams


 Subscribe to Threat Talks and turn on notifications for deep dives into the world’s most active cyber threats and hands-on exploitation techniques.


Click here to view the episode transcript.
 

🔔 Follow and Support our channel! 🔔

 === 


 ► YOUTUBE:    / @threattalks  

► SPOTIFY: https://open.spotify.com/show/1SXUyUE...

► APPLE: https://podcasts.apple.com/us/podcast...

 

👕 Receive your Threat Talks T-shirt

https://threat-talks.com/

 

🗺️ Explore the Hack's Route in Detail 🗺️

https://threat-talks.com

 

🕵️ Threat Talks is a collaboration between @ON2IT and @AMS-IX

Want to find AI jobs?

Join thousands of AI professionals finding their next opportunity

We respect your inbox. Unsubscribe at any time.

© 2026 Threat Talks - Your Gateway to Cybersecurity Insights. All rights reserved.

Common Questions

Frequently asked questions

Quick answers about how DevFound's AI matching, resumes, and referrals work.

DevFound's AI Copilot ingests your profile, goals, and live job data to deliver curated matches in seconds. Every match includes a resume variant, suggested referrals, and interview prep so you can act immediately. The more feedback you provide, the sharper the Copilot becomes.

AI-led job searches shrink the hours spent sifting through boards and formatting resumes. DevFound pairs automation with your personal outreach, so you reserve energy for interviews and negotiation. Traditional networking still matters, but AI gives you a lift before you even send a message.

Modern AI roles expect comfort with production-grade code, data fluency, and practical ML tooling. The strongest candidates pair deep technical chops with storytelling—translating model impact to product, GTM, and exec partners. Continuous learning keeps you ahead as stacks evolve.

DevFound rewards active seekers. Keep your profile fresh, respond to match quality prompts, and enable alerts so you never miss a role. The AI prioritizes companies and teams that align with your feedback, accelerating both introductions and interview invites.

High-density tech hubs continue to host the deepest AI talent pools, yet distributed teams are catching up fast. Use DevFound filters to hone in on onsite, hybrid, or fully remote roles and watch openings expand across time zones.

DevFound aggregates thousands of remote AI openings and flags the nuances—core hours, async culture, and visa needs—up front. The Copilot also recommends how to position your distributed work experience so hiring managers know you can thrive on a remote team.