frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Ask HN: If there has been no prompt injection, is it safe?

2•sayYayToLife•3h ago
As I use open claw I am concerned about prompt injection more than bad code. However I think I'm irrationally paranoid. I'm small fries I'm a single individual, someone actively trying to hack me is exploiting a multi-million dollar zero day and they're not doing that on me.

If we're thinking about accidentally deleting everything through a terminal command, I've yet to see this actually occur.

Deductively I can see all of the worst case scenarios with open claw. Inductively I've never seen it actually happen.

I find it a bit irrational to pretend that open claw is a genuine security risk.

The moment I see on Hacker News that someone got prompt injected, I think I'll be concerned. Until then I would need almost a lottery like chance to get hacked as the first person through prompt injection.

Comments

TheTaytay•3h ago
I think the more likely attack vector in OpenClaw is convincing it to install a malicious npm package or script, have that siphon all machine/env secrets, and then watch those secrets get abused. (Cloud API key -> crypto mining. Wallet key->theft. Npm credentials->worm publishes more copies of itself. GitHub key->more theft and malicious code upload. Email API key->IP theft and password reset on other systems) Almost all of this can be automated, so the attacker doesn’t have to know who you are.

It’s not targeted per se.

verdverm•2h ago
> I find it a bit irrational to pretend that open claw is a genuine security risk.

Except that it is an actual security risk, no pretending is needed. In general, agents expand the security surface and attack vectors, regardless of framework.

Your argument that it hasn't happened, therefore it doesn't exist is a well known cognitive bias.

See the Lethal Trifecta for one way in which security requires more thoughtfulness.

MarcelinoGMX3C•30m ago
I've been on the defense side for a while, and the "it hasn't happened yet" argument is dangerous territory. The surface area for attack definitely increases with agentic systems.

The comment about malicious package installs is a much more realistic threat, as an example. Prompt injection is one angle, but defending against a supply chain compromise or an agent being tricked into exfiltrating secrets should be a higher priority. That's a more direct and exploitable vector.

Ask HN: If there has been no prompt injection, is it safe?

2•sayYayToLife•3h ago•3 comments

Ask HN: AI productivity gains – do you fire devs or build better products?

96•Bleiglanz•1d ago•177 comments

Ask HN: Are you using OpenClaw or similar agents? How?

3•nclin_•9h ago•6 comments

Skills are quietly becoming the unit of agent knowledge

8•latand6•1d ago•5 comments

Ask HN: How many of you are profiting with LLM wrapper apps?

7•general_reveal•3h ago•0 comments

Tell HN: YouTube - the "Jewel of the Internet" has faded

6•wewewedxfgdf•12h ago•8 comments

Ask HN: Growth for me,is realizing how much I didn't know 6 months ago. Yours?

4•kathir05•9h ago•2 comments

Tell HN: MS365 upgrade silently to 25 licenses, tried to charge me $1,035

20•davidstarkjava•1d ago•8 comments

What would you do if you have AI software that may be transformers alternative?

2•adinhitlore•17h ago•1 comments

Ask HN: How much are you spending on AI coding at work?

6•habosa•17h ago•6 comments

Tell HN: H&R Block tax software installs a TLS backdoor

142•yifanlu•3d ago•12 comments

Ask HN: How to get free/cheap Claude and AWS credits

4•jacAtSea•20h ago•4 comments

Ask HN: How do you handle peer-to-peer discovery on iOS without a server?

6•redgridtactical•22h ago•5 comments

Anyone know how long it will take to re-start Qatar's helium plants?

8•megamike•1d ago•5 comments

SparkVSR: Video Super-Resolution You Can Control with Keyframes

2•steveharing1•23h ago•0 comments

Spotify playing ads for paid subscribers

148•IncandescentGas•5d ago•127 comments

Ask HN: what’s your favorite line in your Claude/agents.md files?

14•khasan222•2d ago•10 comments

Anchor: Hardware-based authentication using SanDisk USB devices

4•rewant•4d ago•1 comments

Structural Friction: A metric for human coordination cost

5•davidvartanian•3d ago•0 comments

Ask HN: What do you look for in your first 10 hires?

28•neilk17•4d ago•35 comments

Ask HN: Is vibe coding a new mandatory job requirement?

38•newswangerd•5d ago•75 comments

Ask HN: How do you deal with people who trust LLMs?

153•basilikum•4d ago•201 comments

Ask HN: Why isn't the NSA categorized as an APT?

5•TheOpenSourcer•2d ago•9 comments

I got laid off and realized how broken tech hiring is

10•nirvanist•1d ago•30 comments

European municipalities leak citizen data to US companies

11•sam_lowry_•3d ago•5 comments

I built a game where you argue consumer rights against AI bots

8•dragonmann•4d ago•3 comments

Ask HN: Have you cancelled any software subscriptions because AI replaced them?

10•maxim_bg•4d ago•15 comments

You've reached the end!