frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: ClawShield – Open-source security proxy for AI agents (Go, eBPF)

https://github.com/SleuthCo/clawshield-public
2•sleuthco•1h ago
Author here. ClawShield is a security proxy that sits in front of OpenClaw (open-source AI gateway) and scans all inbound/outbound messages.

The core is an HTTP/WebSocket reverse proxy in Go (~6k lines) with four scanners:

1. Prompt injection detection - three tiers: regex heuristics (role overrides, instruction injection, delimiter attacks, encoding attacks), structural analysis (base64-decoded instruction blocks, imperative verb density scoring), and canary token leak detection.

2. Secrets/PII scanning - regex argument filters applied to decoded JSON values (defeats unicode escape bypasses like \u0070assword).

3. Vulnerability scanning - SQLi (UNION, tautologies, blind with SLEEP/BENCHMARK), SSRF (private IPs, cloud metadata at 169.254.169.254, decimal/hex IP encoding, dangerous schemes like gopher://), path traversal (double URL-encoding, null bytes), command injection (shell metacharacters, backtick execution), XSS.

4. Malware detection - magic bytes for PE/ELF/Mach-O, YARA-like signature rules for reverse shells and C2 frameworks, archive bomb detection via compression ratio, Shannon entropy analysis.

Policy engine is deny-by-default YAML. You define tool allowlists, denylists, per-tool argument filters, domain allowlists, and per-agent/per-channel restrictions. Every decision is logged to SQLite.

Optional extras: iptables egress firewall (Go, generates validated rules from YAML) and eBPF kernel monitor (Python/BCC - traces execve, tcp_v4_connect, openat2, setuid for fork bomb/privesc/port scan detection).

Docker quickstart is 3 commands. Ten cross-compiled binaries on the release (proxy + setup wizard for linux/mac/windows, amd64/arm64).

We run this in production at clawshield.sleuthco.ai.

I built this because I was contributing security patches to OpenClaw and the netfilter suite and kept seeing the same gap: the AI ecosystem has sophisticated multi-agent routing but no standardized way to inspect and control what flows through it.

Happy to answer questions about the scanner architecture, policy engine, or threat model.

Comments

sleuthco•1h ago
Author here and available for discussion. Have a PR already that I need to review!

If Trump attacks Iran, western media will be cheering him on

https://www.middleeasteye.net/opinion/if-trump-attacks-iran-western-media-will-be-cheering-him
1•lyu07282•29s ago•0 comments

Say Goodbye to the Undersea Cable That Made the Global Internet Possible

https://www.wired.com/story/say-goodbye-to-the-undersea-cable-that-made-the-global-internet-possi...
1•CHB0403085482•1m ago•0 comments

We Made the Isospectral Drums and It Went Fine

https://prismika.github.io/2026/03/01/we-made-the-isospectral-drums.html
1•nill0•2m ago•0 comments

Floor113.com – A Scarcity-Driven Dating System Built on Deterministic Access

https://floor113.com/
1•chainbuilder•6m ago•1 comments

DeepSeek to release long-awaited AI model in new challenge to US rivals

https://www.ft.com/content/e3366881-0622-40a7-9c34-a0d82e3d573e
2•freely0085•6m ago•1 comments

The Boom in ADHD Coaching Has Few Rules

https://www.medscape.com/viewarticle/boom-adhd-coaching-has-few-rules-2026a10005iw
1•wjb3•8m ago•0 comments

Toward Guarantees for Clinical Reasoning in Vision Language Models

https://arxiv.org/abs/2602.24111
4•barthelomew•10m ago•2 comments

Mapping Human Activity at Sea from Space

https://globalfishingwatch.org/mapping-human-activity-at-sea-from-space/
1•femto•13m ago•0 comments

Ask HN: When do you expect ChatGPT moment in robotics?

1•p1esk•14m ago•0 comments

Why Rational Choice Theory Should Not Be the Standard for Good Decisions

https://behavioralscientist.org/why-rational-choice-theory-should-not-be-the-standard-for-good-de...
1•jyunwai•19m ago•0 comments

An Assistant with advanced memory and evolution functions

https://meet-edward.com
3•ben4mn•20m ago•2 comments

Show HN: Simaic – AI back end with memory, 90s setup for Cursor/Windsurf

https://www.simaic.com
1•sunch•23m ago•0 comments

Shipping code you don't read is like selling coffee you don't taste

https://anhvietle.substack.com/p/shipping-code-you-dont-read-is-like
4•haizzz•26m ago•0 comments

A Waymo vehicle blocked traffic as first responders raced to a mass shooting

https://twitter.com/Breaking911/status/2028160742755537397
2•guerrilla•27m ago•0 comments

Assorted links: clashes of tech and the US government

https://digitalseams.com/blog/assorted-links-2026-03-01
1•bobbiechen•29m ago•0 comments

How I Caught an Illegal Russian Spy

https://www.youtube.com/watch?v=xjo0iLssbI8
1•mudil•29m ago•1 comments

ASCII-cleaner – A zero-dependency Rust CLI to detect/remove non-ASCII

https://github.com/ancos2505/ascii-cleaner
1•ancos2505•33m ago•1 comments

The Summer Slide, part 3: The tax code we had

https://substack.com/@michaelwgreen/p-189483869
1•jez•35m ago•0 comments

NoEyes – Terminal-based, self-hosted end-to-end encrypted chat in Python

https://github.com/Ymsniper/NoEyes
1•Ymsniper•36m ago•0 comments

Show HN: Agent-Audit – Lint and cost-estimate your AI agent

https://github.com/AreteDriver/agent-audit
1•aretedriver•38m ago•0 comments

The growing corpus of problems that are 'easy' for entities which may not think

https://zjpea.substack.com/p/embarrassingly-solved-problems
2•zjp•40m ago•0 comments

Show HN: I built a fast mood, energy, and activity tracker (trilog.app)

https://trilog.app
1•saltroad•41m ago•0 comments

Claude hits #1 on the App Store as users rally behind Anthropic

https://9to5mac.com/2026/03/01/claude-hits-1-on-the-app-store-as-users-rally-behind-anthropics-go...
7•doctoboggan•43m ago•2 comments

Earn Compute Credits

https://www.hpc-ai.com/blog/Share-And-Earn-Social-Media-Campaign
1•hpcaitech•44m ago•0 comments

Secure LLM Scripting. Finally

https://mlld.ai/
1•dahjelle•49m ago•0 comments

RunWatch – CI/CD Observability for GitHub and GitLab

https://runwatch.io
1•toconnor•49m ago•1 comments

We will sacrifice quality for convenience

https://twitter.com/backnotprop/status/2028293637373841759
6•ramoz•49m ago•0 comments

Readout

https://www.readout.org/
1•handfuloflight•50m ago•0 comments

Dual chamber microbial fuel cells using human urine

https://www.sciencedirect.com/science/article/pii/S2211715625008719
1•PaulHoule•52m ago•0 comments

The Metamorphosis of Prime Intellect (1994)

https://localroger.com/prime-intellect/mopiidx.html
1•nz•54m ago•0 comments