Hundreds of Clawdbot API Keys Exposed via Misconfigured Gateways and Control Panels

Hundreds of Clawdbot API Keys Exposed via Misconfigured Gateways and Control Panels

N
News Editor 01
2026-07-23 06:05:15
Security firm SlowMist reports multiple Clawdbot instances publicly accessible due to misconfiguration, exposing API keys, bot tokens, OAuth secrets, and months of private chat logs to attackers.
ClawdbotAPI key leaksecurity vulnerabilitySlowMistAI agent security

Security firm SlowMist has issued a warning that numerous Clawdbot instances are exposed online due to misconfigured gateways and admin panels, putting hundreds of API keys, bot tokens, OAuth secrets, and months of private chat logs at risk. The issue stems from Clawdbot's architecture: its gateway handles AI agent logic (message routing, tool execution, credential management), while the web-based Control interface manages integrations, conversation histories, and API keys. When left misconfigured or publicly accessible, attackers gain full system access.

Exposed Gateways & Control Interfaces: What Attackers Can Do

Researcher Jamieson O'Reilly described the severity with a blunt analogy: "Imagine you come home and find the front door wide open, your butler cheerfully serving tea to whoever wandered in off the street." Attackers with access to the Control interface can read full configurations and conversation histories, impersonate operators across Telegram, Discord, Slack, Signal, and WhatsApp, modify messages, exfiltrate data, and execute commands remotely. Several publicly exposed instances required no authentication at all for root access.

O'Reilly noted: "Full credential theft, complete conversation history, active impersonation capabilities… you can maintain access indefinitely without the operator ever knowing." Worse still, many deployments had default authentication but contained a key flaw: the system auto-approves localhost connections, which reverse proxies often misinterpret as local. This lets even supposedly "secure" setups leak data to the internet.

Developers & AI Engineers Must Act Now

Affected groups include developers, AI engineers, and organizations running Clawdbot. Researchers urge: IP whitelisting must be strictly enforced; the gateway.auth.password should always be configured; and trusted proxies must be explicitly set to prevent unauthorized reverse proxies from bypassing authentication. No official patch has been released yet — users must secure their deployments manually.

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
100

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.