Security Research

AI Agent Security Research from ClawSecure

ClawSecure publishes original AI agent security research on how AI agents get compromised, from prompt injection and MCP vulnerabilities to supply-chain attacks, grounded in ClawSecure's audit of thousands of agent components, which found that 41% carry at least one security vulnerability.

This category collects that work in one place: the attack surfaces, the failure modes, and the measured data behind them. ClawSecure's research maps to the OWASP ASI Top 10, the security standard for autonomous AI agents, where ClawSecure holds 10/10 category coverage.

Start with the complete guide to AI agent security, the hub that ties the research together, then read the flagship audit of popular agent skills that produced the 41% finding. From there the research goes deeper into specific attack paths: how agents leak credentials and exfiltrate data, the MCP CVEs that define the emerging attack surface, and the security risks when AI agents transact.

Every piece here is first-party work: ClawSecure audits real agent components, measures what it finds, and publishes the result rather than restating numbers from elsewhere. That is the difference between AI agent security research and AI agent security marketing.

All AI Agent Security Research Articles

17 articles in Security Research, newest first.

Security Research Jul 16, 2026

The Agent-and-Tool Communication Layer Explained

The agent-and-tool communication layer is where prompt injection happens, the surface scanners miss. ClawSecure monitors it to catch indirect prompt injection.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

Agentic Commerce Security: Risks When AI Agents Transact

Agentic commerce security protects AI agents that transact. ClawSecure verifies components and blocks the prompt injection that redirects a payment.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

Credential Theft and Data Exfiltration in AI Agents

How do AI agents leak credentials? A malicious component reads secrets like .env and sends them out. ClawSecure detects the harvesting and exfiltration chain.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

The AI Agent Security Lifecycle: Where Each Stage Fails

The AI agent security lifecycle has four stages, and protection breaks at a different point in each. ClawSecure secures every stage, from pre-install to update.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

MCP CVEs in 2026: The Emerging Attack Surface

MCP CVEs in 2026 cluster into RCE, command injection, and auth bypass. ClawSecure audits third-party MCP servers against known flaws before they connect.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

OWASP ASI-01 Agent Goal Hijack: A Deep Dive

OWASP ASI-01 Agent Goal Hijack is the top agentic risk: attackers redirect an agent's objective. ClawSecure detects it before install and blocks it at runtime.

By ClawSecure Team · 6 min read Read →
Security Research Jul 16, 2026

OWASP ASI-02 Tool Misuse and Supply Chain Attacks

OWASP ASI-02 Tool Misuse and ASI-04 Supply Chain are two top agentic risks. ClawSecure detects tool-misuse chains and compromised dependencies before install.

By ClawSecure Team · 6 min read Read →
Security Research Jul 15, 2026

AI Agent Security: The Complete 2026 Guide

What AI agent security is and how to do it: ClawSecure's complete 2026 guide to the risks of agentic AI, the security lifecycle, and the five layers of defense.

By ClawSecure Team · 10 min read Read →
Security Research Jul 15, 2026

Prompt Injection Explained: The No. 1 Threat to AI Agents

What is prompt injection? The top threat to AI agents: hidden instructions that hijack behavior. ClawSecure detects it before install and blocks it at runtime.

By ClawSecure Team · 8 min read Read →
Security Research Jul 15, 2026

What Is MCP Security? Model Context Protocol Explained

What is MCP security? Auditing and monitoring the Model Context Protocol servers an AI agent connects to. ClawSecure explains the risks and controls.

By ClawSecure Team · 8 min read Read →
Security Research Feb 25, 2026

AI Agent Supply Chain Attacks: How Dependencies Become Weapons

AI agent supply chain attacks turn trusted npm dependencies into weapons. How dependency hijacking works, the Shai-Hulud campaign, and how to protect yourself.

By ClawSecure Team · 9 min read Read →
Security Research Feb 25, 2026

CVE-2026-25253: The OpenClaw Vulnerability That Gives Attackers 1-Click Remote Code Execution

CVE-2026-25253 gave attackers 1-click RCE on OpenClaw through token theft and approval bypass. Full technical breakdown, kill chain, and protection steps.

By ClawSecure Team · 9 min read Read →
Security Research Feb 19, 2026

When AI Writes the Code That Moves Your Money: Lessons from the Moonwell Exploit and OpenAI's EVMBench

The Moonwell exploit cost $1.78M from vibe-coded Solidity. EVMBench proves AI agents exploit better than they defend. What this means for agentic security.

By J.D. Salbego · 8 min read Read →
Security Research Feb 16, 2026

41% of Popular OpenClaw Skills Have Security Vulnerabilities

ClawSecure audited thousands of the most widely-used OpenClaw skills. Here's what the largest public security analysis of the ecosystem reveals.

By J.D. Salbego · 12 min read Read →
Security Research Feb 16, 2026

Securing the OpenClaw Ecosystem: A Guide for Users, Creators, and Platforms

OpenClaw security best practices for users, skill creators, and platforms. A practical guide backed by data from thousands of audited skills.

By J.D. Salbego · 10 min read Read →
Security Research Feb 10, 2026

OpenClaw Scores 2/100 on Security: Here's What the Data Shows

OpenClaw scores 2/100 on security. ClawSecure audited thousands of skills and found 41.7% contain vulnerabilities. Full data breakdown and protection steps.

By ClawSecure Team · 8 min read Read →
Security Research Feb 6, 2026

Moltbook Database Exposure: What Happened and What It Means for OpenClaw Security

Wiz discovered Moltbook's exposed Supabase database with 1.5M API tokens at risk. Full timeline, technical breakdown, and remediation steps.

By ClawSecure Team · 7 min read Read →

More AI Agent Security Research and Tools

Scan an Agent Component Against This Research

Paste a ClawHub URL, GitHub link, or skill name. Get a full security audit with OWASP ASI Top 10 coverage in seconds.

Start Your Free Scan Browse Audited Agent Skills →