
ๆ็ๆฅๆฅ|3ๆ 11, 2026 11:43
The Ministry of Industry and Information Technology has issued a "six dos and six don'ts" suggestion on preventing security risks of OpenClaw ("lobster") open-source intelligent agents
Odaily Planet Daily News: In response to the security risks in typical application scenarios of "crayfish", the Network Security Threat and Vulnerability Information Sharing Platform (NVDB) of the Ministry of Industry and Information Technology has organized intelligent agent providers, vulnerability collection platform operation units, network security enterprises, etc. to study and propose the "six musts and six don'ts" suggestion. It is suggested that in financial trading scenarios, there is a prominent risk of triggering erroneous transactions or even account takeover. By deploying "Lobster" for enterprises or individuals, calling financial related application interfaces, automated trading and risk control can be carried out, improving the efficiency of quantitative trading, intelligent investment research, and asset portfolio management, and achieving functions such as market data capture, strategy analysis, and trading instruction execution. The coping strategies include: implementing network isolation and minimum permissions, and closing unnecessary Internet ports; Establish a manual review and circuit breaker emergency mechanism, and add secondary confirmation for key operations; Strengthen supply chain audits, use official components, and regularly fix vulnerabilities; Implement full chain auditing and security monitoring to promptly identify and address security risks. (Ministry of Industry and Information Technology)
Timeline