MATRA: Modeling the Attack Surface of Agentic AI Systems -- OpenClaw Case Study
Fuente:
arXiv
Saved in:
| Main Authors: | Van hamme, Tim, Vissers, Thomas, Carnerero-Cano, Javier, Fritz, Mario, Lupu, Emil C., Desmet, Lieven, Divakaran, Dinil Mon |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
AI-based Traffic Modeling for Network Security and Privacy: Challenges Ahead
by: Divakaran, Dinil Mon
Published: (2025)
by: Divakaran, Dinil Mon
Published: (2025)
LLMs for Cyber Security: New Opportunities
by: Divakaran, Dinil Mon, et al.
Published: (2024)
by: Divakaran, Dinil Mon, et al.
Published: (2024)
RECTor: Robust and Efficient Correlation Attack on Tor
by: Wu, Binghui, et al.
Published: (2025)
by: Wu, Binghui, et al.
Published: (2025)
Foundations for Agentic AI Investigations from the Forensic Analysis of OpenClaw
by: Gruber, Jan, et al.
Published: (2026)
by: Gruber, Jan, et al.
Published: (2026)
Stealthy Poisoning Attacks Bypass Defenses in Regression Settings
by: Carnerero-Cano, Javier, et al.
Published: (2026)
by: Carnerero-Cano, Javier, et al.
Published: (2026)
From ML to LLM: Evaluating the Robustness of Phishing Webpage Detection Models against Adversarial Attacks
by: Kulkarni, Aditya, et al.
Published: (2024)
by: Kulkarni, Aditya, et al.
Published: (2024)
Execution Is the New Attack Surface: Survivability-Aware Agentic Crypto Trading with OpenClaw-Style Local Executors
by: Borjigin, Ailiya, et al.
Published: (2026)
by: Borjigin, Ailiya, et al.
Published: (2026)
UniNet: A Unified Multi-granular Traffic Modeling Framework for Network Security
by: Wu, Binghui, et al.
Published: (2025)
by: Wu, Binghui, et al.
Published: (2025)
ThinkEval: Practical Evaluation of Knowledge Leakage in LLM Editing using Thought-based Knowledge Graphs
by: Baser, Manit, et al.
Published: (2025)
by: Baser, Manit, et al.
Published: (2025)
QuantClaw: Precision Where It Matters for OpenClaw
by: Zhang, Manyi, et al.
Published: (2026)
by: Zhang, Manyi, et al.
Published: (2026)
Step-by-Step Reasoning Attack: Revealing 'Erased' Knowledge in Large Language Models
by: Sinha, Yash, et al.
Published: (2025)
by: Sinha, Yash, et al.
Published: (2025)
A Security Analysis of the OpenClaw AI Agent Framework
by: Suwansathit, Surada, et al.
Published: (2026)
by: Suwansathit, Surada, et al.
Published: (2026)
ROSClaw: An OpenClaw ROS 2 Framework for Agentic Robot Control and Interaction
by: Cardenas, Irvin Steve, et al.
Published: (2026)
by: Cardenas, Irvin Steve, et al.
Published: (2026)
Security, Privacy, and Ethical Risks in OpenClaw
by: Jin, Yutong, et al.
Published: (2026)
by: Jin, Yutong, et al.
Published: (2026)
CLaRE-ty Amid Chaos: Quantifying Representational Entanglement to Predict Ripple Effects in LLM Editing
by: Baser, Manit, et al.
Published: (2026)
by: Baser, Manit, et al.
Published: (2026)
Multimodal Large Language Models for Phishing Webpage Detection and Identification
by: Lee, Jehyun, et al.
Published: (2024)
by: Lee, Jehyun, et al.
Published: (2024)
ZEST: Attention-based Zero-Shot Learning for Unseen IoT Device Classification
by: Wu, Binghui, et al.
Published: (2023)
by: Wu, Binghui, et al.
Published: (2023)
Mitigating Bias in Machine Learning Models for Phishing Webpage Detection
by: Kulkarni, Aditya, et al.
Published: (2024)
by: Kulkarni, Aditya, et al.
Published: (2024)
From Assistant to Double Agent: Formalizing and Benchmarking Attacks on OpenClaw for Personalized Local AI Agent
by: Wang, Yuhang, et al.
Published: (2026)
by: Wang, Yuhang, et al.
Published: (2026)
When OpenClaw Meets Hospital: Toward an Agentic Operating System for Dynamic Clinical Workflows
by: Yang, Wenxian, et al.
Published: (2026)
by: Yang, Wenxian, et al.
Published: (2026)
A Trajectory-Based Safety Audit of Clawdbot (OpenClaw)
by: Chen, Tianyu, et al.
Published: (2026)
by: Chen, Tianyu, et al.
Published: (2026)
A Systematic Security Evaluation of OpenClaw and Its Variants
by: Wang, Yuhang, et al.
Published: (2026)
by: Wang, Yuhang, et al.
Published: (2026)
OpenClaw-RL: Train Any Agent Simply by Talking
by: Wang, Yinjie, et al.
Published: (2026)
by: Wang, Yinjie, et al.
Published: (2026)
Security Attack and Defense Strategies for Autonomous Agent Frameworks: A Layered Review with OpenClaw as a Case Study
by: Xu, Luyao, et al.
Published: (2026)
by: Xu, Luyao, et al.
Published: (2026)
Benchmarks for Trajectory Safety Evaluation and Diagnosis in OpenClaw and Codex: ATBench-Claw and ATBench-Codex
by: Yang, Zhonghao, et al.
Published: (2026)
by: Yang, Zhonghao, et al.
Published: (2026)
ClawKeeper: Comprehensive Safety Protection for OpenClaw Agents Through Skills, Plugins, and Watchers
by: Liu, Songyang, et al.
Published: (2026)
by: Liu, Songyang, et al.
Published: (2026)
Defensible Design for OpenClaw: Securing Autonomous Tool-Invoking Agents
by: Li, Zongwei, et al.
Published: (2026)
by: Li, Zongwei, et al.
Published: (2026)
Uncovering Security Threats and Architecting Defenses in Autonomous Agents: A Case Study of OpenClaw
by: Ying, Zonghao, et al.
Published: (2026)
by: Ying, Zonghao, et al.
Published: (2026)
Don't Let the Claw Grip Your Hand: A Security Analysis and Defense Framework for OpenClaw
by: Shan, Zhengyang, et al.
Published: (2026)
by: Shan, Zhengyang, et al.
Published: (2026)
OpenClaw AI Agents as Informal Learners at Moltbook: Characterizing an Emergent Learning Community at Scale
by: Chen, Eason, et al.
Published: (2026)
by: Chen, Eason, et al.
Published: (2026)
OpenGo: An OpenClaw-Based Robotic Dog with Real-Time Skill Switching
by: Li, Hanbing, et al.
Published: (2026)
by: Li, Hanbing, et al.
Published: (2026)
Red-Teaming Agent Execution Contexts: Open-World Security Evaluation on OpenClaw
by: Yao, Hongwei, et al.
Published: (2026)
by: Yao, Hongwei, et al.
Published: (2026)
ClawTrap: A MITM-Based Red-Teaming Framework for Real-World OpenClaw Security Evaluation
by: Zhao, Haochen, et al.
Published: (2026)
by: Zhao, Haochen, et al.
Published: (2026)
Trojan's Whisper: Stealthy Manipulation of OpenClaw through Injected Bootstrapped Guidance
by: Liu, Fazhong, et al.
Published: (2026)
by: Liu, Fazhong, et al.
Published: (2026)
Your Agent, Their Asset: A Real-World Safety Analysis of OpenClaw
by: Wang, Zijun, et al.
Published: (2026)
by: Wang, Zijun, et al.
Published: (2026)
Taming OpenClaw: Security Analysis and Mitigation of Autonomous LLM Agent Threats
by: Deng, Xinhao, et al.
Published: (2026)
by: Deng, Xinhao, et al.
Published: (2026)
Automating Computational Chemistry Workflows via OpenClaw and Domain-Specific Skills
by: Ding, Mingwei, et al.
Published: (2026)
by: Ding, Mingwei, et al.
Published: (2026)
EagleEye: Attention to Unveil Malicious Event Sequences from Provenance Graphs
by: Gysel, Philipp, et al.
Published: (2024)
by: Gysel, Philipp, et al.
Published: (2024)
Agent Privilege Separation in OpenClaw: A Structural Defense Against Prompt Injection
by: Cheng, Darren, et al.
Published: (2026)
by: Cheng, Darren, et al.
Published: (2026)
Clawdrain: Exploiting Tool-Calling Chains for Stealthy Token Exhaustion in OpenClaw Agents
by: Dong, Ben, et al.
Published: (2026)
by: Dong, Ben, et al.
Published: (2026)
Similar Items
-
AI-based Traffic Modeling for Network Security and Privacy: Challenges Ahead
by: Divakaran, Dinil Mon
Published: (2025) -
LLMs for Cyber Security: New Opportunities
by: Divakaran, Dinil Mon, et al.
Published: (2024) -
RECTor: Robust and Efficient Correlation Attack on Tor
by: Wu, Binghui, et al.
Published: (2025) -
Foundations for Agentic AI Investigations from the Forensic Analysis of OpenClaw
by: Gruber, Jan, et al.
Published: (2026) -
Stealthy Poisoning Attacks Bypass Defenses in Regression Settings
by: Carnerero-Cano, Javier, et al.
Published: (2026)