2605.25435v1 May 25, 2026 cs.AI

OpenClaw 에이전트의 보안: 기본 원리, 공격 방법 및 대응 방안

Security of OpenClaw Agents: Fundamentals, Attacks, and Countermeasures

Yuntao Wang
Yuntao Wang
Citations: 4,808
h-index: 29
Jianle Ba
Jianle Ba
Citations: 43
h-index: 3
Han Liu
Han Liu
Citations: 54
h-index: 3
Yanghe Pan
Yanghe Pan
Citations: 518
h-index: 10
Jin Wei
Jin Wei
Citations: 24
h-index: 2
Zhou Su
Zhou Su
Citations: 4
h-index: 1
Tom H. Luan
Tom H. Luan
Citations: 82
h-index: 2
Linkang Du
Linkang Du
Citations: 34
h-index: 3

대규모 언어 모델(LLM) 기반 자율 에이전트의 급속한 발전으로 인해 OpenClaw이라는 새로운 유형의 오픈 소스 에이전트 프레임워크가 등장했습니다. OpenClaw은 지속적으로 실행되며, 다양한 기술을 활용하고, 영구적인 메모리를 사용하며, 다중 채널 상호 작용 기능과 높은 수준의 자율성을 갖춘 시스템입니다. 이러한 기능 덕분에 OpenClaw 에이전트는 복잡하고 다단계 작업을 자율적으로 수행하고 외부 애플리케이션과 원활하게 상호 작용할 수 있지만, 동시에 공격에 취약해질 가능성이 크게 증가합니다. 특히, 높은 권한을 가진 작업과 영구적인 메모리의 조합은 OpenClaw 에이전트를 기술 오염, 인지 조작, 다중 에이전트 연쇄 오류 및 공급망 취약점 등 다양한 새로운 위협에 노출시킵니다. 본 논문에서는 OpenClaw 에이전트의 보안 환경을 종합적으로 분석합니다. 먼저, OpenClaw 에이전트와 기존 AI 에이전트 시스템을 구별하는 일반적인 아키텍처 및 주요 특징을 살펴봅니다. 기존의 보안 및 개인 정보 보호 위협을 계층화된 프레임워크로 분류하고, 에이전트 추론, 작업 실행 및 외부 상호 작용 과정에서 취약점이 어떻게 발생하는지 분석합니다. 또한, 대표적인 방어 메커니즘을 검토하여 현재의 방어 환경을 파악합니다. 마지막으로, OpenClaw 생태계의 신뢰성과 안정성에 관련된 해결되지 않은 문제들을 논의합니다.

Original Abstract

The rapid evolution of large language model (LLM)-driven autonomous agents has given rise to OpenClaw, a new class of open-source agent frameworks that operate as continuously running, skill-augmented systems with persistent memory, multi-channel interaction, and high degrees of autonomy. Such capabilities enable OpenClaw agents to autonomously execute complex, multi-step tasks and interact seamlessly with external applications, but simultaneously introduce a substantially enlarged attack surface. In particular, the combination of high-privilege operations and persistent memory exposes OpenClaw agents to various emerging threats, including skill poisoning, cognitive manipulation, multi-agent cascading failures, and supply-chain vulnerabilities. In this survey, we present a comprehensive study of the security landscape of OpenClaw agents. We first examine the general architecture and key characteristics that distinguish OpenClaw agents from traditional AI agent systems. We categorize existing security and privacy threats into a layered framework and analyze how vulnerabilities arise during agent reasoning, action execution, and external interaction. Representative defense mechanisms are also reviewed to draw the current defense landscape. Finally, several unresolved issues related to the reliability and trustworthiness of OpenClaw ecosystems are discussed.

1 Citations
0 Influential
14.5 Altmetric
73.5 Score
Original PDF

No Analysis Report Yet

This paper hasn't been analyzed by Gemini yet.

Log in to request an AI analysis.

댓글

댓글을 작성하려면 로그인하세요.

아직 댓글이 없습니다. 첫 번째 댓글을 남겨보세요!