Home
News
Tech Grid
Interviews
Anecdotes
Think Stack
Press Releases
Articles
  • Home
  • /
  • News
  • /
  • Cybersecurity
  • /
  • AI
  • /
  • Astrix Security Releases Free OpenClaw Scanner to Detect Risky Open-Source AI Agent Deployments
  • AI

Astrix Security Releases Free OpenClaw Scanner to Detect Risky Open-Source AI Agent Deployments


Astrix Security Releases Free OpenClaw Scanner to Detect Risky Open-Source AI Agent Deployments
  • by: PR Newswire
  • |
  • February 11, 2026

Astrix Security, the leader in AI agent security, has announced the general availability of the OpenClaw Scanner, a free, standalone tool designed to identify deployments of the open-source AI assistant OpenClaw (also known as MoltBot) within organizational environments. As autonomous AI agents gain adoption, they create significant visibility gaps by executing commands, accessing files, and authenticating to internal systems without centralized oversight.

Quick Intel

  • Astrix releases the OpenClaw Scanner as a free tool to detect OpenClaw/MoltBot AI agent instances using read-only EDR telemetry.
  • The scanner runs locally as a portable Python-based tool with no execution on endpoints or additional agent deployment.
  • It addresses recent security disclosures exposing authentication weaknesses and misconfigurations in publicly accessible OpenClaw instances.
  • Detected risks include potential remote access to employee devices and persistent compromise of systems like Salesforce, GitHub, and Slack.
  • The tool provides contextual reports with user/device details and step-by-step remediation guidance for rapid mitigation.
  • Available immediately via PyPI at https://pypi.org/project/astrix-openclaw-scanner/, with planned enhancements for broader agent threat detection.

Closing the Blind Spot in AI Agent Deployments OpenClaw exemplifies the emerging risks of ungoverned autonomous AI agents running on endpoints. Recent research highlighted widespread exposure and critical misconfigurations in real enterprise settings, enabling attackers to gain unauthorized access and maintain persistence. Astrix's analysis confirmed similar issues, underscoring the urgent need for detection capabilities tailored to this threat vector.

Non-Intrusive, Enterprise-Ready Detection The OpenClaw Scanner leverages existing read-only EDR data to identify evidence of OpenClaw execution without intrusive actions. Its portable design allows quick integration within security perimeters, delivering clear reports that include user context, device information, and actionable remediation steps to support investigation and response.

"OpenClaw and similar autonomous agents represent a breakthrough in operational automation, but they also introduce unprecedented risk," said Idan Gour, Astrix Security Co-Founder and President. "The OpenClaw Scanner is purpose-built to help teams answer the critical question: Are AI agents running in my environment? It gives security teams an immediate, low-friction way to detect agent activity before it becomes a security incident."

Supporting Responsible AI Adoption By releasing this capability as a free community resource, Astrix extends core elements of its platform to help security teams address immediate gaps while organizations integrate AI agents responsibly. The tool aligns with Astrix's mission to secure the full lifecycle of AI agents and Non-Human Identities (NHIs), which often outnumber human identities and remain largely ungoverned.

The OpenClaw Scanner is available for download today. Astrix plans continued research and enhancements to keep pace with evolving agent-based threats.

 

About Astrix Security

Astrix secures the full lifecycle of AI agents and the Non-Human Identities (NHIs) that power them, extending traditional IAM to govern the modern AI attack surface. While agents and other NHIs outnumber humans 100:1, they remain under the radar, creating the biggest blindspot in our identity perimeter. Astrix provides a unified solution for the continuous discovery of all AI agents and NHIs, secure and remediate excessive privileges, real-time threats, and adoption of new agents responsibly with 'secure by design' guardrails like Agentic just-in-time access. Enabling our customers to responsibly adopt and accelerate productivity. Trusted by leading enterprises including Workday, NetApp, Priceline, Figma, Hubspot, Workato and many more.

  • AI AgentsCyber SecurityAgentic AIThreat Detection
News Disclaimer
  • Share