On June 11, security researchers showed how to subvert OpenClaw, one of the most widely used AI agents. Instructions hidden in something as ordinary as a shared contact or a pinned location could make the agent run an attacker’s code and hand over its secrets.