Quoting OpenClaw (running Opus 4.6)
infonewsLLM-Specific
security
Source: Simon Willison's WeblogAugust 9, 2026
Summary
A security researcher using OpenClaw (an AI system running Opus 4.6) discovered that a gym-booking website had a critical authorization flaw: the API lacked permission checks when canceling reservations, allowing anyone to cancel other users' bookings without proper authentication (verification of who you are). The researcher demonstrated this by canceling another person's reservation from the waitlist.
Classification
Attack SophisticationModerate
Impact (CIA+S)
integrity
AI Component TargetedAPI
Affected Vendors
Anthropic
Related Issues
Monthly digest — independent AI security research
Original source: https://simonwillison.net/2026/Aug/10/openclaw/
First tracked: August 12, 2026 at 08:00 PM
Classified by LLM (prompt v3) · confidence: 65%