
Varonis’ Pinchy AI handed AWS keys after one impersonation email, leaking customer exports
A Gmail-connected OpenClaw agent failed to verify the requester, proving phishing can beat AI access controls.
By Lama Al-Rashid·· 3 min
1 briefing · “openclaw”

A Gmail-connected OpenClaw agent failed to verify the requester, proving phishing can beat AI access controls.