Forum ForumsWhat’s NewRecent PostsMembers Forums Search Notifications Clear all Tag: infrastructure security Search Phrase: Search Type: Search Entire Posts Search Titles Only Find Topics by Tags Find Posts by User Find Topics Started by User Advanced search options Search in Forums: OpenClaw — Architecture and Threat Modeling — — Trust Boundaries and Component Isolation — — Attack Surface Mapping — — Threat Model Templates and Examples — Sandboxing and Execution Isolation — — Container and Runtime Hardening — — Sandbox Escapes and Breakout Research — — Seccomp, AppArmor, and LSM Profiles — Credential and Secret Handling — — Secret Injection Patterns — — Credential Leakage via Agents and Logs — Network Egress and Exfiltration Controls — — Egress Filtering Configurations — — Detecting Agent Exfiltration Attempts — Plugin and Tool Security — — Tool Vetting and Review — — MCP and Tool Protocol Security — — Supply Chain Integrity for Tools The Claw Family — NemoClaw — NVIDIA Privacy and Security Stack — — GPU Memory Isolation and Leakage — — NIM Container Security — — NeMo Guardrails — Security vs. Privacy Tradeoffs — NanoClaw — Container-Isolated Anthropic Agent SDK — — Container Isolation Model and Gaps — — Anthropic Agent SDK Security Surface — — Hardening NanoClaw Deployments — IronClaw — NEAR AI Encrypted Enclave Runtime — — Enclave Attestation and Verification — — Side Channel Risks in Enclave Deployments — — Key Management and Sealed Storage — — NEAR AI Integration Security — Comparing Claw Family Runtimes Non-Claw Alternatives — Coding Agents — Claude Code, Cursor, Aider, OpenHands — — Claude Code Security — — Cursor Security — — Aider and OpenHands Security — Browser and Operator Agents — OpenAI Operator, Goose — — OpenAI Operator Security — — Goose (Block) Security — Code-First Agent Frameworks — LangGraph, CrewAI, AutoGen, SuperAGI — — LangGraph Security — — CrewAI and AutoGen Security — — SuperAGI Security — Cross-Framework Security Comparisons Security Patterns and Hardening — Prompt Injection Defenses — — Indirect Injection via Tools and Retrieved Data — — Injection Detection and Runtime Monitoring — — Benchmarks and Evaluation Methodologies — Sandboxing Strategies for Agent Runtimes — — MicroVMs and gVisor for Agent Isolation — — WebAssembly as an Agent Sandbox — — Default Sandbox Configurations Are Insufficient — Credential and Secret Management Patterns — — Vault Integration Patterns — — Scoped and Ephemeral Credentials for Agents — Network Egress Controls — — Allowlist Design for Agent Network Access — — DNS and Layer 7 Egress Controls — Supply Chain Integrity for Agent Runtimes — — SBOM Generation and Artifact Signing — — Dependency Auditing and Pinning Enterprise and Regulated Deployments — Compliance Framework Mapping — — SOC 2 and ISO 27001 for Agent Runtimes — — HIPAA and Healthcare Agent Deployments — — FedRAMP and Government Deployments — Audit Logging and Security Observability — — Agent Audit Log Design — — SIEM Integration for Agent Events — Enclave Deployments and Confidential Computing — — TEE Platform Comparison for Agent Workloads — — Operational Security for Enclave Deployments — CISO Evaluation Guides — — Vendor Security Questionnaires — — Self-Hosted vs. Vendor-Hosted Risk Tradeoffs Community — Announcements — Introductions — Show and Tell — News and Vulnerability Disclosures — Off-Topic Main Category — Main Forum Search in date period: Any Date Last 24 hours Last Week Last Month Last 3 Months Last 6 Months Last Year ago Sort Search Results by: Relevancy Date User Forum Descending order Ascending order How do I check for leftover memory mappings in /proc/pid/maps for CUDA? Mike Hansen 1 month ago infrastructure security logging siem openclaw logging audit trails TIL: The orchestrator API exposes debug endpoints by default. Turn them off. Mike Hansen 1 month ago infrastructure security logging siem openclaw logging audit trails Check out what I made: A local mirror for PyPI packages used by Claw. Mike Hansen 1 month ago infrastructure security logging siem openclaw logging audit trails What is the best way to handle tools that pull code dynamically at runtime? Mike Hansen 1 month ago infrastructure security logging siem openclaw logging audit trails Reaction to the latest NCCoE guidance on AI agent security - too vague? Mike Hansen 1 month ago infrastructure security logging siem openclaw logging audit trails Unpopular opinion: You don't need enclaves — proper network filtering is enough for 90% Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails Just published a comparison matrix of default vs. recommended cgroup settings. Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails Anyone else finding that NemoClaw's guardrail false positive rate jumps when you feed it code with heavy string escaping? Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails Guide: Setting up IronClaw with hardware-backed attestation for compliance audits Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails What's the best way to version-control agent runtime configurations for auditability? Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails Unpopular opinion: We need a red-team certification for agent runtimes, not blog posts Mike Hansen 2 months ago infrastructure security logging siem openclaw logging audit trails Share: Share Tweet Share