OpenClaw, the viral AI agentic tool, now lets attackers silently gain admin unauthenticated access. The flaw bypasses all credential checks, letting a single malicious prompt elevate privileges. Security teams now face a new vector for stealthy intrusions, especially in cloud‑hosted services. Practitioners should harden prompt handling and monitor for unauthorized admin activity.