<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>AI安全 on Ming Blog</title>
    <link>https://puming.zone/tags/ai%E5%AE%89%E5%85%A8/</link>
    <description>Recent content in AI安全 on Ming Blog</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-us</language>
    <lastBuildDate>Thu, 23 Apr 2026 00:00:00 +0000</lastBuildDate>
    
	<atom:link href="https://puming.zone/tags/ai%E5%AE%89%E5%85%A8/index.xml" rel="self" type="application/rss+xml" />
    
    
    <item>
      <title>OpenClaw安全实战系列(四)：幽灵连通性—揭秘CVE-2026-32038沙箱网络隔离绕过与靶标实战</title>
      <link>https://puming.zone/post/2026-04-23-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E5%9B%9B%E5%B9%BD%E7%81%B5%E8%BF%9E%E9%80%9A%E6%80%A7%E6%8F%AD%E7%A7%98cve-2026-32038%E6%B2%99%E7%AE%B1%E7%BD%91%E7%BB%9C%E9%9A%94%E7%A6%BB%E7%BB%95%E8%BF%87%E4%B8%8E%E9%9D%B6%E6%A0%87%E5%AE%9E%E6%88%98/</link>
      <pubDate>Thu, 23 Apr 2026 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2026-04-23-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E5%9B%9B%E5%B9%BD%E7%81%B5%E8%BF%9E%E9%80%9A%E6%80%A7%E6%8F%AD%E7%A7%98cve-2026-32038%E6%B2%99%E7%AE%B1%E7%BD%91%E7%BB%9C%E9%9A%94%E7%A6%BB%E7%BB%95%E8%BF%87%E4%B8%8E%E9%9D%B6%E6%A0%87%E5%AE%9E%E6%88%98/</guid>
      <description>作者：星云实验室 浦明 关键词：OpenClaw漏洞；CVE-2026-32038；沙箱逃逸；网络隔离绕过；Docker安全 摘要 在OpenCla</description>
    </item>
    
    <item>
      <title>OpenClaw安全实战系列(一)：Agent Skill 供应链投毒路径重现与靶标建设</title>
      <link>https://puming.zone/post/2026-03-16-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%B8%80agent-skill%E4%BE%9B%E5%BA%94%E9%93%BE%E6%8A%95%E6%AF%92%E8%B7%AF%E5%BE%84%E9%87%8D%E7%8E%B0%E4%B8%8E%E9%9D%B6%E6%A0%87%E5%BB%BA%E8%AE%BE/</link>
      <pubDate>Mon, 16 Mar 2026 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2026-03-16-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%B8%80agent-skill%E4%BE%9B%E5%BA%94%E9%93%BE%E6%8A%95%E6%AF%92%E8%B7%AF%E5%BE%84%E9%87%8D%E7%8E%B0%E4%B8%8E%E9%9D%B6%E6%A0%87%E5%BB%BA%E8%AE%BE/</guid>
      <description>作者：星云实验室 浦明 关键词：AI Agent；Agentic AI 安全；OpenClaw 安全风险；Skill 供应链投毒 摘要 本文旨在全面剖析当前 Agentic AI</description>
    </item>
    
    <item>
      <title>OpenClaw近期生态安全事件解读：从RCE漏洞到Skill供应链投毒分析</title>
      <link>https://puming.zone/post/2026-02-28-openclaw%E8%BF%91%E6%9C%9F%E7%94%9F%E6%80%81%E5%AE%89%E5%85%A8%E4%BA%8B%E4%BB%B6%E8%A7%A3%E8%AF%BB%E4%BB%8Erce%E6%BC%8F%E6%B4%9E%E5%88%B0skill%E4%BE%9B%E5%BA%94%E9%93%BE%E6%8A%95%E6%AF%92%E5%88%86%E6%9E%90/</link>
      <pubDate>Sat, 28 Feb 2026 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2026-02-28-openclaw%E8%BF%91%E6%9C%9F%E7%94%9F%E6%80%81%E5%AE%89%E5%85%A8%E4%BA%8B%E4%BB%B6%E8%A7%A3%E8%AF%BB%E4%BB%8Erce%E6%BC%8F%E6%B4%9E%E5%88%B0skill%E4%BE%9B%E5%BA%94%E9%93%BE%E6%8A%95%E6%AF%92%E5%88%86%E6%9E%90/</guid>
      <description>作者：星云实验室 浦明 引言 2025年底至2026年初的技术演进历程中，AI领域经历了一场从对话式向自主式智能代理的转变。在这一技术浪潮中，由开</description>
    </item>
    
    <item>
      <title>OpenClaw安全实战系列(二)：白名单也防不住？复盘 CVE-2026-28363 授权绕过全过程</title>
      <link>https://puming.zone/post/2026-02-22-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%BA%8C%E7%99%BD%E5%90%8D%E5%8D%95%E4%B9%9F%E9%98%B2%E4%B8%8D%E4%BD%8F%E5%A4%8D%E7%9B%98cve-2026-28363%E6%8E%88%E6%9D%83%E7%BB%95%E8%BF%87%E5%85%A8%E8%BF%87%E7%A8%8B/</link>
      <pubDate>Sun, 22 Feb 2026 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2026-02-22-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%BA%8C%E7%99%BD%E5%90%8D%E5%8D%95%E4%B9%9F%E9%98%B2%E4%B8%8D%E4%BD%8F%E5%A4%8D%E7%9B%98cve-2026-28363%E6%8E%88%E6%9D%83%E7%BB%95%E8%BF%87%E5%85%A8%E8%BF%87%E7%A8%8B/</guid>
      <description>作者：星云实验室 浦明 关键词：Agentic AI 安全；OpenClaw 漏洞；CVE-2026-28363；命令注入 RCE；POSIX 绕过 摘要 本文</description>
    </item>
    
    <item>
      <title>OpenClaw安全实战系列(三)：利用网关劫持实现 OpenClaw 控制端 1-Click RCE (CVE-2026-25253)</title>
      <link>https://puming.zone/post/2026-01-29-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%B8%89%E5%88%A9%E7%94%A8%E7%BD%91%E5%85%B3%E5%8A%AB%E6%8C%81%E5%AE%9E%E7%8E%B0openclaw%E6%8E%A7%E5%88%B6%E7%AB%AF1-click-rce-cve-2026-25253/</link>
      <pubDate>Thu, 29 Jan 2026 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2026-01-29-openclaw%E5%AE%89%E5%85%A8%E5%AE%9E%E6%88%98%E7%B3%BB%E5%88%97%E4%B8%89%E5%88%A9%E7%94%A8%E7%BD%91%E5%85%B3%E5%8A%AB%E6%8C%81%E5%AE%9E%E7%8E%B0openclaw%E6%8E%A7%E5%88%B6%E7%AB%AF1-click-rce-cve-2026-25253/</guid>
      <description>作者：星云实验室 浦明 摘要 本文深入解析 OpenClaw（原 Clawdbot/Moltbot）控制端 UI 存在的关键逻辑漏洞 CVE-2026-252</description>
    </item>
    
    <item>
      <title>从现网到靶场：2025云上AI安全事件深度复盘</title>
      <link>https://puming.zone/post/2025-12-15-%E4%BB%8E%E7%8E%B0%E7%BD%91%E5%88%B0%E9%9D%B6%E5%9C%BA2025%E4%BA%91%E4%B8%8Aai%E5%AE%89%E5%85%A8%E4%BA%8B%E4%BB%B6%E6%B7%B1%E5%BA%A6%E5%A4%8D%E7%9B%98/</link>
      <pubDate>Mon, 15 Dec 2025 00:00:00 +0000</pubDate>
      
      <guid>https://puming.zone/post/2025-12-15-%E4%BB%8E%E7%8E%B0%E7%BD%91%E5%88%B0%E9%9D%B6%E5%9C%BA2025%E4%BA%91%E4%B8%8Aai%E5%AE%89%E5%85%A8%E4%BA%8B%E4%BB%B6%E6%B7%B1%E5%BA%A6%E5%A4%8D%E7%9B%98/</guid>
      <description>作者：星云实验室 浦明 专题：数据泄露 · AI安全 标签：大模型安全 摘要 本文聚焦现网真实安全事件，深度复盘2025年典型云上AI安全事件，还原真实攻</description>
    </item>
    
  </channel>
</rss>