Breaking
BreakingScreenRantUniversal Developing Jurassic World Rebirth Sequel, Writer David Koepp Provides Update· 8 minutes agoBreakingIndieWireSteven Conrad Reflects on 'DTF St. Louis' Success and Audience Connection· 8 minutes agoBreakingDeadline HollywoodRonnie Schell, 'Gomer Pyle: USMC' Actor, Dies at 94· 8 minutes agoBreakingReddit r/worldnewsUAE Reportedly Pays Iran $3 Billion, Agrees to Release More Funds to Halt Attacks· 14 minutes agoBreakingNDTV WorldFord Recalls Over 255,000 Focus Cars Due to Engine Stall Risk· 20 minutes agoBreakingDecrypt CryptoAI Agents Remain Vulnerable to Prompt Injection Attacks, Study Finds· 24 minutes agoBreakingFrance 24British Prime Minister Faces Political Challenge After Defense Resignations· 24 minutes agoBreakingABC News AustraliaBritish Defence Secretary Resigns Over Spending Shortfalls Amid Nuclear Concerns· 29 minutes agoBreakingTimes of India - WorldMidland, Texas Shooter Dead After Standoff; One Killed, Eleven Injured· 40 minutes agoBreakingVarietyJoe Negri, Musician and 'Mister Rogers' Neighborhood' Handyman, Dies at 99· 40 minutes agoBreakingScreenRantUniversal Developing Jurassic World Rebirth Sequel, Writer David Koepp Provides Update· 8 minutes agoBreakingIndieWireSteven Conrad Reflects on 'DTF St. Louis' Success and Audience Connection· 8 minutes agoBreakingDeadline HollywoodRonnie Schell, 'Gomer Pyle: USMC' Actor, Dies at 94· 8 minutes agoBreakingReddit r/worldnewsUAE Reportedly Pays Iran $3 Billion, Agrees to Release More Funds to Halt Attacks· 14 minutes agoBreakingNDTV WorldFord Recalls Over 255,000 Focus Cars Due to Engine Stall Risk· 20 minutes agoBreakingDecrypt CryptoAI Agents Remain Vulnerable to Prompt Injection Attacks, Study Finds· 24 minutes agoBreakingFrance 24British Prime Minister Faces Political Challenge After Defense Resignations· 24 minutes agoBreakingABC News AustraliaBritish Defence Secretary Resigns Over Spending Shortfalls Amid Nuclear Concerns· 29 minutes agoBreakingTimes of India - WorldMidland, Texas Shooter Dead After Standoff; One Killed, Eleven Injured· 40 minutes agoBreakingVarietyJoe Negri, Musician and 'Mister Rogers' Neighborhood' Handyman, Dies at 99· 40 minutes ago
Technology
Source: VentureBeat

NanoClaw and JFrog Partner to Secure AI Agents from Malicious Code

NanoClaw, an open-source variant of OpenClaw, has partnered with software supply chain management leader JFrog to launch a new security integration. This collaboration aims to protect NanoClaw autonomous agents from malicious code injection by ensuring they only download scanned and safe software dependencies through JFrog’s vetted registries. The initiative addresses a growing vulnerability where AI agents autonomously install packages without human oversight, potentially exposing systems to supply chain attacks. The integration is immediately available, offering free access for the open-source community and seamless routing through existing commercial JFrog environments for enterprises.

By Fainaron·Jun 12, 2026 (3 hours ago)·1 views
NanoClaw and JFrog Partner to Secure AI Agents from Malicious Code

The creators of NanoClaw, an open-source variant of OpenClaw, have partnered with JFrog, a leader in software supply chain management, to introduce a new security integration. This joint effort is designed to safeguard NanoClaw autonomous agents against malicious code injection.

Autonomous AI agents often install software packages in the background to expand their capabilities, frequently without the knowledge or oversight of their human operators. This autonomy, while powerful, makes them susceptible to software supply chain attacks, where malicious packages can be introduced through open-source registries. Operators, who may not be developers, are often unaware of these underlying security implications.

To counter this, NanoClaw agents are now configured to route all requests for software packages, CLI tools, and Model Context Protocol (MCP) servers exclusively through JFrog’s vetted registries. If an agent attempts to download a compromised library, the JFrog registry intercepts and blocks the request, issuing a security policy error. The system then guides the agent to automatically find and install an approved, non-malicious version of the required package.

Gal Marder, Chief Strategy Officer at JFrog, highlighted that agents perform actions not always controllable or trainable. He emphasized the need for enterprises to have a system of record to track agent activities, consumed packages, skills, and MCPs. This integration provides a foundational trust layer and strict governance, offering crucial visibility for organizations adopting autonomous agents.

Gavriel Cohen, creator of NanoClaw and CEO of NanoCo AI, noted that operators are often not developers and may not understand the security implications. Previous security enhancements by NanoCo AI include partnerships with Vercel for permissions dialogs and Docker for secure, isolated agent execution within virtual containers.

This integration is available immediately. It is offered free of charge to the open-source community, providing access to safe, vetted software artifacts and tools. For enterprise deployments, the architecture integrates seamlessly with existing commercial JFrog environments, ensuring compliance with internal security policies and governance standards. Contributions of new agent “skills” to the registry are also scanned for malicious code before broader use.

(Source: VentureBeat)

Advertisement

AdSense slot • inline

Source attribution: This article was AI-curated and rewritten by Fainaron from a piece originally published by VentureBeat. Read the original at VentureBeat →

More like this

Tony-Nominated Alex Brightman Stars in 'There Are No Ghosts at the Grand,' Game Wins Tribeca Award
Technology
5 minutes ago

Tony-Nominated Alex Brightman Stars in 'There Are No Ghosts at the Grand,' Game Wins Tribeca Award

Broadway actor and singer Alex Brightman has been announced as the voice of Chris, the lead character in the upcoming game "There Are No Ghosts at the Grand." Brightman, a two-time Tony nominee, is known for his roles in "School of Rock" and "Beetlejuice." This announcement follows the game's recent win of the top prize at the 25th anniversary Tribeca Games Festival in New York City. Developed by British studio Friday Sundae, the "musical Lovecraftian renovation" game emphasizes a collaborative and improvisational development process.

IGN
Anthropic and OpenAI Engaged in "Bitter Battle" for AI's Future
Technology
5 minutes ago

Anthropic and OpenAI Engaged in "Bitter Battle" for AI's Future

A significant rivalry is unfolding in the artificial intelligence sector, described as a "bitter battle" between leading AI companies Anthropic and OpenAI. This intense competition is centered on the future direction and development of artificial intelligence technology. The two entities are key players in the evolving landscape of AI.

Yahoo Finance
DJI and Insta360 Engaged in Patent Battle Over Vlogging Cameras
Technology
8 minutes ago

DJI and Insta360 Engaged in Patent Battle Over Vlogging Cameras

Leading camera manufacturers DJI and Insta360 are currently involved in a legal dispute. Both companies have filed lawsuits and counter-lawsuits against each other concerning their respective vlogging camera technologies.

Engadget
FromSoftware Director Reassures Fans Amid Shareholder Pressure, Teases Unannounced Titles
Technology
8 minutes ago

FromSoftware Director Reassures Fans Amid Shareholder Pressure, Teases Unannounced Titles

Hidetaka Miyazaki, creator of Dark Souls and Elden Ring, has assured fans that FromSoftware maintains creative freedom despite increased shareholder presence by activist investor Oasis Management Company in parent company Kadokawa. Miyazaki stated the studio can "freely make the kind of games we want to make without excessive interference." Oasis, which now holds the largest stake in Kadokawa, has raised concerns about the valuation of FromSoftware's contributions and has called for changes in leadership.

IGN

By the numbers

Fainaron — live counters

Updated every 30 seconds. Automatically — no human edits.

Total Articles

0

Visitors Today

0

This Month

0

Lifetime Visitors

0

Article Views

0

Pageviews Today

0

Pageviews Lifetime

0

Last 30 Days

0

as of 6/12/2026, 7:51:50 PM