TGViewer
网络安全笔记 网络安全笔记 @tsecrecord · 7.95K subscribers
Post #1537 3.68K
余弦的OpenClaw 极简安全实践指南更新了 | 帖子 | github | #指南

适用于:
- OpenClaw 以高权限运行(具备终端/root 权限的环境)
- OpenClaw 持续安装并使用Skills / MCPs / scripts / tools
- 目标是在风险可控、审计明确的前提下实现能力最大化

指南提供了一套经过实战检验的、极简的 三层防御矩阵:

事前 (Pre-action): 行为黑名单与严格的技能包安装审计协议(防供应链投毒)
事中 (In-action): 权限收窄与跨技能业务风控前置检查 (Pre-flight Checks)
事后 (Post-action): 每晚自动化显性巡检(覆盖 13 项核心指标)与大脑 Git 灾备同步

使用方法:把安全指南直接丢给 OpenClaw,让它自己理解、评估、部署整个防御体系。四步:下载指南 → 发给 Agent → Agent 评估 → 部署。
  • ❤ 1
  • 👍 1
  • 👌 1
More from @tsecrecord
  1. Sep 27, 2026一款本地数字取证/事件响应辅助工具。该浏览器扩展程序会捕获您调查过程中的屏幕截图(例如 Velociraptor、EDR/SIEM 控制面板、Security Onion、Splu…
  2. Sep 20, 2026https://opsectechniques.com/
  3. Aug 27, 2026https://github.com/hypnguyen1209/log4j2-rce
  4. Aug 15, 2026https://telegra.ph/weekly-408-08-14
  5. Jul 6, 2026The Long Watch — Scenario Select https://mr-r3b00t.github.io/org_cyber_attack_sim/
  6. Jun 24, 2026https://techblog.zozo.com/entry/soc-claude-agent#SOC-Agent%E3%81%AE%E8%A8%AD%E8%A8%88
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →