Paperclip AI Flaws Enable Host Command Execution

Get the Tech newsletter
Daily tech — startups, AI labs, chips, the launches that shape the next decade. Free.
- Paperclip contains two security flaws that allow attackers to execute commands on a network server or a developer's computer, with both attack paths triggered by importing and starting a malicious agent.
- Paperclip is an open-source control plane for managing teams of AI agents, and the disclosure includes a third flaw whose details are truncated in the available source text.
Why it matters: Because the attack primitive is the same workflow any legitimate Paperclip user would run — importing an agent and pressing start — any team using Paperclip to orchestrate AI agents must treat agent imports as a trusted-code boundary, not a benign configuration step.




