From SKILL.md to Shell Access in Three Lines

Demonstrates how 3 lines of markdown in SKILL.md can escalate to full shell access. Skills operate with same privileges as OpenClaw process, creating unbounded attack surface. Explains how AI agent Skills enter as supply chain threats with same risks as npm packages but amplified by unprecedented access to credentials, files, and external communications.

#Skills #Supply Chain #Privilege Escalation #Threat Model

Related Resources