| yes.patrick.works | https://yes.patrick.works |
| yes.patrick.works | https://yes.patrick.works |
Extremely interactive, extremely creative and extremely informative. Great stuff.

A prompt injection in a GitHub issue triggered a chain reaction that ended with 4,000 developers getting OpenClaw installed without consent. The attack composes well-understood vulnerabilities into something new: one AI tool bootstrapping another.