Svmuu News: Security researcher Lukasz Olejnik posted on X stating that the SSL private key for 360’s AI OpenClaw assistant, “360 Security Lobster,” was exposed in the installation package. The private key corresponds to the domain *.myclaw.360.cn and is valid until April 2027. Attackers could exploit this private key to impersonate 360 servers, intercept user traffic, or create fake login pages. Previously, 360 founder Zhou Hongyi had promised “absolutely no password leaks” when launching the product. It is worth noting that 360 currently has 461 million users, and the company is valued at approximately $10 billion. This report has also been corroborated by some developers in the Chinese-speaking community.