The post ClawHub hosts supply chain attacks through AI agent skills appeared on BitcoinEthereumNews.com. ClawHub may be hosting supply chain attacks through newThe post ClawHub hosts supply chain attacks through AI agent skills appeared on BitcoinEthereumNews.com. ClawHub may be hosting supply chain attacks through new

ClawHub hosts supply chain attacks through AI agent skills

2026/02/09 17:19
Okuma süresi: 3 dk

ClawHub may be hosting supply chain attacks through new AI agent skills. Some of the skills contain malware to steal credentials and potentially affect accounts and crypto wallets. 

ClawHub, the marketplace for OpenClaw AI agent skills, is hosting multiple malicious skills. The supply chain attack may be stealing credentials, potentially affecting crypto wallets. 

Security researchers from SlowMist reviewed over 400 potential compromised skills, revealing organized attacks targeting specific domains. Skills like X Trends hide a backdoor download, which can then send credentials to the threat actor. 

The SlowMist research builds on a previous discovery by KOI Security, discovering 341 malicious skills among a total of 2,857 bot skills in the marketplace. Later analysis by SlowMist discovered up to 472 malicious skills, though the number can still vary.

ClawHub conceals stealers in hundreds of skills

Earlier, Koi Research conducted AI-assisted research using an OpenClaw bot named Alex. The bot found 335 skills that were used to push the Atomic Stealer on macOS. 

You install what looks like a legitimate skill – maybe solana-wallet-tracker or youtube-summarize-pro,” Koi researcher Oren Yomtov said. 

“The skill’s documentation looks professional. But there’s a ‘Prerequisites’ section that says you need to install something first.”

A Windows exploit is also active, calling users to download additional files from a GitHub repository. The supply chain attack also includes a keylogger, which can steal multiple credentials, including potentially uncovering crypto wallets. 

As Cryptopolitan reported earlier, OpenClaw agents are still in their early stages and are displaying unexpected behavior. Adoption is growing daily, posing new risks in cybersecurity and agent behaviors.

SlowMist continues tracking ClawHub skills for new threats

The recent supply chain attack may not be a one-off event. ClawHub is a relatively new space, attracting a large number of developers. SlowMist will be tracking the space as a source of supply chain attacks. The platform still lacks formal review mechanisms, allowing widely used skills to be infiltrated. 

There are still no clear reports of crypto theft through ClawHub. Previously, the public skills repo has contained malicious prompts linked to attempted crypto stealing. In the future, SlowMist will issue real-time alerts via its MistEye service to detect new malicious skills on ClawHub.

SlowMist has also identified an IP address that is reused in the malicious attacks. According to theat records, the IP 91.92.242.30 is historically linked to the Poseidon hacker group, known for extortion and data theft.

For end users, researchers advise against trusting the installation steps in new skills and to audit any commands that require copying and pasting. A common-sense preview of prompts is also a good check, looking for prompts asking for system passwords or other secure access. Users may wait for official channels and avoid installations from unknown sources.

Source: https://www.cryptopolitan.com/clawhub-supply-chain-attacks-ai-agent-skills/

Piyasa Fırsatı
OpenClaw Logosu
OpenClaw Fiyatı(OPENCLAW)
$0,0003018
$0,0003018$0,0003018
+2,40%
USD
OpenClaw (OPENCLAW) Canlı Fiyat Grafiği
Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen service@support.mexc.com ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

ETH Exit Queue Gridlocks As Validators Pile Up

ETH Exit Queue Gridlocks As Validators Pile Up

The post ETH Exit Queue Gridlocks As Validators Pile Up appeared on BitcoinEthereumNews.com. Welcome to The Protocol, CoinDesk’s weekly wrap of the most important stories in cryptocurrency tech development. I’m Margaux Nijkerk, a reporter at CoinDesk. In this issue: Ethereum Faces Validator Bottleneck With 2.5M ETH Awaiting Exit Is Ethereum’s DeFi Future on L2s? Liquidity, Innovation Say Perhaps Yes Ethereum Foundation Starts New AI Team to Support Agentic Payments American Express Introduces Blockchain-Based ‘Travel Stamps’ Network News ETHEREUM VALIDATOR EXIT QUEUE FACES BOTTLENECK: Ethereum’s proof-of-stake system is facing its largest test yet. As of mid-September, roughly 2.5 million ETH — valued at roughly $11.25 billion — is waiting to leave the validator set, according to validator queue dashboards. The backlog pushed exit wait times to more than 46 days on Sept. 14, the longest in Ethereum’s short staking history, dashboards show. The last peak, in August, put the exit queue at 18 days. The initial spark came on Sept. 9, when Kiln, a large infrastructure provider, chose to exit all of its validators as a safety precaution. The move, triggered by recent security incidents including the NPM supply-chain attack and the SwissBorg breach, pushed around 1.6 million ETH into the queue at once. Though unrelated to Ethereum’s staking protocol itself, the hacks rattled confidence enough for Kiln to hit pause, highlighting how events in the broader crypto ecosystem can cascade into Ethereum’s validator dynamics. In a blog post from staking provider Figment, Senior Analyst Benjamin Thalman noted that the current exit queue build up isn’t only about security. After ETH has rallied more than 160% since April, some stakers are simply taking profits. Others, especially institutional players, are shifting their portfolios’ exposure. At the same time, the number of validators entering the Ethereum staking ecosystem has been steadily rising. Ethereum’s churn limit, which is a protocol safeguard that caps how many validators can…
Paylaş
BitcoinEthereumNews2025/09/18 15:15
TheWell Bioscience Launches VitroPrime™ 3D Culture and Imaging Plate for Organoid and 3D Cell Culture Workflows

TheWell Bioscience Launches VitroPrime™ 3D Culture and Imaging Plate for Organoid and 3D Cell Culture Workflows

A new in-plate, zero-disruption design enables reproducible organoid culture, downstream processing, and high-resolution imaging in a single 3D cell culture plate
Paylaş
AI Journal2026/02/09 22:02
Tom Lee Linked BitMine Scoops Up $82 Million in Ethereum as Institutional Appetite Heats Up

Tom Lee Linked BitMine Scoops Up $82 Million in Ethereum as Institutional Appetite Heats Up

Tom Lee–Backed BitMine Makes $82 Million Ethereum Purchase, Signaling Growing Institutional Confidence BitMine, a crypto-focused firm associated with veteran ma
Paylaş
Hokanews2026/02/09 22:08