header-langage
简体中文
繁體中文
English
Tiếng Việt
한국어
日本語
ภาษาไทย
Türkçe
Scan to Download the APP

SlowMist CISO: Beware of Malicious OpenClaw Installation Package Stealing Cryptocurrency Wallet Private Keys and System Credentials

BlockBeats News, March 10th, according to SlowMist Chief Security Officer 23pds, the intelligence system discovered a malicious npm package named "@openclaw-ai/openclawai" carrying out a multi-layered attack. This malicious package masquerades as a legitimate command-line tool called OpenClaw Installer, aiming to steal users' sensitive information, including system credentials, encrypted wallet private keys, browser data, SSH keys, and Apple Keychain data, etc.

举报 Correction/Report
Correction/Report
Submit
Add Library
Visible to myself only
Public
Save
Choose Library
Add Library
Cancel
Finish