1 link tagged with all of: openclaw + infostealers + clawhub + evasion
Click any tag below to further narrow down your results
Links
Researchers found five malicious skills on ClawHub—OpenClaw’s AI skill marketplace—delivering macOS infostealers, evading scanners with file padding, and using novel agentic affiliate and front-running schemes. Despite VirusTotal and ClawScan integration, these skills slipped through until researchers reported and had them removed. ClawHub now works with NVIDIA and Palo Alto Networks to strengthen screening and analysis.
- Even after ClawHub added VirusTotal and ClawScan screening, five malicious skills still slipped through as of the April–May review, including macOS infostealers, a scanner-evading padded package, and two that manipulated the agent itself for financial gain (affiliate link injection and trade front-running).
- The "cluw" infostealer delivered via fake TradingView assistants passed ClawHub's automated audit (marked "Pass" or left unrated), showing the scanning pipeline's blind spots.
- Independent researchers found much broader contamination: Bitdefender flagged 17% of early skills as malicious, Koi Security identified 341 bad packages, and Trend Micro linked campaigns to the established Atomic macOS Stealer (AMOS).
- ClawHub only removed the five skills and banned accounts after external researcher notification, then brought in NVIDIA for code-behavior analysis on new submissions going forward.