BTC $64,578.06 +0.51%
ETH $1,913.14 +0.80%
BNB $586.16 +3.16%
XRP $1.08 +0.88%
SOL $74.33 +1.22%
TRX $0.3278 +0.46%
DOGE $0.0701 -0.23%
ADA $0.1679 +2.69%
BCH $218.67 +4.07%
LINK $8.44 +1.85%
HYPE $53.54 -2.87%
AAVE $98.71 +0.14%
SUI $0.6938 +1.15%
XLM $0.1724 -0.10%
ZEC $473.30 +1.95%
BTC $64,578.06 +0.51%
ETH $1,913.14 +0.80%
BNB $586.16 +3.16%
XRP $1.08 +0.88%
SOL $74.33 +1.22%
TRX $0.3278 +0.46%
DOGE $0.0701 -0.23%
ADA $0.1679 +2.69%
BCH $218.67 +4.07%
LINK $8.44 +1.85%
HYPE $53.54 -2.87%
AAVE $98.71 +0.14%
SUI $0.6938 +1.15%
XLM $0.1724 -0.10%
ZEC $473.30 +1.95%

Slow Fog CISO: Beware of the malicious npm package "@openclaw-ai/openclawai," which steals cryptocurrency wallet private keys and system credentials

2026-03-10 11:55:45
Collection

According to 23pds, the Chief Information Security Officer of Slow Fog Technology, an intelligence system has discovered a malicious npm package named "@openclaw-ai/openclawai" that is implementing a multi-layer attack.

This malicious package disguises itself as a legitimate command-line tool called OpenClaw Installer, aimed at stealing sensitive user information, including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain database, among others.

app_icon
ChainCatcher Building the Web3 world with innovations.