BTC $63,002.92 +0.05%
ETH $1,877.78 -0.06%
BNB $604.13 -1.09%
XRP $0.9989 -0.55%
SOL $75.23 -0.05%
TRX $0.3310 -0.40%
DOGE $0.0695 -0.66%
ADA $0.1765 -1.78%
BCH $202.80 -1.35%
LINK $9.35 -1.00%
HYPE $56.79 +1.04%
AAVE $85.73 -1.27%
SUI $0.6729 -1.76%
XLM $0.1566 -1.51%
ZEC $485.09 -1.26%
BTC $63,002.92 +0.05%
ETH $1,877.78 -0.06%
BNB $604.13 -1.09%
XRP $0.9989 -0.55%
SOL $75.23 -0.05%
TRX $0.3310 -0.40%
DOGE $0.0695 -0.66%
ADA $0.1765 -1.78%
BCH $202.80 -1.35%
LINK $9.35 -1.00%
HYPE $56.79 +1.04%
AAVE $85.73 -1.27%
SUI $0.6729 -1.76%
XLM $0.1566 -1.51%
ZEC $485.09 -1.26%

Slow Fog CISO: Beware of the malicious npm package "@openclaw-ai/openclawai," which steals cryptocurrency wallet private keys and system credentials

2026-03-10 11:55:45

According to 23pds, the Chief Information Security Officer of Slow Fog Technology, an intelligence system has discovered a malicious npm package named "@openclaw-ai/openclawai" that is implementing a multi-layer attack.

This malicious package disguises itself as a legitimate command-line tool called OpenClaw Installer, aimed at stealing sensitive user information, including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain database, among others.

app_icon
ChainCatcher Building the Web3 world with innovations.