BTC $83,043.64 +0.55%
ETH $2,502.73 +0.48%
BNB $747.87 +0.04%
XRP $1.39 -0.72%
SOL $109.64 -0.22%
TRX $0.3301 -0.22%
DOGE $0.0852 -0.97%
ADA $0.2482 -2.12%
BCH $278.12 +0.18%
LINK $12.88 -0.02%
HYPE $84.87 +0.64%
AAVE $167.33 -4.02%
SUI $1.09 -0.26%
XLM $0.1958 -0.47%
ZEC $1,228.02 +0.00%
AAPL $336.50 -0.03%
AMZN $262.72 +0.07%
GOOGL $350.97 -0.46%
MSFT $535.04 -0.04%
META $719.22 -0.13%
NVDA $230.65 +0.07%
TSLA $382.68 -0.10%
SNDK $1,590.66 +0.15%
INTC $104.86 +0.23%
SPCX $163.77 +0.39%
MU $1,033.89 +0.12%
AMD $609.29 +0.03%
BTC $83,043.64 +0.55%
ETH $2,502.73 +0.48%
BNB $747.87 +0.04%
XRP $1.39 -0.72%
SOL $109.64 -0.22%
TRX $0.3301 -0.22%
DOGE $0.0852 -0.97%
ADA $0.2482 -2.12%
BCH $278.12 +0.18%
LINK $12.88 -0.02%
HYPE $84.87 +0.64%
AAVE $167.33 -4.02%
SUI $1.09 -0.26%
XLM $0.1958 -0.47%
ZEC $1,228.02 +0.00%
AAPL $336.50 -0.03%
AMZN $262.72 +0.07%
GOOGL $350.97 -0.46%
MSFT $535.04 -0.04%
META $719.22 -0.13%
NVDA $230.65 +0.07%
TSLA $382.68 -0.10%
SNDK $1,590.66 +0.15%
INTC $104.86 +0.23%
SPCX $163.77 +0.39%
MU $1,033.89 +0.12%
AMD $609.29 +0.03%

Slow Fog: ClawHub is gradually becoming a new target for attackers to implement supply chain poisoning

2026-02-09 10:53:52

According to SlowMist's monitoring, the official plugin center ClawHub of the open-source AI Agent project OpenClaw is gradually becoming a new target for attackers to implement supply chain poisoning.

Due to the platform's lack of a comprehensive and strict review mechanism, a large number of malicious skills have already infiltrated, being used to spread malicious code or deliver harmful content, posing potential security risks to developers and users. According to a report by Koi Security, 341 malicious skills were identified in a scan of 2,857 skills, reflecting a typical "plugin/extension market supply chain poisoning" pattern.

SlowMist advises not to treat the "installation steps" in SKILL.md as a trusted source; any command that requires copying and pasting should be audited first; be wary of prompts that "require entering the system password/granting accessibility/system settings," as these are often points of risk escalation; prioritize obtaining dependencies and tools from official channels to avoid executing installation scripts from unknown sources.

app_icon
ChainCatcher Building the Web3 world with innovations.