BTC $64,673.72 +0.94%
ETH $1,916.63 +1.14%
BNB $588.67 +3.63%
XRP $1.08 +1.43%
SOL $74.55 +1.72%
TRX $0.3283 +0.62%
DOGE $0.0704 +0.55%
ADA $0.1743 +7.15%
BCH $219.16 +4.36%
LINK $8.48 +2.71%
HYPE $53.77 -2.36%
AAVE $98.40 +0.08%
SUI $0.6965 +1.70%
XLM $0.1719 -0.52%
ZEC $474.29 +2.59%
BTC $64,673.72 +0.94%
ETH $1,916.63 +1.14%
BNB $588.67 +3.63%
XRP $1.08 +1.43%
SOL $74.55 +1.72%
TRX $0.3283 +0.62%
DOGE $0.0704 +0.55%
ADA $0.1743 +7.15%
BCH $219.16 +4.36%
LINK $8.48 +2.71%
HYPE $53.77 -2.36%
AAVE $98.40 +0.08%
SUI $0.6965 +1.70%
XLM $0.1719 -0.52%
ZEC $474.29 +2.59%

Slow Fog CISO: Beware of the malicious npm package "@openclaw-ai/openclawai," which steals cryptocurrency wallet private keys and system credentials

2026-03-10 11:55:45
Collection

According to 23pds, the Chief Information Security Officer of Slow Fog Technology, an intelligence system has discovered a malicious npm package named "@openclaw-ai/openclawai" that is implementing a multi-layer attack.

This malicious package disguises itself as a legitimate command-line tool called OpenClaw Installer, aimed at stealing sensitive user information, including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain database, among others.

app_icon
ChainCatcher Building the Web3 world with innovations.