BTC $79,137.56 -0.72%
ETH $2,488.63 -0.06%
BNB $739.87 -1.02%
XRP $1.40 -0.68%
SOL $104.14 -1.67%
TRX $0.3340 -0.32%
DOGE $0.0902 +1.38%
ADA $0.2213 +1.55%
BCH $261.98 +2.24%
LINK $12.93 +5.42%
HYPE $85.54 -2.38%
AAVE $132.33 -0.45%
SUI $0.8179 +2.81%
XLM $0.1918 +4.46%
ZEC $1,169.83 -1.48%
BTC $79,137.56 -0.72%
ETH $2,488.63 -0.06%
BNB $739.87 -1.02%
XRP $1.40 -0.68%
SOL $104.14 -1.67%
TRX $0.3340 -0.32%
DOGE $0.0902 +1.38%
ADA $0.2213 +1.55%
BCH $261.98 +2.24%
LINK $12.93 +5.42%
HYPE $85.54 -2.38%
AAVE $132.33 -0.45%
SUI $0.8179 +2.81%
XLM $0.1918 +4.46%
ZEC $1,169.83 -1.48%

Slow Fog CISO: Beware of the malicious npm package "@openclaw-ai/openclawai," which steals cryptocurrency wallet private keys and system credentials

2026-03-10 11:55:45

According to 23pds, the Chief Information Security Officer of Slow Fog Technology, an intelligence system has discovered a malicious npm package named "@openclaw-ai/openclawai" that is implementing a multi-layer attack.

This malicious package disguises itself as a legitimate command-line tool called OpenClaw Installer, aimed at stealing sensitive user information, including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain database, among others.

app_icon
ChainCatcher Building the Web3 world with innovations.