BTC $79,083.87 -0.76%
ETH $2,485.83 +0.08%
BNB $743.81 -0.15%
XRP $1.40 -0.84%
SOL $104.40 -1.40%
TRX $0.3350 +0.02%
DOGE $0.0903 +1.70%
ADA $0.2204 +1.54%
BCH $259.80 +1.39%
LINK $13.01 +6.45%
HYPE $86.90 -1.88%
AAVE $132.57 -0.76%
SUI $0.8247 +4.00%
XLM $0.1920 +4.20%
ZEC $1,176.56 +1.00%
BTC $79,083.87 -0.76%
ETH $2,485.83 +0.08%
BNB $743.81 -0.15%
XRP $1.40 -0.84%
SOL $104.40 -1.40%
TRX $0.3350 +0.02%
DOGE $0.0903 +1.70%
ADA $0.2204 +1.54%
BCH $259.80 +1.39%
LINK $13.01 +6.45%
HYPE $86.90 -1.88%
AAVE $132.57 -0.76%
SUI $0.8247 +4.00%
XLM $0.1920 +4.20%
ZEC $1,176.56 +1.00%

Slow Fog: ClawHub is gradually becoming a new target for attackers to implement supply chain poisoning

2026-02-09 10:53:52

According to SlowMist's monitoring, the official plugin center ClawHub of the open-source AI Agent project OpenClaw is gradually becoming a new target for attackers to implement supply chain poisoning.

Due to the platform's lack of a comprehensive and strict review mechanism, a large number of malicious skills have already infiltrated, being used to spread malicious code or deliver harmful content, posing potential security risks to developers and users. According to a report by Koi Security, 341 malicious skills were identified in a scan of 2,857 skills, reflecting a typical "plugin/extension market supply chain poisoning" pattern.

SlowMist advises not to treat the "installation steps" in SKILL.md as a trusted source; any command that requires copying and pasting should be audited first; be wary of prompts that "require entering the system password/granting accessibility/system settings," as these are often points of risk escalation; prioritize obtaining dependencies and tools from official channels to avoid executing installation scripts from unknown sources.

app_icon
ChainCatcher Building the Web3 world with innovations.