BTC $62,838.26 -1.12%
ETH $1,875.50 -0.34%
BNB $605.57 -0.76%
XRP $1.00 -0.41%
SOL $75.48 -0.26%
TRX $0.3332 -0.08%
DOGE $0.0694 -0.68%
ADA $0.1809 -2.04%
BCH $205.07 -3.83%
LINK $8.80 +0.91%
HYPE $56.53 -1.71%
AAVE $86.88 -1.97%
SUI $0.6760 -1.67%
XLM $0.1588 -1.20%
ZEC $488.22 -0.88%
BTC $62,838.26 -1.12%
ETH $1,875.50 -0.34%
BNB $605.57 -0.76%
XRP $1.00 -0.41%
SOL $75.48 -0.26%
TRX $0.3332 -0.08%
DOGE $0.0694 -0.68%
ADA $0.1809 -2.04%
BCH $205.07 -3.83%
LINK $8.80 +0.91%
HYPE $56.53 -1.71%
AAVE $86.88 -1.97%
SUI $0.6760 -1.67%
XLM $0.1588 -1.20%
ZEC $488.22 -0.88%

Slow Fog CISO: Beware of the malicious npm package "@openclaw-ai/openclawai," which steals cryptocurrency wallet private keys and system credentials

2026-03-10 11:55:45

According to 23pds, the Chief Information Security Officer of Slow Fog Technology, an intelligence system has discovered a malicious npm package named "@openclaw-ai/openclawai" that is implementing a multi-layer attack.

This malicious package disguises itself as a legitimate command-line tool called OpenClaw Installer, aimed at stealing sensitive user information, including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain database, among others.

app_icon
ChainCatcher Building the Web3 world with innovations.