Trending:
230 malicious OpenClaw extensions stolen crypto data since January 27
Cybersecurity

230 malicious OpenClaw extensions stolen crypto data since January 27

Security researchers documented 230 malicious OpenClaw "skills" disguised as crypto trading tools uploaded to ClawHub since late January. The extensions exploit OpenClaw's unsandboxed architecture to steal browser data and cryptocurrency information. Enterprise deployments are exposed: hundreds of instances run online without authentication.

Feb 2, 2026