SlowMist: Beware of the malicious npm package named "@openclaw-ai/openclawai"
PANews, March 10 — SlowMist has issued a warning about a malicious npm package named “@openclaw-ai/openclawai.” This package disguises itself as a legitimate command-line tool called OpenClaw Installer, deploying a multi-layered attack chain to steal system credentials, crypto wallet private keys, browser data, SSH keys, Apple Keychain databases, and other information.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Saudi Aramco's operating profit for fiscal year 2025 falls short of expectations
A trader bought 1,004 ETH at a stage low of $2,070 two hours ago.
Aerodrome has repurchased and locked a total of 4 million AERO in the past month, worth approximately $1.28 million.
