Related News

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

November 20, 2025
You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

October 23, 2025
New DGK Video + Collin Slew Interviewed by the DGK Team

New DGK Video + Collin Slew Interviewed by the DGK Team

May 15, 2025

Browse by Category

  • Canadian news feed
  • Crypto
  • Faith
  • Geothermal
  • Golf news
  • Hockey news
  • Running & fitness
  • Skateboarding
  • Sports & Fitness
  • WeMaple news

Related News

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

November 20, 2025
You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

October 23, 2025
New DGK Video + Collin Slew Interviewed by the DGK Team

New DGK Video + Collin Slew Interviewed by the DGK Team

May 15, 2025

Browse by Category

  • Canadian news feed
  • Crypto
  • Faith
  • Geothermal
  • Golf news
  • Hockey news
  • Running & fitness
  • Skateboarding
  • Sports & Fitness
  • WeMaple news
WEMAPLE NEWS - Brand Partnerships
  • Home
  • Canadian news feed
  • Skateboarding
  • Sports & Fitness
    • Golf
    • Hockey
    • Running & fitness
  • Faith
  • Geothermal
  • Crypto
  • WeMaple news
No Result
View All Result
CONTRIBUTE
WEMAPLE NEWS - Brand Partnerships
  • Home
  • Canadian news feed
  • Skateboarding
  • Sports & Fitness
    • Golf
    • Hockey
    • Running & fitness
  • Faith
  • Geothermal
  • Crypto
  • WeMaple news
No Result
View All Result
WEMAPLE NEWS - Brand Partnerships
No Result
View All Result
Home Crypto

OpenClaw ClawHub Under Attack: 341 Malicious Plugins Expose Supply Chain Risks

WeMaple AI by WeMaple AI
February 9, 2026
in Crypto
0
OpenClaw ClawHub Under Attack: 341 Malicious Plugins Expose Supply Chain Risks
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Makina Finance hack

The post OpenClaw ClawHub Under Attack: 341 Malicious Plugins Expose Supply Chain Risks appeared first on Coinpedia Fintech News

OpenClaw’s fast-growing plugin store, ClawHub, is under security spotlight after blockchain security firm SlowMist uncovered a large batch of malicious skills on the platform. 

The finding points to weak review checks that allowed hidden, harmful code to spread through developer tools.

OpenClaw ClawHub Plugin Faces Supply Chain Attack Risk

SlowMist revealed that OpenClaw’s official plugin hub, known as ClawHub, has become a new target for supply chain-style attacks. The platform recently gained rapid popularity among AI agent developers, but its plugin screening process did not keep pace with growth.

Because plugin reviews were not strict enough, attackers were able to publish many dangerous skills that looked useful on the surface but carried hidden risks.

SlowMist teams say this type of attack is especially risky because developers often trust official plugin centers and follow installation steps without deep inspection.

🚨 Threat Intelligence | Analysis of ClawHub Malicious Skills Poisoning

As the #OpenClaw AI agent ecosystem rapidly grows, SlowMist has observed ClawHub becoming a new target for large-scale supply chain attacks. Due to insufficient review mechanisms, hundreds of malicious… pic.twitter.com/xfzo4AhTdb

— SlowMist (@SlowMist_Team) February 9, 2026

341 Malicious Plugins Expose

During a broad scan of the ClawHub ecosystem, security researchers found a high number of unsafe plugins. A separate scan by Koi Security reviewed 2,857 skills and flagged 341 as malicious.

You might also like

Bitcoin looks ready to break $70k — but one group decision keeps capping the rally

Bitcoin Below $54K Would Signal Best Accumulation Zone, Analyst Says

Citadel-Backed EDX Markets Applies for US Trust Bank Charter to Expand Crypto Services

SlowMist’s deeper tracking reviewed more than 400 threat indicators and found clear patterns, many of the bad plugins connected back to the same small group of domains and server addresses. 

OpenClaw ClawHub plugin

However, Slowmist says that this suggests an organized and repeated attack effort, not random uploads.

How the Attack Actually Works?

According to the researchers, the main weakness comes from how OpenClaw skills are built. Many rely on instruction files that users run directly during setup. Attackers abused this by placing hidden download-and-run commands inside those instructions.

In many cases, the first attackers used coded messages to hide their real commands. When the code is decoded and run, it secretly downloads another program from an outside server. Secondly, that program then carries out the actual attack.

This two-step method helps attackers avoid early detection and lets them change the harmful program anytime without updating the visible plugin page.

Malicious Domain Analysis

SlowMist said its review of hundreds of threat indicators showed many of these plugins connected to the same small set of domains and IP addresses, 91.92.242.30. This suggests a planned, group-driven campaign rather than random one-off attacks.

Security teams are now warning OpenClaw users to double-check skill instructions and avoid running unknown command steps until stronger review controls are in place.

Read Entire Article
Tags: CoinPediaCrypto
Share30Tweet19
WeMaple AI

WeMaple AI

Recommended For You

Bitcoin looks ready to break $70k — but one group decision keeps capping the rally

by WeMaple AI
April 1, 2026
0

Bitcoin is pushing back toward $70,000 as macro pressure eases, but each attempt is still being sold into The market is improving on the outside while failing to...

Read more

Bitcoin Below $54K Would Signal Best Accumulation Zone, Analyst Says

by WeMaple AI
April 1, 2026
0
Bitcoin Below $54K Would Signal Best Accumulation Zone, Analyst Says

A drop to $54,000 could mark one of the strongest buying opportunities in Bitcoin’s current cycle, according to on-chain data analysts — but the price still sits roughly...

Read more

Citadel-Backed EDX Markets Applies for US Trust Bank Charter to Expand Crypto Services

by WeMaple AI
April 1, 2026
0
Citadel-Backed EDX Markets Applies for US Trust Bank Charter to Expand Crypto Services

Bitcoin Magazine Citadel-Backed EDX Markets Applies for US Trust Bank Charter to Expand Crypto Services EDX Markets, an exchange backed by Citadel Securities, applied for a national trust...

Read more

Genius Group (GNS) Dumps All Bitcoin Holdings to Clear Debt, Plans Treasury Rebuild

by WeMaple AI
April 1, 2026
0
Genius Group (GNS) Dumps All Bitcoin Holdings to Clear Debt, Plans Treasury Rebuild

Bitcoin Magazine Genius Group (GNS) Dumps All Bitcoin Holdings to Clear Debt, Plans Treasury Rebuild Genius Group sold its entire Bitcoin reserves to repay $85 million in debt...

Read more

Bitcoin Stuck Between $60K and $70K—Why BTC Price Isn’t Ready to Break Out

by WeMaple AI
April 1, 2026
0
Bitcoin Stuck Between $60K and $70K—Why BTC Price Isn’t Ready to Break Out

The post Bitcoin Stuck Between $60K and $70K—Why BTC Price Isn’t Ready to Break Out appeared first on Coinpedia Fintech News The Bitcoin price continues to trade within...

Read more
Next Post
Binance SAFU Fund Adds $300M in Bitcoin

Binance SAFU Fund Adds $300M in Bitcoin

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

Analyst Claims XRP Price Will Surge To $220 Due To ETFs, But Is This Possible?

November 20, 2025
You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

You’ve Been Misled! The 4-Year Bitcoin Cycle Doesn’t Actually Exist—Expert

October 23, 2025
New DGK Video + Collin Slew Interviewed by the DGK Team

New DGK Video + Collin Slew Interviewed by the DGK Team

May 15, 2025

Browse by Category

  • Canadian news feed
  • Crypto
  • Faith
  • Geothermal
  • Golf news
  • Hockey news
  • Running & fitness
  • Skateboarding
  • Sports & Fitness
  • WeMaple news
WEMAPLE NEWS – Brand Partnerships

Wemaple will be firmly committed to the public interest and democratic values.

CATEGORIES

  • Canadian news feed
  • Crypto
  • Faith
  • Geothermal
  • Golf news
  • Hockey news
  • Running & fitness
  • Skateboarding
  • Sports & Fitness
  • WeMaple news

BROWSE BY TAG

AZO Clean Tech Bitcoinist Bitcoinmagazine Canada News CBC.ca Celebrity News Christian Post CoinPedia Corporate Knights Crypto Cryptoslate Faith Geothermal Golf Hockey Lifehacker Ludwig-van.com NcrOnline newsbtc Skateboarding tomsguide.com Utah news dispatch

© 2025 wemaple.canadiana.news - all rights reserved. YYC TECH CONSULTING.

No Result
View All Result
  • Home
  • Canadian news feed
  • Skateboarding
  • Sports & Fitness
    • Golf
    • Hockey
    • Running & fitness
  • Faith
  • Geothermal
  • Crypto
  • WeMaple news

© 2025 wemaple.canadiana.news - all rights reserved. YYC TECH CONSULTING.