ClawHub becomes the new target for malicious poisoning, supply chain risks in the plugin market


According to reports from HashKey Chain, SlowMist monitoring has discovered that the official ClawHub plugin center OpenClaw is being exploited by attackers, becoming a new supply chain poisoning channel.
The report shows that out of 2,857 detected plugins, 341 are malicious, indicating obvious poisoning characteristics in the plugin market.
SlowMist warns: Do not trust installation commands in plugin documentation. Any operation that requires copying and executing commands, entering system passwords, or obtaining high privileges should be approached with caution.
Malicious plugins may be used to steal private keys, mnemonic phrases, or wallet authorization information. Plugin security equals asset security.
#OpenClaw #ClawHub #供应链攻击 #Malicious Plugins #慢雾安全 #Encryption Security
View Original
post-image
post-image
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)