TechFlow reports that on March 10, 23pds, Chief Information Security Officer at SlowMist Technology, disclosed that the intelligence system detected a malicious npm package named “@openclaw-ai/openclawai” conducting a multi-layered attack. This malicious package masquerades as a legitimate command-line tool called OpenClaw Installer, aiming to steal users’ sensitive information—including system credentials, cryptocurrency wallet private keys, browser data, SSH keys, and Apple Keychain databases.
Navigating Web3 tides with focused insights
Contribute An Article
Media Requests
Risk Disclosure: This website's content is not investment advice and offers no trading guidance or related services. Per regulations from the PBOC and other authorities, users must be aware of virtual currency risks. Contact us / support@techflowpost.com ICP License: 琼ICP备2022009338号




