Weak plugin checks allowed coordinated attacks on ClawHub, forcing OpenClaw to add stricter security scans. OpenClaw, an open-source AI agent project, has seen Weak plugin checks allowed coordinated attacks on ClawHub, forcing OpenClaw to add stricter security scans. OpenClaw, an open-source AI agent project, has seen

Security Firms Expose Hidden Backdoors in OpenClaw Plugins Targeting Users

2026/02/10 00:45
4 min read

Weak plugin checks allowed coordinated attacks on ClawHub, forcing OpenClaw to add stricter security scans.

OpenClaw, an open-source AI agent project, has seen rapid growth in recent weeks. Its official plugin marketplace, ClawHub, has followed the same path, drawing in many developers. However, the rising adoption has also drawn unwanted attention. Security firms now warn that ClawHub is being abused to spread malicious plugins.

Weak Plugin Reviews Leave OpenClaw’s ClawHub Exposed

Monitoring by SlowMist shows that ClawHub is becoming a new target for supply-chain attacks because the platform does not sufficiently verify uploads. Weak review controls have allowed unsafe plugins, referred to as “skills,” to enter the platform.

Several even carry hidden backdoors or deliver harmful content that puts both developers and users at risk. Following initial findings, SlowMist issued alerts to clients via its MistEye system and began tracking suspicious uploads.

A follow-up scan of ClawHub revealed the scale of the issue. According to a report from Koi Security, researchers found 341 malicious skills among 2,857 scanned. Most were designed to match known plugin-market poisoning campaigns seen in other ecosystems.

Many unsafe skills appeared legitimate at first glance, using trusted names and familiar descriptions.

Batch Attack Linked to Hundreds of Malicious Skills on ClawHub

SlowMist conducted a deeper review of the case and identified more than 400 indicators of malicious activity. Many of them pointed to the same few websites and servers. That repetition suggests the attacks were organized and planned.

Analysts described the campaign as batch-based, with attackers pushing many similar skills at once, all relying on shared infrastructure

Interestingly, the way these skills were spread also followed a pattern. Attackers used public file-hosting sites to store harmful code. The plugins first ran simple and slightly hidden instructions to avoid being flagged.

After that, they downloaded more dangerous code from external servers. This setup made it easy for attackers to update the malicious components without modifying the plugin itself.

Attackers also used misleading names to trick users. Many malicious skills were presented as crypto tools, finance helpers, or system utilities. Labels like “security check,” “automation helper,” or “update tool” made them seem safe and useful. 

SlowMist advised users to be careful before installing any ClawHub skill. Users should read the SKILL.md file closely before copying or running commands. Any plugin asking for system passwords, special permissions, or system changes should be treated with suspicion.

The security firm added that limiting permissions and manually reviewing code can help reduce risk. Security firms warn that stronger review processes and greater user awareness are now needed.

OpenClaw Moves to Tighten Plugin Security With VirusTotal Integration

OpenClaw recently announced a new partnership with VirusTotal to improve security across ClawHub. From now on, every skill published on ClawHub will go through automated security scanning powered by VirusTotal. This new layer of protection for developers and users will reduce risk as the platform grows.

Unlike traditional software, AI agents interpret language and take actions based on context. That makes them more flexible but also easier to misuse. OpenClaw said poorly secured agents can become a liability, especially when third-party skills gain access to tools and data.

Skills on ClawHub can manage finances, control devices, or automate tasks. Malicious skills could misuse that access to steal data, execute unwanted commands, or download harmful code. To address this risk, OpenClaw now scans skill packages before and after publication.

Under the new system, all active skills are rescanned daily. OpenClaw emphasised that this is a single security layer, with additional protections planned as the ecosystem expands.

The post Security Firms Expose Hidden Backdoors in OpenClaw Plugins Targeting Users appeared first on Live Bitcoin News.

Market Opportunity
OpenClaw Logo
OpenClaw Price(OPENCLAW)
$0.0002608
$0.0002608$0.0002608
-13.95%
USD
OpenClaw (OPENCLAW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Here’s What $100 in Dogecoin (DOGE) Will Be Worth by the End of 2025 Compared to Solana (SOL) and Little Pepe (LILPEPE)

Here’s What $100 in Dogecoin (DOGE) Will Be Worth by the End of 2025 Compared to Solana (SOL) and Little Pepe (LILPEPE)

The post Here’s What $100 in Dogecoin (DOGE) Will Be Worth by the End of 2025 Compared to Solana (SOL) and Little Pepe (LILPEPE) appeared on BitcoinEthereumNews.com. SPONSORED POST* If you invested $100 today, projections suggest that by the end of 2025, Dogecoin (DOGE) could grow to $700, Solana (SOL) to $500, but Little Pepe (LILPEPE) is showing an entirely different trajectory, potentially reaching $10,000. Little Pepe (LILPEPE) recently sold out its 12th stage of presale and entered stage 13, now priced at $0.0022.  Investors at this stage are already looking at a guaranteed 30% ROI at launch, but projections based on current momentum and buyer activity suggest potential returns well beyond that, possibly 10x or more if demand continues. The project has raised over $26 million and sold 16 billion tokens faster than expected, highlighting both the speed of adoption and the potential for outsized gains compared to other major coins. Comparing $100 Investments: Dogecoin, Solana, and Little Pepe’s Potential Returns Dogecoin (DOGE) is trading at approximately $0.2845, reflecting a 7.3% increase from the previous close. Despite recent gains, DOGE remains down over 60% from its 2021 high of $0.73. Analysts predict that as DOGE rises by the end of 2025, a $100 investment could grow to $700. Solana (SOL) is currently priced at $250.72, up 7.3% from the previous close. With a total value locked (TVL) of $12 billion and speculation around ETF approval and a potential Nasdaq listing, SOL is projected to turn the same $100 investment into $500 by year-end. In contrast, Little Pepe (LILPEPE), still in its presale phase, has raised over $25.47 million and sold over 15.75 billion tokens, surpassing expectations. Priced at $0.0022 in Stage 13, LILPEPE offers a guaranteed 30% ROI from its listing price of $0.003. Given its rapid growth and strong community engagement, analysts predict a potential 100x return by 2027, making a $100 investment worth $10,000. While DOGE and SOL offer established investment opportunities with moderate…
Share
BitcoinEthereumNews2025/09/26 18:21
RFK Jr. reveals puzzling reason why he loves working for Trump

RFK Jr. reveals puzzling reason why he loves working for Trump

Health Secretary Robert F. Kennedy Jr. gave a puzzling answer to a softball question on Monday during a public event at The Heritage Foundation, according to a
Share
Rawstory2026/02/10 07:00
KalshiEco Powers the Future of Prediction Markets with Solana and Base

KalshiEco Powers the Future of Prediction Markets with Solana and Base

TLDR KalshiEco launches with Solana & Base to power next-gen prediction markets. KalshiEco debuts with grants, Solana & Base boost prediction market growth. Solana & Base team with Kalshi for KalshiEco, fueling prediction innovation. KalshiEco: Grants & partnerships drive prediction markets on Solana & Base. KalshiEco with Solana & Base accelerates onchain prediction market activity. [...] The post KalshiEco Powers the Future of Prediction Markets with Solana and Base appeared first on CoinCentral.
Share
Coincentral2025/09/18 05:24