AI coding assistant Cline compromised to create more OpenClaw chaos
ID: 485d5cff-63c0-5c86-bf78-ae96a9a39f63
STIX ID: report--485d5cff-63c0-5c86-bf78-ae96a9a39f63
Feed Name: The Register (Security)
On February 17 an unauthorized party used a compromised publishing token to push [email protected] to the npm registry; that release silently installed the OpenClaw AI agent on machines of users who installed the package during an ~8-hour window. Approximately 4,000 downloads occurred before the package was deprecated; maintainers revoked the token, implemented OIDC provenance for publishing, and advised updating to [email protected] or later. The root chain included a prompt-injection vulnerability that had been previously disclosed and reportedly enabled the compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
