logo

AI coding assistant Cline compromised to create more OpenClaw chaos

ID: 485d5cff-63c0-5c86-bf78-ae96a9a39f63

STIX ID: report--485d5cff-63c0-5c86-bf78-ae96a9a39f63

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2026-02-20

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

On February 17 an unauthorized party used a compromised publishing token to push [email protected] to the npm registry; that release silently installed the OpenClaw AI agent on machines of users who installed the package during an ~8-hour window. Approximately 4,000 downloads occurred before the package was deprecated; maintainers revoked the token, implemented OIDC provenance for publishing, and advised updating to [email protected] or later. The root chain included a prompt-injection vulnerability that had been previously disclosed and reportedly enabled the compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.