17% of 3rd-Party Add-Ons for OpenClaw Used in Crypto Theft and macOS Malware
ID: f9b6bced-d72e-5291-b16e-163ba443427d
STIX ID: report--f9b6bced-d72e-5291-b16e-163ba443427d
Feed Name: HackRead
Threat Score
Bitdefender Labs found that roughly 17% of OpenClaw AI "skills" examined in February 2026 were malicious; attackers masqueraded as useful tools to trick users into installing code that fetches additional payloads (contacting 91.92.242.30), steals crypto keys (searching for ".mykey" files), and delivers macOS AMOS Stealer, with one user linked to 199 malicious skills and infections observed in both consumers and enterprises.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
