Infostealer malware found stealing OpenClaw secrets for first time
ID: 8f94f8a4-30f4-5a58-85ac-67fa9cb36bda
STIX ID: report--8f94f8a4-30f4-5a58-85ac-67fa9cb36bda
Feed Name: Bleeping Computer
Threat Score
Researchers observed an in-the-wild infostealer exfiltrating OpenClaw agent configuration files (openclaw.json, device.json, soul.md and memory files), exposing gateway tokens, private device keys, and persistent agent data—information that could allow attacker impersonation, bypassing of device checks, and full compromise of a user's AI agent identity; the report also highlights a separate max-severity vulnerability in the nanobot project that has been patched (CVE-2026-2577).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
