logo

Infostealer malware found stealing OpenClaw secrets for first time

ID: 8f94f8a4-30f4-5a58-85ac-67fa9cb36bda

STIX ID: report--8f94f8a4-30f4-5a58-85ac-67fa9cb36bda

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2026-02-16

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Researchers observed an in-the-wild infostealer exfiltrating OpenClaw agent configuration files (openclaw.json, device.json, soul.md and memory files), exposing gateway tokens, private device keys, and persistent agent data—information that could allow attacker impersonation, bypassing of device checks, and full compromise of a user's AI agent identity; the report also highlights a separate max-severity vulnerability in the nanobot project that has been patched (CVE-2026-2577).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.