logo

From Automation to Infection: How OpenClaw AI Agent Skills Are Being Weaponized

ID: 19fb4d6d-41c0-59b8-97fc-c31b909795e3

STIX ID: report--19fb4d6d-41c0-59b8-97fc-c31b909795e3

Feed Name: VirusTotal Blog

Threat Score
78/100

Date Published: 2026-02-02

Date Updated: 2026-05-01

Author: Bernardo.Quintero

...
...

VirusTotal analyzed 3,016 OpenClaw skills and found hundreds with malicious characteristics: attackers are using skill packages and SKILL.md workflows to socially engineer users into downloading and executing remote binaries or scripts. A prolific publisher (hightower6eu) pushed hundreds of apparently benign skills that deliver malware—Windows executables and macOS Mach-O binaries (attributed to Atomic Stealer)—demonstrating a large-scale supply-chain abuse of AI agent extensions and providing concrete file hashes and behavioral indicators.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.