Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials
ID: 3278751c-36cc-5474-9fb4-561288b50d51
STIX ID: report--3278751c-36cc-5474-9fb4-561288b50d51
Feed Name: The Hacker News
Security researchers (JFrog) discovered a malicious npm package, @openclaw-ai/openclawai, uploaded to the npm registry that masquerades as an OpenClaw installer and uses a postinstall hook and a fake CLI/Keychain prompt to deploy a multi-stage JavaScript RAT/infostealer (internally named GhostLoader) on macOS. The malware harvests macOS Keychain data, browser credentials and cookies, crypto wallets and seed phrases, SSH keys, cloud/developer credentials, and FDA-protected data (iMessage, Notes, Mail), provides persistent remote access (daemon, SOCKS5, C2 commands, live browser profile cloning), monitors clipboard for private keys, and exfiltrates data to multiple endpoints (C2 server trackpipe.dev, Telegram Bot API, GoFile.io); the malicious package remains available and had been downloaded 178 times at discovery.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
