BlockBeats News, February 20 — Co-founder of SlowMist, Yu Xian, reposted a security alert. Currently, OpenClaw’s ClawHub marketplace has identified 1,184 malicious skills that can steal SSH keys, crypto wallets, browser passwords, and open reverse shells. A single attacker has uploaded 677 packages. The top-ranked skill contains 9 vulnerabilities and has been downloaded thousands of times.
Yu Xian warned users that text is no longer just text, but instructions. It is recommended to use AI tools in a separate environment, as many OpenClaw skills pose potential risks. Additionally, in Web3 security, smart contracts are only part of the picture; the true causes of incidents have long gone beyond just the contracts. A few days ago, Moonwell was hacked for $1.78 million, with the flawed code originating from Co-Authored-By: Claude Opus 4.6.
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Related Articles
7 Associated Accounts Precisely Bet on US-Israel Military Actions, Earning Approximately $1 Million in Profits Over Two Years
Investigation found that 7 associated accounts on a certain prediction market platform made precise bets against U.S. airstrikes over the past two years, accumulating profits of approximately $1 million, allegedly involving insider trading.
GateNews24m ago
Cryptocurrency fraudsters gain ground as panic over the war fills social media
Fraud networks leverage the trust generated by war-related content to promote crypto scams. Through synchronized operations and deception, they exploit international events to mislead users into participating in fraudulent activities, resulting in significant profits for the scammers.
CryptoBreaking39m ago
Resolv Foundation: Temporarily suspends the Season 4 airdrop claim, as well as RESOLV token staking and unstaking functions
Golden Finance reported that the Resolv Foundation announced on the X platform that due to a recent security incident involving Resolv Labs' stablecoin USR, with both the protocol and applications now suspended, the Season 4 airdrop claiming function is temporarily unavailable. Additionally, the staking and unstaking functions for RESOLV tokens are also temporarily unavailable. Once the protocol recovery plan is finalized and the application can be safely used again, these functions will be restored.
金色财经_43m ago
Ledger Founder Kidnapping Suspect Arrested in Bitcoin Extortion Case
Police arrest a suspect linked to the kidnapping case of David Balland, co-founder of Ledger. The criminal group committed violence against him and his partner to extort bitcoin. International cooperation has intensified efforts to combat violent crimes targeting cryptocurrency, reminding holders to enhance security awareness.
GateNews3h ago
Balancer Labs Announces Shutdown, $128 Million Hacker Attack Severely Damages Protocol Operations
Balancer Labs, the parent company of the well-known liquidity protocol Balancer, has announced it will cease operations. The shutdown follows a hacker attack in November that resulted in a $128 million loss, leaving the company unable to continue operations. Co-founder emphasized that the protocol will continue to exist and plans to restructure, concentrating resources on core products. The coming year will be critical.
ChainNewsAbmedia3h ago
Golden Afternoon News | Important Midday Updates on March 24
Spain arrests suspect in Ledger co-founder kidnapping case, Aave v4 receives nearly unanimous support to proceed with mainnet deployment, while Russia allows Bitcoin and other cryptocurrencies to enter the market, and multiple central banks will increase gold holdings to address geopolitical risks.
金色财经_3h ago