clawsmith.com/claw/openclaw-clawhub-341-malicious-skills
⚠ IssueUnderservedToolLive
1,467 malicious skills found in ClawHub marketplace — Snyk audit expands from 341 to 1,467
Snyk found 1,467 malicious skills in ClawHub (91% combining prompt injection with traditional malware). Originally 341 found by Koi Security in ClawHavoc campaign. Over 40,000 exposed instances running with insecure default configurations.
Virality Score
1,467
across 1 platforms
Score Breakdown
FORUMS
16
Social Proof 2 sources
Existing Solutions 2 competitors
Gap Assessment
UnderservedExisting solutions leave gaps
VirusTotal partnership provides daily scanning. ClawSec (Prompt Security) offers skill integrity verification. ClawSecure has behavioral engine. But no solution prevents upload of malicious skills proactively.
Frequently Asked Questions
Details
Signalissue
EcosystemTool
Sources2
Platforms1
Updated1h ago
Trend→ stable
Related signals
92.8kAgents of Chaos: 38 Researchers Deploy 6 OpenClaw Agents — 11 Critical Failure Patterns in 14 Days35.6kCapability Evolver — #1 ClawHub Skill (35K Downloads) Caught Exfiltrating Data to ByteDance Feishu18.3kChina Bans OpenClaw from Government Computers and Banks — CERT Warns 'Extremely Weak Security'