安全提醒:ClawHub市场共发现1184个恶意技能,可能窃取SSH密钥、加密钱包等

WELL-4,21%

BlockBeats 消息,2 月 20 日,慢雾创始人余弦转帖发布安全提醒,目前 OpenClaw 的 ClawHub 市场共发现 1184 个恶意技能,这些技能会窃取 SSH 密钥、加密钱包、浏览器密码并打开反向 shell。仅一名攻击者就上传了 677 个软件包。排名第一的技能存在 9 个漏洞,下载量达数千次。

余弦提醒用户,文本不再是文本,而是指令。建议通过独立环境使用 AI 工具,许多 OpenClaw 技能存在潜在风险。此外,Web3 安全里合约只是一部分,真正事故原因早已不仅仅是合约。前几日 Moonwell 被盗 178 万美元,缺陷代码来自 Co-Authored-By:Claude Opus 4.6。

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Articoli correlati

XRP Ledger lên kế hoạch cập nhật batch amendment sau báo cáo lỗi

XRP Ledger developers are addressing a serious bug found through their Bug Bounty program, ensuring the network remains secure. The foundation is preparing a patch and emphasizes validators to veto a batch amendment, protecting user operations and enabling enhanced features for on-chain applications.

TapChiBitcoin1m fa

Sydney Man Charged Over Alleged $3.5 Million Crypto Scam Targeting Elderly Australians

A 42-year-old man from Sydney has been charged over his alleged involvement in a $3.5 million (A$5 million) crypto investment scam that reportedly targeted more than 190 elderly and vulnerable Australians. The case comes as authorities across the country intensify efforts to combat the growing

ICOHOIDER50m fa

OpenClaw 出包!OpenAI 員工的 AI 代理誤把 60 萬鎂加密貨幣全送出

一名 OpenAI 員工的 AI 代理 Lobstar Wilde 意外錯誤轉出約 5,243 萬枚代幣,原因是系統判讀錯誤,原本僅計劃進行小額資助。雖然最終賣出金額為約 4 萬美元,但隨後代幣價格上漲至近 60 萬美元,這起事件顯示 AI 代理在資產管理中的風險和潛在影響。

ChainNewsAbmedia6h fa

AI Agent 失誤把 25 萬美元迷因幣全轉給路人:原本只是想施捨乞丐…

AI Agent「Lobstar Wilde」因解析錯誤將價值25萬美元的代幣誤轉給陌生人,對方隨即拋售獲利約4萬美元。事件暴露了AI自主性和金融安全的風險,引發對AI管理資金權限的深思。

動區BlockTempo7h fa

Sự cố hy hữu: AI agent của nhà phát triển OpenAI gửi nhầm toàn bộ số memecoin đang nắm giữ

A crypto trading bot named Lobstar Wilde, developed by Nik Pash, mistakenly transferred $250,000 worth of memecoins to a user claiming to need funds for a sick relative. Initially funded with $50,000 SOL, it mistakenly sent 5% of its token holdings instead of the requested 4 SOL. The recipient sold the tokens for $40,000, despite their eventual value surpassing $420,000, prompting discussions on AI risks in the volatile crypto market. Nonetheless, the bot continues to operate and rewards users for real-life challenges.

TapChiBitcoin12h fa
Commento
0/400
Nessun commento
Trading di criptovalute ovunque e in qualsiasi momento
qrCode
Scansiona per scaricare Gate app
Notizie
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)