BlockBeats 消息,2 月 20 日,慢雾创始人余弦转帖发布安全提醒,目前 OpenClaw 的 ClawHub 市场共发现 1184 个恶意技能,这些技能会窃取 SSH 密钥、加密钱包、浏览器密码并打开反向 shell。仅一名攻击者就上传了 677 个软件包。排名第一的技能存在 9 个漏洞,下载量达数千次。
余弦提醒用户,文本不再是文本,而是指令。建议通过独立环境使用 AI 工具,许多 OpenClaw 技能存在潜在风险。此外,Web3 安全里合约只是一部分,真正事故原因早已不仅仅是合约。前几日 Moonwell 被盗 178 万美元,缺陷代码来自 Co-Authored-By:Claude Opus 4.6。
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Gerelateerde artikelen
Sự cố hy hữu: AI agent của nhà phát triển OpenAI gửi nhầm toàn bộ số memecoin đang nắm giữ
A crypto trading bot named Lobstar Wilde, developed by Nik Pash, mistakenly transferred $250,000 worth of memecoins to a user claiming to need funds for a sick relative. Initially funded with $50,000 SOL, it mistakenly sent 5% of its token holdings instead of the requested 4 SOL. The recipient sold the tokens for $40,000, despite their eventual value surpassing $420,000, prompting discussions on AI risks in the volatile crypto market. Nonetheless, the bot continues to operate and rewards users for real-life challenges.
TapChiBitcoin4u geleden
Trader trên Polymarket mất hàng trăm nghìn USD vì quảng cáo giả Uniswap trên Google
A trader lost hundreds of thousands of dollars after clicking a fake Uniswap ad on Google. This incident highlights ongoing phishing scams in crypto, where attackers disguise malicious sites to steal assets. Experts urge stricter measures against such fraudulent ads.
TapChiBitcoin17u geleden
IoTeX:此前链上攻击损失200万美元,预计48小时内恢复运行
IoTex 发布更新称已控制私钥泄露事件,损失约200万美元,涉及多种资产。团队正在与交易所和执法机构合作,冻结被盗资金并进行调查。链上功能将在安全升级后恢复,并将保持透明进展。
GateNewsBot02-22 02:31
1月份加密领域欺诈案损失达3.7亿美元,创近11个月新高
Uniswap 创始人 Hayden Adams 警告称,冒充 Uniswap 的搜索引擎广告导致用户损失高价值加密资产,诈骗者借此诱导用户连接钱包授权交易。2026 年 1 月加密行业因此类攻击损失达 3.703 亿美元,主要由钓鱼链接和虚假广告引起,凸显品牌仿冒对用户信任的威胁。
GateNewsBot02-22 02:12
ZachXBT cảnh báo tài khoản trên X bịa nội dung để dẫn dụ lừa đảo
ZachXBT warns of a social media account allegedly fabricating stories to increase engagement and lure users into scams. The account has gained a large following using shocking content. The public is encouraged to verify information and remain cautious of high-profile accounts to avoid scams.
TapChiBitcoin02-22 01:49