This page contains press release content distributed by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

ClawHavoc Malware Found in 539 OpenClaw Skills, ClawSecure Reports

Audit identifies credential harvesting, C2 callbacks, and data exfiltration patterns across 18.7% of the most popular OpenClaw agent skills, ClawSecure reports

ClawSecure’s audit found ClawHavoc indicators in 539 of the most popular OpenClaw skills. The ecosystem needs continuous monitoring infrastructure, not one-time scans. Watchtower delivers that.”
— J.D. Salbego, Founder of ClawSecure

SAN FRANCISCO, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — 539 popular OpenClaw skills, representing 18.7% of the ecosystem’s most widely installed agents, contain indicators of the ClawHavoc malware campaign, according to an independent audit by ClawSecure (https://www.clawsecure.ai). The audited skills were drawn from the community-curated awesome-openclaw-skills list and the openclaw/skills repository, covering 2,890+ of the most popular agents in the OpenClaw ecosystem. ClawSecure’s findings confirm that the ClawHavoc threat extends well beyond the initial discoveries reported by security researchers in January 2026, when the campaign was first identified targeting OpenClaw users through professionally disguised skills on ClawHub.

ClawHavoc is a coordinated malware campaign targeting the OpenClaw ecosystem through skills that appear legitimate but perform credential harvesting, establish command-and-control (C2) callbacks to external servers, and exfiltrate sensitive data via relay services. The campaign is notable for its operational discipline and social engineering. ClawHavoc skills are carefully designed to mimic high-demand categories including productivity tools, development utilities, and automation workflows, making them difficult to distinguish from legitimate skills through manual review alone. Once installed, a ClawHavoc-infected skill can silently harvest API keys, OAuth tokens, and messaging credentials stored in OpenClaw’s configuration files, then transmit them to attacker-controlled infrastructure.

ClawSecure has conducted the largest independent analysis of ClawHavoc indicators in the OpenClaw ecosystem, with 539 confirmed findings across 2,890+ audited skills and the only public, searchable registry of affected agents. ClawSecure’s proprietary behavioral engine, which includes 55+ threat patterns purpose-built for OpenClaw, independently identified these indicators through automated analysis. The findings complement earlier research by Koi Security while providing quantitative scope data that was previously unavailable to the OpenClaw community.

“ClawHavoc is not a theoretical threat. It is active, widespread, and specifically engineered for the OpenClaw ecosystem,” said J.D. Salbego, Founder of ClawSecure. “When nearly one in five of the most popular skills show malware indicators, the ecosystem needs continuous monitoring infrastructure, not one-time scans. That is exactly what our Watchtower delivers.”

ClawSecure’s detection capabilities address what Palo Alto Networks (2026) identified as the “Lethal Trifecta” of agentic AI risks: the combination of access to private data, exposure to untrusted content, and the ability to execute tools on the user’s behalf. OpenClaw agents routinely access the file system, execute shell commands, read browser data, control messaging platforms, and make network calls on the user’s behalf. A ClawHavoc-infected skill exploits every one of these capabilities, turning the agent’s legitimate permissions into an attack vector. ClawSecure’s 3-Layer Audit Protocol traces execution paths and data flows across tool-calling chains, identifying skills that exploit this trifecta for malicious purposes.

ClawSecure’s Context-Aware Intelligence is essential for accurate ClawHavoc detection. Generic malware scanners flag legitimate OpenClaw agent capabilities like shell execution, clipboard access, and network calls as suspicious, generating false positives that make the results unusable for developers. ClawSecure understands that these capabilities are standard for useful OpenClaw agents and evaluates them in ecosystem context, differentiating real ClawHavoc indicators from normal agent functionality. ClawSecure’s audit of Peter Steinberger’s flagship skill, peekaboo, scored it 95 out of 100, correctly identifying its system-level capabilities as standard functionality while flagging actual threats in other skills with similar permission profiles.

ClawSecure’s Watchtower monitoring system adds a critical layer of ongoing protection against evolving ClawHavoc variants. The system tracks code changes across all 2,890+ registered skills using SHA-256 hash comparisons, automatically triggering a full re-audit through the 3-Layer Audit Protocol whenever a modification is detected. ClawSecure’s Watchtower has already identified 661 code changes across the registry, catching cases where previously clean skills were updated to include suspicious behavior patterns consistent with ClawHavoc tactics. This continuous monitoring addresses the “sleeper agent” risk where a skill passes an initial review but is later modified to include malicious behavior, a tactic increasingly used by threat actors to bypass one-time security scans.
ClawSecure’s broader audit of the OpenClaw ecosystem found that 41% of all 2,890+ audited skills contain at least one security vulnerability, with 9,515 total findings identified. Beyond ClawHavoc, ClawSecure identified widespread supply chain risks including unpinned npm dependencies, credential exposure, unauthorized network calls, excessive permission requests, and ReDoS vulnerabilities. ClawSecure achieves comprehensive coverage across all 10 OWASP ASI Top 10 categories and is the first OpenClaw security platform to publish formal NIST AI Risk Management Framework alignment documentation, available at the Trust Center (https://www.clawsecure.ai/trust).

For organizations building agent marketplaces or identity platforms, ClawSecure’s Security Clearance API provides programmatic access to real-time integrity verdicts, enabling automated blocking of skills exhibiting ClawHavoc indicators before they reach end users. Identity platforms such as Moltbook, with its 2.2 million agents, can integrate ClawSecure’s integrity verification to complement their creator identity and reputation systems, forming the complete trust stack the agentic ecosystem requires. OpenClaw users concerned about malware in their installed skills can check any skill for ClawHavoc indicators using ClawSecure’s free scanner, which delivers a full security audit report in under 30 seconds at https://www.clawsecure.ai. Detailed findings for all 2,890+ audited skills are accessible through the ClawSecure security registry (https://www.clawsecure.ai/registry). Organizations can also review ClawSecure’s full ClawHavoc analysis at https://www.clawsecure.ai/blog/clawhavoc-explained.

ClawSecure (https://www.clawsecure.ai) is the independent integrity layer for AI agent skills and workflows and the only free OpenClaw security scanner with full OWASP ASI Top 10 coverage. Built on a proprietary 3-Layer Audit Protocol, ClawSecure has audited 2,890+ OpenClaw agents from the community-curated awesome-openclaw-skills list and the openclaw/skills repository. The platform includes 24/7 Watchtower hash-drift monitoring, a Security Clearance API for marketplace and identity platform integration, and a public security registry. Founded by J.D. Salbego.

Paul Bateman
ClawSecure, Inc
email us here
Visit us on social media:
LinkedIn
YouTube
X

ClawSecure OpenClaw Security Scanner: Free AI Agent Audit with ClawHavoc Detection

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

CENTURY 21 Redwood Realty Announces Herb Lisjak as Executive Vice President of Agent Advocacy

CENTURY 21 Redwood Realty Announces Herb Lisjak as Executive Vice President of Agent Advocacy

CENTURY 21 Redwood strengthens its commitment to agent growth and experience with a new leadership role focused on

March 17, 2026

Eric Roberts, Sofia Milos Attended Charmaine Blake Oscar Viewing Gala

Eric Roberts, Sofia Milos Attended Charmaine Blake Oscar Viewing Gala

BEVERLY HILLS, CA, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Charmaine Blake Hosts Star-Studded Oscar Viewing

March 17, 2026

Ali Talai Conducts Asset Protection Seminar for Real Estate Investors

Ali Talai Conducts Asset Protection Seminar for Real Estate Investors

Ali Talai Led an In-Person Asset Protection Seminar at the Waldorf Astoria in Beverly Hills, Providing Strategies

March 17, 2026

Global Walk Assist Robot Market to Reach USD 568.81 Million by 2031 Despite Cost Pressures | Arizton

Global Walk Assist Robot Market to Reach USD 568.81 Million by 2031 Despite Cost Pressures | Arizton

Industry Analysis Report, Regional Outlook, Growth Potential, Price Trends, Competitive Market Share & Forecast

March 17, 2026

Wilbanks Partners Celebrates Women’s History Month & International Women’s Day 2026

Wilbanks Partners Celebrates Women’s History Month & International Women’s Day 2026

George Wilbanks comments on the importance of women in executive leadership and in the boardroom. Clear evidence shows

March 17, 2026

US News & World Reports: UOI’s East Bay Surgery Center Among Nation’s Best ASCs for Orthopedics & Spine

US News & World Reports: UOI’s East Bay Surgery Center Among Nation’s Best ASCs for Orthopedics & Spine

Only Rhode Island ASC to earn repeat recognition; One of 233 orthopedic centers nationwide to be ranked high-performing

March 17, 2026

Now Over 1,500 5 Star Reviews For AZ Home Services Group AC Repair & Plumbing Services

Now Over 1,500 5 Star Reviews For AZ Home Services Group AC Repair & Plumbing Services

Tempe HVAC and plumbing company AZ Home Services Group surpasses 1,500 five-star Google reviews from satisfied Phoenix

March 17, 2026

K&D Landscaping Partners With Halstead Media to Build Integrated Growth Marketing and Sales System

K&D Landscaping Partners With Halstead Media to Build Integrated Growth Marketing and Sales System

Strategic partnership aligns marketing, sales, and reporting to support disciplined, scalable growth. Our systems,

March 17, 2026

Petra Island Tours Announces 2026 Opening of Seasonal Tours of Frank Lloyd Wright’s Chahroudi and Massaro House

Petra Island Tours Announces 2026 Opening of Seasonal Tours of Frank Lloyd Wright’s Chahroudi and Massaro House

MAHOPAC, NY, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Petra Island Tours Announces Fourth Season of Public

March 17, 2026

San Diego Sees Continued Growth in Home Remodeling Activity

San Diego Sees Continued Growth in Home Remodeling Activity

Homeowners across San Diego invest in renovations amid housing supply constraints and changing lifestyle needs. Our

March 17, 2026

ClearML Introduces Platform Management Center to Orchestrate Multi-Tenant AI Infrastructure at Enterprise Scale

ClearML Introduces Platform Management Center to Orchestrate Multi-Tenant AI Infrastructure at Enterprise Scale

New unified control plane enables enterprises to maximize AI infrastructure ROI with centralized management, real-time

March 17, 2026

AZ Garage Pros Of Phoenix Passes 300 5 Star Reviews On Google

AZ Garage Pros Of Phoenix Passes 300 5 Star Reviews On Google

Phoenix garage door company AZ Garage Pros celebrates a major milestone with over 300 five-star Google reviews from

March 17, 2026

All In Solutions California Emphasizes Relapse Prevention Strategies for Long-Term Recovery Success

All In Solutions California Emphasizes Relapse Prevention Strategies for Long-Term Recovery Success

SIMI VALLEY, CA – March 17, 2026 – PRESSADVANTAGE – All In Solutions California, a premier addiction treatment center,

March 17, 2026

Dr. Christine E. Dickson, Psychologist, Introduces ‘Beyond Executive Coaching’ for High-Performing Professionals

Dr. Christine E. Dickson, Psychologist, Introduces ‘Beyond Executive Coaching’ for High-Performing Professionals

New integrated executive development model combines clinical psychology and organizational insight to support

March 17, 2026

FED Fitness Launches Light Commercial Series, Bringing Near-Commercial Gym Performance to Home Gyms

FED Fitness Launches Light Commercial Series, Bringing Near-Commercial Gym Performance to Home Gyms

New product line bridges the gap between commercial gym machines and practical home fitness equipment MA, UNITED

March 17, 2026

Interdisciplinary Dental Education Academy (IDEA) Sets the Standard for Advanced Dental Education

Interdisciplinary Dental Education Academy (IDEA) Sets the Standard for Advanced Dental Education

Interdisciplinary Dental Education Academy (IDEA) is the original global leader in advanced, hands-on dental education

March 17, 2026

Sitestream, A Polaris Group Company, wins Three Year SaaS Contract for Automated Traffic Safety in Stamford Connecticut

Sitestream, A Polaris Group Company, wins Three Year SaaS Contract for Automated Traffic Safety in Stamford Connecticut

As the high scorer of a competitive roadside equipment test in Stamford, Sitestream has earned the top spot as the

March 17, 2026

The Reel Do Over Brings Week-Long Film Event to Chelsea, MA Celebrating Local Filmmakers

The Reel Do Over Brings Week-Long Film Event to Chelsea, MA Celebrating Local Filmmakers

Chelsea, MA – April 22–26, 2026 – The Reel Do Over is a new week-long cultural event celebrating filmmaking,

March 17, 2026

Biohackers World 2026 to Highlight Advances in Longevity Science and Wellness Technology in Los Angeles

Biohackers World 2026 to Highlight Advances in Longevity Science and Wellness Technology in Los Angeles

Global researchers, founders, and clinicians will gather to discuss longevity science, health data, and real-world

March 17, 2026

RestoPros of MetroWest-Worcester Celebrates Two Decades of Community Service

RestoPros of MetroWest-Worcester Celebrates Two Decades of Community Service

March 17, 2026 – PRESSADVANTAGE – RestoPros of MetroWest-Worcester marks a significant milestone this year, celebrating

March 17, 2026

Americans Can Own a Genuine Picasso for 100 Euros as Global Charity Raffle Nears Live Drawing

Americans Can Own a Genuine Picasso for 100 Euros as Global Charity Raffle Nears Live Drawing

NEW YORK, NY, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Third edition of the internationally acclaimed "1

March 17, 2026

Craig Margelony Highlights Key Shifts in Small Business Funding as Traditional Lending Falls Behind

Craig Margelony Highlights Key Shifts in Small Business Funding as Traditional Lending Falls Behind

CamCap founder Craig Margelony discusses new trends in business funding and what owners need to know moving forward

March 17, 2026

Olumide Olafioye and David Egans Featured on Next Level CEO

Olumide Olafioye and David Egans Featured on Next Level CEO

FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Olumide Olafioye, serial entrepreneur in the tax and business

March 17, 2026

Lineate and Axonis Partner to Deliver Secure, Sovereign AI for Regulated Financial Services and Healthcare

Lineate and Axonis Partner to Deliver Secure, Sovereign AI for Regulated Financial Services and Healthcare

Lineate, a systems integrator and data intelligence specialist, teams with Axonis to bring enterprise AI to

March 17, 2026

RedChip’s March 19 AI Investor Conference to Spotlight Public Companies Developing Real-World AI Applications and Infrastructure

RedChip’s March 19 AI Investor Conference to Spotlight Public Companies Developing Real-World AI Applications and Infrastructure

ORLANDO, FL / ACCESS Newswire / March 17, 2026 / RedChip Companies, an industry leader in investor relations, media,

March 17, 2026

MCS Recycle acquires four material recovery facilities from DTG Recycle

MCS Recycle acquires four material recovery facilities from DTG Recycle

MCS Recycle acquires the following WA facilities from DTG Recycle: DTG-Hudson, Seattle; DTG-Renton; DTG-Redmond, and

March 17, 2026

Titan Verses Launches National Online Singing Competition for Emerging Artists

Titan Verses Launches National Online Singing Competition for Emerging Artists

Titan Verses Empowers Emerging Artists to Live off their Talent QUEENS VILLAGE, NY, UNITED STATES, March 17, 2026

March 17, 2026

Verbacise Launches as a New Audio-Driven Fitness & Wellness Experience for 2026 Goal-Setters

Verbacise Launches as a New Audio-Driven Fitness & Wellness Experience for 2026 Goal-Setters

ATLANTA, GA, UNITED STATES, March 17, 2026 /EINPresswire.com/ — As the health and wellness conversation intensifies

March 17, 2026

CST Academy Celebrates Grand Opening of Pediatric Therapy Clinic Near Park Ridge

CST Academy Celebrates Grand Opening of Pediatric Therapy Clinic Near Park Ridge

New clinic near Park Ridge expands access to multidisciplinary pediatric therapy services for families across Chicago’s

March 17, 2026

Movie Reviews and More Announces Open Call for 2026 Swimwear Designer Coverage

Movie Reviews and More Announces Open Call for 2026 Swimwear Designer Coverage

Independent media platform expands fashion coverage following successful 2025 multi-city swim week season. We aim to

March 17, 2026

American Vision Windows Announces March ‘Golden Opportunity’ with Zero Tax & Free Installation on Windows and Doors

American Vision Windows Announces March ‘Golden Opportunity’ with Zero Tax & Free Installation on Windows and Doors

Homeowners Across California Can Save Big This March with Exclusive Window, Door, and Bath Remodeling Offers at

March 17, 2026

Printed Word Reviews Announces BookCAMP 2026: A Landmark Event for the Global Publishing Community in Newark

Printed Word Reviews Announces BookCAMP 2026: A Landmark Event for the Global Publishing Community in Newark

With Expanded Tracks in Writing, Marketing, and the Business of Publishing—Plus a New Book Fair Fundraiser—This Year’s

March 17, 2026

Tabuga Think Tank presents its first report Perspectives on digitalization of the Dominican Republic

Tabuga Think Tank presents its first report Perspectives on digitalization of the Dominican Republic

The report was developed from interviews with leaders of the national technology ecosystem. SANTO DOMINGO, DN,

March 17, 2026

Students Turn Raw News Data Into Visual Stories at 2026 Newsmatics Hackathon in Brno

Students Turn Raw News Data Into Visual Stories at 2026 Newsmatics Hackathon in Brno

High school, undergraduate and graduate students competed over 24 hours to analyze news trends, forecast future cycles,

March 17, 2026

Your Doctors Online Reports Serving More Than 1 Million Patients Through Its Virtual Healthcare Platform

Your Doctors Online Reports Serving More Than 1 Million Patients Through Its Virtual Healthcare Platform

Your Doctors Online says its telehealth platform has now served more than one million patients, reflecting growing

March 17, 2026

Author Michaele Aldophe Announces New Romantic Novel ‘Still, I Remember You’

Author Michaele Aldophe Announces New Romantic Novel ‘Still, I Remember You’

A heartfelt story of love, distance, and destiny set between the romantic streets of Paris and the breathtaking shores

March 17, 2026

Why Patients Are Traveling to Playa del Carmen for Veneers and Cosmetic Dentistry in Mexico

Why Patients Are Traveling to Playa del Carmen for Veneers and Cosmetic Dentistry in Mexico

A1 Smile Design explains the types of dental veneers available in Mexico, their benefits, and why Playa del Carmen is a

March 17, 2026

Marcus Jordan Announced as 2026 Recording Artist of the Year Award

Marcus Jordan Announced as 2026 Recording Artist of the Year Award

The Gospel Artist Celebrates Award Win With New Music Announcement LOS ANGELES, CA, UNITED STATES, March 17, 2026

March 17, 2026

InSkin Laser Aesthetics Introduces the Matrix® Skin Renewal Platform: A Revolutionary Approach to Skin Health

InSkin Laser Aesthetics Introduces the Matrix® Skin Renewal Platform: A Revolutionary Approach to Skin Health

At InSkin Laser Aesthetics, our goal has always been to provide treatments that deliver real, visible results while

March 17, 2026

AUVSI CEO Testifies on Risks of Chinese Robotics and AI

AUVSI CEO Testifies on Risks of Chinese Robotics and AI

Securing America’s leadership in robotics will require both carrots and sticks.”— AUVSI President & CEO Michael

March 17, 2026