{"id":230371,"date":"2026-02-03T01:28:54","date_gmt":"2026-02-03T07:28:54","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2026\/02\/malicious-moltbot-skills-used-to-push-password-stealing-malware"},"modified":"2026-02-03T01:28:54","modified_gmt":"2026-02-03T07:28:54","slug":"malicious-moltbot-skills-used-to-push-password-stealing-malware","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2026\/02\/malicious-moltbot-skills-used-to-push-password-stealing-malware","title":{"rendered":"Malicious MoltBot skills used to push password-stealing malware"},"content":{"rendered":"<p><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/malicious-moltbot-skills-used-to-push-password-stealing-malware2.jpg\"><\/a><\/p>\n<p>More than 230 malicious packages for the personal AI assistant OpenClaw (formerly known as Moltbot and ClawdBot) have been published in less than a week on the tool\u2019s official registry and on GitHub.<\/p>\n<p>Called skills, the packages pretend to be legitimate tools to deliver malware that steals sensitive data, like API keys, wallet private keys, SSH credentials, and browser passwords.<\/p>\n<p>Originally named ClawdBot and switching to Moltbot and now OpenClaw in under a month, the project is a viral <a href=\"https:\/\/github.com\/openclaw\/openclaw\" target=\"_blank\" rel=\"nofollow noopener\">open-source<\/a> AI assistant designed to run locally, with persistent memory and integrate with various resources (chat, email, local file system). Unless configured properly, the assistant introduces security risks.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>More than 230 malicious packages for the personal AI assistant OpenClaw (formerly known as Moltbot and ClawdBot) have been published in less than a week on the tool\u2019s official registry and on GitHub. Called skills, the packages pretend to be legitimate tools to deliver malware that steals sensitive data, like API keys, wallet private keys, [\u2026]<\/p>\n","protected":false},"author":427,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[34,6],"tags":[],"class_list":["post-230371","post","type-post","status-publish","format-standard","hentry","category-cybercrime-malcode","category-robotics-ai"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/230371","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/427"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=230371"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/230371\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=230371"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=230371"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=230371"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}