Malicious npm Package Posing as OpenClaw Installer Deploys RAT and Steals macOS Credentials
Security researchers have uncovered a dangerous supply chain attack targeting developers and AI enthusiasts: a malicious npm package disguised as the legitimate OpenClaw AI agent installer is being distributed on the npm registry. Once installed, the package silently deploys a Remote Access Trojan (RAT) and harvests sensitive macOS credentials — including saved passwords, browser cookies, SSH keys, and crypto wallet data.
This attack is a textbook example of typosquatting and dependency confusion — two techniques that have become increasingly popular among threat actors targeting the developer ecosystem. The fake package mimics the real OpenClaw installer closely enough that even experienced developers can be fooled.
What Is OpenClaw and Why Is It a Target?
OpenClaw is a legitimate AI agent platform that integrates with popular messaging services like WhatsApp, Telegram, Discord, and Signal. It is widely used by developers, small business owners, and AI enthusiasts to build personal AI assistants. Its growing popularity — especially in the developer community — makes it an attractive lure for attackers.
Premium Content
You've read all your free articles today. Subscribe to continue reading.
You've used 3 of 3 free articles today.
Subscribe NowAlready subscribed? Sign in




Comments (0)
Be the first to comment!