‹ Back to Home

Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials

A fake npm package mimicking the OpenClaw AI agent installer silently deploys a Remote Access Trojan and steals macOS Keychain passwords, SSH keys, browser data, and crypto wallets. Here is everything developers need to know.

Keerthika 7 min read 591
Follow on Google
Updated 2 weeks ago
Security Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials 7 min left Follow on Google
Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials

TamilTech AI summary

Security researchers found a malicious npm package that pretends to be the real OpenClaw AI agent installer and quietly drops a Remote Access Trojan while stealing macOS credentials. The attackers use typosquatting with names like open-claw or openclaw-installer so developers who mistype or rush an install can get tricked, and a postinstall script then pulls down a RAT that persists via LaunchAgents and can grab Keychain passwords, browser data, SSH keys, crypto wallets, cloud credentials, and .env secrets. This matters because OpenClaw is popular with developers and AI users, macOS machines often hold high-value access to servers and company systems, and supply-chain tricks like this keep showing up across npm. If you recently installed anything OpenClaw-related, check LaunchAgents, odd network connections, and your global npm list, remove anything suspicious, and consider a malware scan. Protect yourself by installing only the exact official openclaw package from trusted docs, reviewing publisher and download history before install, using lockfiles and npm audit, and strongly considering ignore-scripts in npmrc so random postinstall code cannot run unchecked.

  • How do I know if I installed the fake OpenClaw package?
  • What is the official OpenClaw npm package name?
  • Can this attack affect Windows or Linux users too?
  • How do I prevent npm postinstall scripts from running?

AI-assisted summary, checked by the TamilTech editorial team.

Malicious npm Package Posing as OpenClaw Installer Deploys RAT and Steals macOS Credentials

Security researchers have uncovered a dangerous supply chain attack targeting developers and AI enthusiasts: a malicious npm package disguised as the legitimate OpenClaw AI agent installer is being distributed on the npm registry. Once installed, the package silently deploys a Remote Access Trojan (RAT) and harvests sensitive macOS credentials — including saved passwords, browser cookies, SSH keys, and crypto wallet data.

This attack is a textbook example of typosquatting and dependency confusion — two techniques that have become increasingly popular among threat actors targeting the developer ecosystem. The fake package mimics the real OpenClaw installer closely enough that even experienced developers can be fooled.

What Is OpenClaw and Why Is It a Target?

OpenClaw is a legitimate AI agent platform that integrates with popular messaging services like WhatsApp, Telegram, Discord, and Signal. It is widely used by developers, small business owners, and AI enthusiasts to build personal AI assistants. Its growing popularity — especially in the developer community — makes it an attractive lure for attackers.

Premium Content

You've read all your free articles today. Subscribe to continue reading.

You've used 3 of 3 free articles today.

Subscribe Now

Already subscribed? Sign in

Get tomorrow’s tech news on WhatsApp

One short update a day, free. Follow the TamilTech channel.

What do you think?

people reacted

Keerthika

TamilTech editorial team · 3,346 articles

Keerthika is an editor at TamilTech, the Tamil and English technology publication founded by Praveen Kumar S. She covers AI, smartphones, gadgets, EVs, startups and cybersecurity i...

More from Keerthika

Ask TamilTech on WhatsApp

Tech doubt? Ask in Tamil or English — our WhatsApp assistant answers from TamilTech articles in seconds.

Related stories

Comments (0)

| Supports **bold**, *italic*, `code`

Be the first to comment!

Next story PixelLeak: How AI Coding Agents Put 13,000 Internal Screenshots on Public GitHub
Tamiltech

Tamiltech

Install app for faster access

Earn XP 🏆
WhatsApp
Notifications