This page contains press release content distributed by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

ClawHavoc Malware Found in 539 OpenClaw Skills, ClawSecure Reports

Audit identifies credential harvesting, C2 callbacks, and data exfiltration patterns across 18.7% of the most popular OpenClaw agent skills, ClawSecure reports

ClawSecure’s audit found ClawHavoc indicators in 539 of the most popular OpenClaw skills. The ecosystem needs continuous monitoring infrastructure, not one-time scans. Watchtower delivers that.”
— J.D. Salbego, Founder of ClawSecure

SAN FRANCISCO, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — 539 popular OpenClaw skills, representing 18.7% of the ecosystem’s most widely installed agents, contain indicators of the ClawHavoc malware campaign, according to an independent audit by ClawSecure (https://www.clawsecure.ai). The audited skills were drawn from the community-curated awesome-openclaw-skills list and the openclaw/skills repository, covering 2,890+ of the most popular agents in the OpenClaw ecosystem. ClawSecure’s findings confirm that the ClawHavoc threat extends well beyond the initial discoveries reported by security researchers in January 2026, when the campaign was first identified targeting OpenClaw users through professionally disguised skills on ClawHub.

ClawHavoc is a coordinated malware campaign targeting the OpenClaw ecosystem through skills that appear legitimate but perform credential harvesting, establish command-and-control (C2) callbacks to external servers, and exfiltrate sensitive data via relay services. The campaign is notable for its operational discipline and social engineering. ClawHavoc skills are carefully designed to mimic high-demand categories including productivity tools, development utilities, and automation workflows, making them difficult to distinguish from legitimate skills through manual review alone. Once installed, a ClawHavoc-infected skill can silently harvest API keys, OAuth tokens, and messaging credentials stored in OpenClaw’s configuration files, then transmit them to attacker-controlled infrastructure.

ClawSecure has conducted the largest independent analysis of ClawHavoc indicators in the OpenClaw ecosystem, with 539 confirmed findings across 2,890+ audited skills and the only public, searchable registry of affected agents. ClawSecure’s proprietary behavioral engine, which includes 55+ threat patterns purpose-built for OpenClaw, independently identified these indicators through automated analysis. The findings complement earlier research by Koi Security while providing quantitative scope data that was previously unavailable to the OpenClaw community.

“ClawHavoc is not a theoretical threat. It is active, widespread, and specifically engineered for the OpenClaw ecosystem,” said J.D. Salbego, Founder of ClawSecure. “When nearly one in five of the most popular skills show malware indicators, the ecosystem needs continuous monitoring infrastructure, not one-time scans. That is exactly what our Watchtower delivers.”

ClawSecure’s detection capabilities address what Palo Alto Networks (2026) identified as the “Lethal Trifecta” of agentic AI risks: the combination of access to private data, exposure to untrusted content, and the ability to execute tools on the user’s behalf. OpenClaw agents routinely access the file system, execute shell commands, read browser data, control messaging platforms, and make network calls on the user’s behalf. A ClawHavoc-infected skill exploits every one of these capabilities, turning the agent’s legitimate permissions into an attack vector. ClawSecure’s 3-Layer Audit Protocol traces execution paths and data flows across tool-calling chains, identifying skills that exploit this trifecta for malicious purposes.

ClawSecure’s Context-Aware Intelligence is essential for accurate ClawHavoc detection. Generic malware scanners flag legitimate OpenClaw agent capabilities like shell execution, clipboard access, and network calls as suspicious, generating false positives that make the results unusable for developers. ClawSecure understands that these capabilities are standard for useful OpenClaw agents and evaluates them in ecosystem context, differentiating real ClawHavoc indicators from normal agent functionality. ClawSecure’s audit of Peter Steinberger’s flagship skill, peekaboo, scored it 95 out of 100, correctly identifying its system-level capabilities as standard functionality while flagging actual threats in other skills with similar permission profiles.

ClawSecure’s Watchtower monitoring system adds a critical layer of ongoing protection against evolving ClawHavoc variants. The system tracks code changes across all 2,890+ registered skills using SHA-256 hash comparisons, automatically triggering a full re-audit through the 3-Layer Audit Protocol whenever a modification is detected. ClawSecure’s Watchtower has already identified 661 code changes across the registry, catching cases where previously clean skills were updated to include suspicious behavior patterns consistent with ClawHavoc tactics. This continuous monitoring addresses the “sleeper agent” risk where a skill passes an initial review but is later modified to include malicious behavior, a tactic increasingly used by threat actors to bypass one-time security scans.
ClawSecure’s broader audit of the OpenClaw ecosystem found that 41% of all 2,890+ audited skills contain at least one security vulnerability, with 9,515 total findings identified. Beyond ClawHavoc, ClawSecure identified widespread supply chain risks including unpinned npm dependencies, credential exposure, unauthorized network calls, excessive permission requests, and ReDoS vulnerabilities. ClawSecure achieves comprehensive coverage across all 10 OWASP ASI Top 10 categories and is the first OpenClaw security platform to publish formal NIST AI Risk Management Framework alignment documentation, available at the Trust Center (https://www.clawsecure.ai/trust).

For organizations building agent marketplaces or identity platforms, ClawSecure’s Security Clearance API provides programmatic access to real-time integrity verdicts, enabling automated blocking of skills exhibiting ClawHavoc indicators before they reach end users. Identity platforms such as Moltbook, with its 2.2 million agents, can integrate ClawSecure’s integrity verification to complement their creator identity and reputation systems, forming the complete trust stack the agentic ecosystem requires. OpenClaw users concerned about malware in their installed skills can check any skill for ClawHavoc indicators using ClawSecure’s free scanner, which delivers a full security audit report in under 30 seconds at https://www.clawsecure.ai. Detailed findings for all 2,890+ audited skills are accessible through the ClawSecure security registry (https://www.clawsecure.ai/registry). Organizations can also review ClawSecure’s full ClawHavoc analysis at https://www.clawsecure.ai/blog/clawhavoc-explained.

ClawSecure (https://www.clawsecure.ai) is the independent integrity layer for AI agent skills and workflows and the only free OpenClaw security scanner with full OWASP ASI Top 10 coverage. Built on a proprietary 3-Layer Audit Protocol, ClawSecure has audited 2,890+ OpenClaw agents from the community-curated awesome-openclaw-skills list and the openclaw/skills repository. The platform includes 24/7 Watchtower hash-drift monitoring, a Security Clearance API for marketplace and identity platform integration, and a public security registry. Founded by J.D. Salbego.

Paul Bateman
ClawSecure, Inc
email us here
Visit us on social media:
LinkedIn
YouTube
X

ClawSecure OpenClaw Security Scanner: Free AI Agent Audit with ClawHavoc Detection

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

Arizona Sunrays Acquires Surprise Angels, Expanding Premier Youth Athletics to the West Valley

Arizona Sunrays Acquires Surprise Angels, Expanding Premier Youth Athletics to the West Valley

Arizona Sunrays, a leader in Arizona youth athletics for over 35 years, is proud to announce the acquisition of

March 19, 2026

Role of TGF-β1 Signaling in Spinal Cord Injury Recovery

Role of TGF-β1 Signaling in Spinal Cord Injury Recovery

Researchers reveal TGF-β1 promotes scar tissue formation and restricts recovery CHINA, March 19, 2026

March 19, 2026

GPT Proto Expands AI Model Catalogue with Support for Google’s Gemini 3.1 Pro Preview

GPT Proto Expands AI Model Catalogue with Support for Google’s Gemini 3.1 Pro Preview

Hong Kong-based API platform adds Google's latest multimodal model to its growing roster, expanding developer access to

March 19, 2026

GPT Proto Launches Full Support for OpenAI’s GPT-5.4 API, Offering Developers Affordable and Scalable Access

GPT Proto Launches Full Support for OpenAI’s GPT-5.4 API, Offering Developers Affordable and Scalable Access

HONG KONG, HONG KONG, CHINA, March 19, 2026 /EINPresswire.com/ — Hong Kong, March 2026 — GPT Proto, an AI API gateway

March 19, 2026

Datavault AI Enters into Definitive Agreement to Acquire NYIAX, Combining AI-Driven Data Monetization with Institutional-Grade Market Infrastructure

Datavault AI Enters into Definitive Agreement to Acquire NYIAX, Combining AI-Driven Data Monetization with Institutional-Grade Market Infrastructure

Pending acquisition will integrate NYIAX's blockchain-enabled exchange platform, built on globally recognized financial

March 19, 2026

U.S. Polo Assn. Unveils 2026 Spring-Summer Global Collection, Inspired by Coastal Charleston, South Carolina

U.S. Polo Assn. Unveils 2026 Spring-Summer Global Collection, Inspired by Coastal Charleston, South Carolina

Seasonal and Seaside Styles Debut Alongside U.S. Open Polo Championship Capsule WEST PALM BEACH, FL / ACCESS Newswire /

March 19, 2026

GrassRoots Turf Receives 2026 Consumer Choice Award for Lawn Maintenance in Metro Atlanta

GrassRoots Turf Receives 2026 Consumer Choice Award for Lawn Maintenance in Metro Atlanta

ATLANTA, GA / ACCESS Newswire / March 19, 2026 / GrassRoots Turf has received the 2026 Consumer Choice Award in the

March 19, 2026

Atlanta Fireplace Specialists Receives 2026 Consumer Choice Award for Fireplace Sales and Service

Atlanta Fireplace Specialists Receives 2026 Consumer Choice Award for Fireplace Sales and Service

ATLANTA, GA / ACCESS Newswire / March 19, 2026 / Atlanta Fireplace Specialists has been named a 2026 Consumer Choice

March 19, 2026

Trusted Home Services Since 1968: R.S. Andrews Wins 2026 Consumer Choice Award in Atlanta

Trusted Home Services Since 1968: R.S. Andrews Wins 2026 Consumer Choice Award in Atlanta

ATLANTA, GA / ACCESS Newswire / March 19, 2026 / R.S. Andrews has been named the 2026 Consumer Choice Award winner in

March 19, 2026

Relax The Back Raleigh Receives 2026 Consumer Choice Award for Office Furniture in Raleigh

Relax The Back Raleigh Receives 2026 Consumer Choice Award for Office Furniture in Raleigh

RALEIGH, NC / ACCESS Newswire / March 19, 2026 / Relax The Back Raleigh has received the 2026 Consumer Choice Award in

March 19, 2026

Atlas Butler Recognized With 2026 Consumer Choice Award for Heating and Air Conditioning Services in Columbus

Atlas Butler Recognized With 2026 Consumer Choice Award for Heating and Air Conditioning Services in Columbus

COLUMBUS, OH / ACCESS Newswire / March 19, 2026 / Atlas Butler has been named the 2026 Consumer Choice Award winner in

March 19, 2026

Setting The Stage for Excellence: Universal Eventpace Wins 2026 Consumer Choice Award in York Region

Setting The Stage for Excellence: Universal Eventpace Wins 2026 Consumer Choice Award in York Region

VAUGHAN, ON / ACCESS Newswire / March 19, 2026 / Universal Eventspace has been named the 2026 Consumer Choice Award

March 19, 2026

Farhat Advanced Interpreting Receives 2026 Consumer Choice Award for Translation and Interpreting Services in Columbus

Farhat Advanced Interpreting Receives 2026 Consumer Choice Award for Translation and Interpreting Services in Columbus

COLUMBUS, OH / ACCESS Newswire / March 19, 2026 / Farhat Advanced Interpreting, LLC has received the 2026 Consumer

March 19, 2026

Byrider Named 2026 Consumer Choice Award Winner in Automotive Financing & Leasing for Raleigh

Byrider Named 2026 Consumer Choice Award Winner in Automotive Financing & Leasing for Raleigh

RALEIGH, NC / ACCESS Newswire / March 19, 2026 / Byrider has been selected as the 2026 Consumer Choice Award winner in

March 19, 2026

Automation One Business Systems Inc. Recognized with Consumer Choice Award for Office Equipment in Vancouver

Automation One Business Systems Inc. Recognized with Consumer Choice Award for Office Equipment in Vancouver

VANCOUVER, BC / ACCESS Newswire / March 19, 2026 / Automation One Business Systems Inc. has been recognized with the

March 19, 2026

OnlineBankingHelp Expands Consumer Guides on Banking Delays and Transaction Issues

OnlineBankingHelp Expands Consumer Guides on Banking Delays and Transaction Issues

Independent resource helps users understand pending transactions, banking delays, and common online banking issues

March 19, 2026

Hollywood Tastemakers Discover The Billion Dollar Impact Ecosystem At Oscars Week Luxury Gifting Suite

Hollywood Tastemakers Discover The Billion Dollar Impact Ecosystem At Oscars Week Luxury Gifting Suite

Stacey Lauren introduces a community-powered ecosystem designed to turn relationships into collaboration, revenue and

March 19, 2026

Author Avery Crumrine Gains Hollywood Attention at Beverly Hills Oscars Week Event With Debut Book Intention Into Action

Author Avery Crumrine Gains Hollywood Attention at Beverly Hills Oscars Week Event With Debut Book Intention Into Action

18-year-old entrepreneur and speaker introduces her debut book, Intention Into Action, to Hollywood tastemakers at the

March 19, 2026

The Chicago Hotel Collection Launches New Loyalty Programs for Planners and Travelers

The Chicago Hotel Collection Launches New Loyalty Programs for Planners and Travelers

The Chicago Hotel Collection introduces Planner Rewards and Guest Loyalty to drive direct bookings, reward repeat

March 19, 2026

Nonprofit Launches National Campaign Linking America’s 250th Anniversary with Veteran Support

Nonprofit Launches National Campaign Linking America’s 250th Anniversary with Veteran Support

Campaign Highlights the Impact of Service While Expanding Access to Free Trauma-Informed Care Our veterans deserve

March 19, 2026

Mindpeak Announces Global Reseller Agreement with Leica Biosystems to Expand Access to AI Pathology Solutions

Mindpeak Announces Global Reseller Agreement with Leica Biosystems to Expand Access to AI Pathology Solutions

Mindpeak today announced a global reseller agreement with Leica Biosystems, a Danaher company and a global leader in

March 19, 2026

LeydenJar Sets New Density Benchmark at International Battery Seminar with Launch of 1350 Wh/L Silyte Technology

LeydenJar Sets New Density Benchmark at International Battery Seminar with Launch of 1350 Wh/L Silyte Technology

LeydenJar will exhibit at Booth 834 and present new data on scaling pure silicon anodes for AI-enabled wearables and

March 19, 2026

UMix Puts AI Playlist Creation Directly in the Hands of Business Operators

UMix Puts AI Playlist Creation Directly in the Hands of Business Operators

Multi-location businesses can now generate a custom, fully licensed music playlist from the UMix dashboard — no AI

March 19, 2026

ZKTeco USA & braXos Partner to Deliver 1st Fully Integrated Multi Credential Biometric Elevator Access Control Solution

ZKTeco USA & braXos Partner to Deliver 1st Fully Integrated Multi Credential Biometric Elevator Access Control Solution

Armatura One natively integrates with braXos for multi-credential floor access and destination dispatch in commercial,

March 19, 2026

Tanto Launches Auto-Sync Day Trading Journal for Futures and Forex Traders

Tanto Launches Auto-Sync Day Trading Journal for Futures and Forex Traders

Now supports Tradovate, NinjaTrader, Rithmic, cTrader, and 35+ firms with real-time trade syncing. I built the

March 19, 2026

Reliable Power Solutions: SUVELL’s Strategic Role as a Custom Loadbreak Switch Exporter in China

Reliable Power Solutions: SUVELL’s Strategic Role as a Custom Loadbreak Switch Exporter in China

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — The global shift toward industrial automation and the

March 19, 2026

Global Leading 200A Bushing Well Supplier: SUVELL’s Journey to ISO & ANSI Certification

Global Leading 200A Bushing Well Supplier: SUVELL’s Journey to ISO & ANSI Certification

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — Meeting the Demand for Grid Reliability The

March 19, 2026

Global Trade Reinvented: ECER.com’s AI Solutions for Manufacturers

Global Trade Reinvented: ECER.com’s AI Solutions for Manufacturers

BEIJING, CHINA, CHINA, March 19, 2026 /EINPresswire.com/ — As global commerce enters the era of "digital survival,"

March 19, 2026

Why SUVELL is Ranked as the Best Oil-Immersed Loadbreak Switch Producer in China: A Deep Dive into ISO Excellence

Why SUVELL is Ranked as the Best Oil-Immersed Loadbreak Switch Producer in China: A Deep Dive into ISO Excellence

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — The stability of modern electrical grids relies heavily

March 19, 2026

Jasmine,Precision at Scale Inside the World of a Top 10 Glass Bottle Manufacturer

Jasmine,Precision at Scale Inside the World of a Top 10 Glass Bottle Manufacturer

SHANDONG, SHANDONG, CHINA, March 19, 2026 /EINPresswire.com/ — Jasmine,Precision at Scale Inside the World of a Top 10

March 19, 2026

China Leading Secondary Bushing Supplier vs. Global Competitors: A Value Analysis from SUVELL

China Leading Secondary Bushing Supplier vs. Global Competitors: A Value Analysis from SUVELL

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — The Shifting Landscape of Global Power Infrastructure

March 19, 2026

BEAGEL ROLLS OUT WHITE-LABEL MCP SERVER FOR PROPERTY PORTALS AND MLS OPERATORS

BEAGEL ROLLS OUT WHITE-LABEL MCP SERVER FOR PROPERTY PORTALS AND MLS OPERATORS

Irish proptech makes AI-agent-ready transaction infrastructure available as standard in every client deployment.

March 19, 2026

Economic Times Features Commverse Global CEO; Highlights India’s Growing Leadership in AI for Global Commodity Trading

Economic Times Features Commverse Global CEO; Highlights India’s Growing Leadership in AI for Global Commodity Trading

Economic Times features Commverse Global CEO Sanjay Singla, spotlighting Cogito AI and India’s rise in practical,

March 19, 2026

The Future of Distribution: Insights from a China Leading Secondary Bushing Supplier and IEC Certified Partner

The Future of Distribution: Insights from a China Leading Secondary Bushing Supplier and IEC Certified Partner

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — The global power landscape is undergoing a profound

March 19, 2026

SUVELL at IEEE PES T&D: Showcasing Excellence as a China Top Low Voltage Transformer Bushing Manufacturer

SUVELL at IEEE PES T&D: Showcasing Excellence as a China Top Low Voltage Transformer Bushing Manufacturer

WENZHOU, ZHEJIANG, CHINA, March 19, 2026 /EINPresswire.com/ — The global power distribution landscape is undergoing a

March 19, 2026

MSPs eye sustained revenue growth from hybrid IT, Westcon-Comstor finds

MSPs eye sustained revenue growth from hybrid IT, Westcon-Comstor finds

Global study shows cloud management and security lead commercial opportunities as partners move beyond deployment The

March 19, 2026

UK Breaking News24x7 Launches Updated Digital News Platform Covering UK Headlines

UK Breaking News24x7 Launches Updated Digital News Platform Covering UK Headlines

UK Breaking News24x7 announced an updated online news platform designed to publish UK-focused headlines and

March 19, 2026

Jasmine: China Top Glass Bottle Manufacturer Linking the Global Shift Toward Premium and Sustainable Packaging

Jasmine: China Top Glass Bottle Manufacturer Linking the Global Shift Toward Premium and Sustainable Packaging

SHANDONG, SHANDONG, CHINA, March 19, 2026 /EINPresswire.com/ — Jasmine: China Top Glass Bottle Manufacturer Leading

March 19, 2026

China-Based Smooth Speed Air Jet Mill Supplier Announces New Micro-Powder Processing Innovations

China-Based Smooth Speed Air Jet Mill Supplier Announces New Micro-Powder Processing Innovations

WEIFANG, SHANDONG, CHINA, March 19, 2026 /EINPresswire.com/ — The global industrial sector is currently witnessing a

March 19, 2026

2026 North American Inspiring Workplaces Awards Finalists in association with Engagedly announced

2026 North American Inspiring Workplaces Awards Finalists in association with Engagedly announced

World’s #1 PeopleFirst HR & Workplaces Awards – finalists include: COS, Equifax, Hitachi Energy, Macmillan

March 19, 2026