Svmuu News As of March 31, 2026, public intelligence indicates that [email protected] and [email protected] have been confirmed as malicious versions. Both have been implanted with an additional dependency, [email protected], which can deliver cross-platform malicious payloads via a postinstall script.
The impact of this incident on OpenClaw needs to be assessed based on different scenarios:
1) Source Code Build Scenario: Not Affected
The lockfile for v2026.3.28 actually locks [email protected] / 1.13.6, which are not the malicious versions.
2) Scenario of `npm install -g [email protected]`: Historical Exposure Risk Exists
The reason is that the dependency chain contains: openclaw -> @line/[email protected] -> optionalDependencies.axios@^1.7.4. During the time window when the malicious version was still online, it could have been resolved to [email protected].
3) Current Reinstallation Result: npm has rolled back resolution to [email protected]
However, for environments that were installed during the attack window, it is still recommended to treat them as affected scenarios and investigate for IoCs (Indicators of Compromise).
Furthermore, SlowMist warns that if the plain-crypto-js directory is found, even if its package.json has been cleaned, it should be considered a high-risk execution artifact. For hosts that executed `npm install` or `npm install -g [email protected]` during the attack window, it is recommended to immediately rotate credentials and conduct host-side investigations.
SlowMist: Beware of Malicious Versions of Axios 1.14.1 / 0.30.4 and Historical Exposure Risk from Global Installation of OpenClaw via npm
No AI analysis yet. Tap the "AI Analysis" button above to generate one now.
Source:Odaily · Source Link
Disclaimer: This content reflects only the author’s personal views and does not constitute any investment or financial advice. If you discover any content that violates regulations,Click to Report
24H Trending
-
1
SK hynix in talks with Intel over potential US memory production agreement
-
2
Fetch.ai (FET) Token Analysis: Project Status and Investment Considerations
-
3
XLM Price Analysis: Stellar Lumens' Positioning, Progress, and Market Outlook
-
4
Bybit to adjust risk limits and leverage for selected perpetual contracts including 1000XECUSDT and BLASTUSDT, effective Sep 18, 2026
-
5
Zhipu AI's CoWork business in China is progressing rapidly, with industry orders exceeding 1 billion yuan within one month of GLM-5.3's release.
-
6
Anthropic, after calling for an AI slowdown, has signed its first data center lease in Australia, planning a total capacity of 2.16 GW.
-
7
MCG Coin Analysis: The Current Status and Prospects of MetalCore, Microcap Gem, and MicroChains Gov Token
-
8
Nikkei: Japan's MUFG Bank to Introduce Guidelines for Financing Defense Industry
-
9
Turkish Stocks Fall More Than 5% Amid Deepening Fund Redemption Woes
-
10
Markets are cautiously optimistic ahead of the Federal Reserve's decision, with U.S. Treasuries slightly stronger, crude oil gains narrowing, and equity index futures holding steady.
Markets Today
Recommended Reading





