Svmuu News As of March 31, 2026, public intelligence indicates that [email protected] and [email protected] have been confirmed as malicious versions. Both have been implanted with an additional dependency, [email protected], which can deliver cross-platform malicious payloads via a postinstall script.
The impact of this incident on OpenClaw needs to be assessed based on different scenarios:
1) Source Code Build Scenario: Not Affected
The lockfile for v2026.3.28 actually locks [email protected] / 1.13.6, which are not the malicious versions.
2) Scenario of `npm install -g [email protected]`: Historical Exposure Risk Exists
The reason is that the dependency chain contains: openclaw -> @line/[email protected] -> optionalDependencies.axios@^1.7.4. During the time window when the malicious version was still online, it could have been resolved to [email protected].
3) Current Reinstallation Result: npm has rolled back resolution to [email protected]
However, for environments that were installed during the attack window, it is still recommended to treat them as affected scenarios and investigate for IoCs (Indicators of Compromise).
Furthermore, SlowMist warns that if the plain-crypto-js directory is found, even if its package.json has been cleaned, it should be considered a high-risk execution artifact. For hosts that executed `npm install` or `npm install -g [email protected]` during the attack window, it is recommended to immediately rotate credentials and conduct host-side investigations.
SlowMist: Beware of Malicious Versions of Axios 1.14.1 / 0.30.4 and Historical Exposure Risk from Global Installation of OpenClaw via npm
Source:Odaily · Source Link
Disclaimer: This content reflects only the author’s personal views and does not constitute any investment or financial advice. If you discover any content that violates regulations,Click to Report
24H Trending
-
1
Billionaire investor Chase Coleman’s Tiger Global fund disclosed in its latest 13F filing that its top five growth stocks are all focused on AI infrastructure, including TSMC, NVIDIA, Amazon, Meta, and Google.
-
2
Will the BEAM token go to zero? Could it rise to $1,000? An in-depth analysis of the Beam network and its market prospects
-
3
Analysis of CRYSTAL’s Value and Investment Potential: An Examination of Multiple Projects and Risk Assessment
-
4
What Is CVP? An In-Depth Analysis of the PowerPool Ecosystem and the Investment Value of Its Token, CVP
-
5
Analysis: The State Street Healthcare ETF (XLV) has an expense ratio of 0.08% and a diversified portfolio, while the Invesco Biotechnology ETF (PBE) has an expense ratio of 0.58% and focuses on small-cap stocks; PBE is up 10.2% year-to-date, outperforming XLV.
-
6
QUARTZ Coin Analysis: An Overview of the Sandclock (QUARTZ) and Unique Network’s Quartz (QTZ) Projects
-
7
Ethereum Recent Rebound: Price Breaks Above $1,970, but Multiple Risks Remain
-
8
MARA Stock Valuation Analysis: Marathon Digital Holdings’ Transition to AI and Long-Term Investment Outlook
-
9
What Is JGN? Analysis of the JGN (Sword Saint Coin) Project’s Positioning, Features, and Value
-
10
NVIDIA and AMD: The Two Giants of AI Computing Power in 2026—An Analysis of Market Dynamics, Financial Performance, and Opportunities for Transition into Cryptocurrency Mining
Markets Today
Recommended Reading










