This page contains press release content distributed by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

ClawHavoc Malware Found in 539 OpenClaw Skills, ClawSecure Reports

Audit identifies credential harvesting, C2 callbacks, and data exfiltration patterns across 18.7% of the most popular OpenClaw agent skills, ClawSecure reports

ClawSecure’s audit found ClawHavoc indicators in 539 of the most popular OpenClaw skills. The ecosystem needs continuous monitoring infrastructure, not one-time scans. Watchtower delivers that.”
— J.D. Salbego, Founder of ClawSecure

SAN FRANCISCO, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — 539 popular OpenClaw skills, representing 18.7% of the ecosystem’s most widely installed agents, contain indicators of the ClawHavoc malware campaign, according to an independent audit by ClawSecure (https://www.clawsecure.ai). The audited skills were drawn from the community-curated awesome-openclaw-skills list and the openclaw/skills repository, covering 2,890+ of the most popular agents in the OpenClaw ecosystem. ClawSecure’s findings confirm that the ClawHavoc threat extends well beyond the initial discoveries reported by security researchers in January 2026, when the campaign was first identified targeting OpenClaw users through professionally disguised skills on ClawHub.

ClawHavoc is a coordinated malware campaign targeting the OpenClaw ecosystem through skills that appear legitimate but perform credential harvesting, establish command-and-control (C2) callbacks to external servers, and exfiltrate sensitive data via relay services. The campaign is notable for its operational discipline and social engineering. ClawHavoc skills are carefully designed to mimic high-demand categories including productivity tools, development utilities, and automation workflows, making them difficult to distinguish from legitimate skills through manual review alone. Once installed, a ClawHavoc-infected skill can silently harvest API keys, OAuth tokens, and messaging credentials stored in OpenClaw’s configuration files, then transmit them to attacker-controlled infrastructure.

ClawSecure has conducted the largest independent analysis of ClawHavoc indicators in the OpenClaw ecosystem, with 539 confirmed findings across 2,890+ audited skills and the only public, searchable registry of affected agents. ClawSecure’s proprietary behavioral engine, which includes 55+ threat patterns purpose-built for OpenClaw, independently identified these indicators through automated analysis. The findings complement earlier research by Koi Security while providing quantitative scope data that was previously unavailable to the OpenClaw community.

“ClawHavoc is not a theoretical threat. It is active, widespread, and specifically engineered for the OpenClaw ecosystem,” said J.D. Salbego, Founder of ClawSecure. “When nearly one in five of the most popular skills show malware indicators, the ecosystem needs continuous monitoring infrastructure, not one-time scans. That is exactly what our Watchtower delivers.”

ClawSecure’s detection capabilities address what Palo Alto Networks (2026) identified as the “Lethal Trifecta” of agentic AI risks: the combination of access to private data, exposure to untrusted content, and the ability to execute tools on the user’s behalf. OpenClaw agents routinely access the file system, execute shell commands, read browser data, control messaging platforms, and make network calls on the user’s behalf. A ClawHavoc-infected skill exploits every one of these capabilities, turning the agent’s legitimate permissions into an attack vector. ClawSecure’s 3-Layer Audit Protocol traces execution paths and data flows across tool-calling chains, identifying skills that exploit this trifecta for malicious purposes.

ClawSecure’s Context-Aware Intelligence is essential for accurate ClawHavoc detection. Generic malware scanners flag legitimate OpenClaw agent capabilities like shell execution, clipboard access, and network calls as suspicious, generating false positives that make the results unusable for developers. ClawSecure understands that these capabilities are standard for useful OpenClaw agents and evaluates them in ecosystem context, differentiating real ClawHavoc indicators from normal agent functionality. ClawSecure’s audit of Peter Steinberger’s flagship skill, peekaboo, scored it 95 out of 100, correctly identifying its system-level capabilities as standard functionality while flagging actual threats in other skills with similar permission profiles.

ClawSecure’s Watchtower monitoring system adds a critical layer of ongoing protection against evolving ClawHavoc variants. The system tracks code changes across all 2,890+ registered skills using SHA-256 hash comparisons, automatically triggering a full re-audit through the 3-Layer Audit Protocol whenever a modification is detected. ClawSecure’s Watchtower has already identified 661 code changes across the registry, catching cases where previously clean skills were updated to include suspicious behavior patterns consistent with ClawHavoc tactics. This continuous monitoring addresses the “sleeper agent” risk where a skill passes an initial review but is later modified to include malicious behavior, a tactic increasingly used by threat actors to bypass one-time security scans.
ClawSecure’s broader audit of the OpenClaw ecosystem found that 41% of all 2,890+ audited skills contain at least one security vulnerability, with 9,515 total findings identified. Beyond ClawHavoc, ClawSecure identified widespread supply chain risks including unpinned npm dependencies, credential exposure, unauthorized network calls, excessive permission requests, and ReDoS vulnerabilities. ClawSecure achieves comprehensive coverage across all 10 OWASP ASI Top 10 categories and is the first OpenClaw security platform to publish formal NIST AI Risk Management Framework alignment documentation, available at the Trust Center (https://www.clawsecure.ai/trust).

For organizations building agent marketplaces or identity platforms, ClawSecure’s Security Clearance API provides programmatic access to real-time integrity verdicts, enabling automated blocking of skills exhibiting ClawHavoc indicators before they reach end users. Identity platforms such as Moltbook, with its 2.2 million agents, can integrate ClawSecure’s integrity verification to complement their creator identity and reputation systems, forming the complete trust stack the agentic ecosystem requires. OpenClaw users concerned about malware in their installed skills can check any skill for ClawHavoc indicators using ClawSecure’s free scanner, which delivers a full security audit report in under 30 seconds at https://www.clawsecure.ai. Detailed findings for all 2,890+ audited skills are accessible through the ClawSecure security registry (https://www.clawsecure.ai/registry). Organizations can also review ClawSecure’s full ClawHavoc analysis at https://www.clawsecure.ai/blog/clawhavoc-explained.

ClawSecure (https://www.clawsecure.ai) is the independent integrity layer for AI agent skills and workflows and the only free OpenClaw security scanner with full OWASP ASI Top 10 coverage. Built on a proprietary 3-Layer Audit Protocol, ClawSecure has audited 2,890+ OpenClaw agents from the community-curated awesome-openclaw-skills list and the openclaw/skills repository. The platform includes 24/7 Watchtower hash-drift monitoring, a Security Clearance API for marketplace and identity platform integration, and a public security registry. Founded by J.D. Salbego.

Paul Bateman
ClawSecure, Inc
email us here
Visit us on social media:
LinkedIn
YouTube
X

ClawSecure OpenClaw Security Scanner: Free AI Agent Audit with ClawHavoc Detection

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

Award-Winning Author Mona Liza Santos Honored by City & Community Leaders for Promoting Kindness and Emotional Literacy

Award-Winning Author Mona Liza Santos Honored by City & Community Leaders for Promoting Kindness and Emotional Literacy

Author Mona Liza Santos earns community recognition for championing kindness and emotional literacy through children’s

March 18, 2026

Factor’s Sensemaker Academy Named Winner for Best Tech Training Program at Legalweek

Factor’s Sensemaker Academy Named Winner for Best Tech Training Program at Legalweek

Recognition honors an AI training program that has helped 4,000 lawyers build practical legal AI capability. This

March 18, 2026

Denny LaVé Named One of IAOTP’S Top 50 Fearless Leaders

Denny LaVé Named One of IAOTP’S Top 50 Fearless Leaders

The International Association of Top Professionals (IAOTP) will honor Denny LaVé at their annual awards gala in NYC at

March 18, 2026

Apex Companies, LLC Acquires CWE

Apex Companies, LLC Acquires CWE

Complements service offerings with added strength in engineering capabilities in civil infrastructure, water resources

March 18, 2026

DiBooq Expands Its Vacation Rental Channel Manager with Seasonal and Global Booking Conditions

DiBooq Expands Its Vacation Rental Channel Manager with Seasonal and Global Booking Conditions

DiBooq expands its vacation rental channel manager with seasonal and global booking conditions, helping hosts manage

March 18, 2026

J Dubb Tha King Brings High-Energy Performance to Phoenix Alongside Yukmouth of The Luniz for Unforgettable Live Show

J Dubb Tha King Brings High-Energy Performance to Phoenix Alongside Yukmouth of The Luniz for Unforgettable Live Show

Blending Legacy and New Wave Energy in One Unforgettable Live Experience This show has been a long time coming. We want

March 18, 2026

Durham School Services’ Charli Sanders Wins Trailblazer Award for Leadership and Dedication to Student Transportation

Durham School Services’ Charli Sanders Wins Trailblazer Award for Leadership and Dedication to Student Transportation

I am grateful to work for leadership at Durham School Services that values the exploration of multiple ideas. Thank you

March 18, 2026

enQase Making Quantum Security Splash at RSA Conference 2026

enQase Making Quantum Security Splash at RSA Conference 2026

Platform innovations, thought leadership interviews, and industry engagement highlight enQase momentum in quantum-safe

March 18, 2026

SparrowDesk Launches Startup Program with Up to 90% Off on Enterprise Plan

SparrowDesk Launches Startup Program with Up to 90% Off on Enterprise Plan

SparrowDesk’s new startup program offers Startups its Enterprise plan to manage support end-to-end, powered by AI;

March 18, 2026

Telewave.io Launches Sentinel at IWCE 2026

Telewave.io Launches Sentinel at IWCE 2026

Turnkey private networks for mission-critical operations — LMR today, broadband-ready tomorrow, and AI now LAS VEGAS,

March 18, 2026

The State of TV 2026 Report Finds Streaming Dominates Viewing While Cable Retains Sports-Driven Staying Power

The State of TV 2026 Report Finds Streaming Dominates Viewing While Cable Retains Sports-Driven Staying Power

Jan 2026 CableTV.com survey of 1,000 U.S. adults: 92% streaming adoption, $30 avg streaming bill, $147 cable bill, with

March 18, 2026

Epoxy Floors NJ Announces Enhanced High-Performance Coating Solutions to Meet Growing Industrial Demand in New Jersey

Epoxy Floors NJ Announces Enhanced High-Performance Coating Solutions to Meet Growing Industrial Demand in New Jersey

Enhanced High-Performance Coating Solutions By optimizing our formulas for local environmental factors—like humidity

March 18, 2026

19 North Houston Children’s Choir Students Earn Spot in Elite TCDA Honor Choir

19 North Houston Children’s Choir Students Earn Spot in Elite TCDA Honor Choir

Being selected for the state choir is an extraordinary accomplishment and a testament to their dedication, the support

March 18, 2026

NORRØNA ADVENTURE’S VARG SAIL YACHT FEATURED IN TIME’S ANNUAL LIST OF THE WORLD’S GREATEST PLACES

NORRØNA ADVENTURE’S VARG SAIL YACHT FEATURED IN TIME’S ANNUAL LIST OF THE WORLD’S GREATEST PLACES

We’re proud to see Varg celebrated on a global stage as we continue transporting guests into the remote fjords of

March 18, 2026

Wag Atlanta Launches New Basic Training Program to Help Dogs Build Skills, Confidence, and Improve Listening

Wag Atlanta Launches New Basic Training Program to Help Dogs Build Skills, Confidence, and Improve Listening

COLLEGE PARK, GA, UNITED STATES, March 18, 2026 /EINPresswire.com/ — Wag Atlanta is excited to introduce its new Basic

March 18, 2026

The Gold Standard of Full-Arch Consulting Just Got Official

The Gold Standard of Full-Arch Consulting Just Got Official

Greg Essenmacher Named Industry Leader, Wins Consultant of the Year, and Co-Authors the Definitive Textbook Chapter on

March 18, 2026

High Performance Systems Sets New Standard for Commercial Epoxy Flooring Across New Jersey with Advanced Engineering

High Performance Systems Sets New Standard for Commercial Epoxy Flooring Across New Jersey with Advanced Engineering

New Standard for Commercial Epoxy Flooring By focusing on ownership and excellence in every square foot, we help local

March 18, 2026

Influential Women Launch Emotional Wealth Masterclass High Achiever Recognize Emotional Overdraft Before It Becomes Debt

Influential Women Launch Emotional Wealth Masterclass High Achiever Recognize Emotional Overdraft Before It Becomes Debt

The framework reveals how seamless execution masks quiet depletion—and how to rebuild emotional wealth. ST. PETERSBURG,

March 18, 2026

Gameday CBD Earns NSF’S Certified for Sport® Certification

Gameday CBD Earns NSF’S Certified for Sport® Certification

Ensuring the American consumer a trusted, third party–tested topical CBD solution free from banned substances RENO, NV,

March 18, 2026

Finley’s Expands Product Line to Include Premium Pet Food

Finley’s Expands Product Line to Include Premium Pet Food

“Treat with Kindness, Feed with Purpose” Launching these new product lines reflects our ongoing commitment to

March 18, 2026

National Academy of Athletics Expands to Wake County, North Carolina with New Franchise Owner Quincy McKinney Jr.

National Academy of Athletics Expands to Wake County, North Carolina with New Franchise Owner Quincy McKinney Jr.

Youth sports leader Coach McKinney brings NAofA's mission of building healthy bodies and happy hearts to the Raleigh

March 18, 2026

Colorado Springs Mortgage Expert Jason Ruedy Discusses DSCR Loans for Real Estate Investors

Colorado Springs Mortgage Expert Jason Ruedy Discusses DSCR Loans for Real Estate Investors

Colorado Springs Mortgage Expert Jason Ruedy “The Home Loan Arranger” Explains How DSCR Loans Help Investors

March 18, 2026

NVBDC Certification Positions Veteran-Owned Businesses for Growth in a $122 Billion Corporate Procurement Marketplace

NVBDC Certification Positions Veteran-Owned Businesses for Growth in a $122 Billion Corporate Procurement Marketplace

NVBDC certification connects veteran-owned businesses to a $122 billion corporate procurement marketplace and billions

March 18, 2026

SMX Secures the Backbone of the Global Critical Minerals Economy

SMX Secures the Backbone of the Global Critical Minerals Economy

NEW YORK CITY, NY / ACCESS Newswire / March 18, 2026 / As demand for rare earth elements and critical minerals

March 18, 2026

Clean Pro Gutter Cleaning Introduces Surgical-Grade Stainless Steel Gutter Guard

Clean Pro Gutter Cleaning Introduces Surgical-Grade Stainless Steel Gutter Guard

Type 304 stainless steel micro-mesh gutter guard addresses material failures in aluminum alternatives with 98% water

March 18, 2026

EPC Group Earns Perfect G2 Scores in Business Intelligence Consulting for Spring 2026

EPC Group Earns Perfect G2 Scores in Business Intelligence Consulting for Spring 2026

Firm achieves perfect Net Promoter Score and Expertise of Team rating, ranking top five in Market Presence on the G2

March 18, 2026

Bolin Services Incorporated and The Bolin Alley Podcast Rally Community Support for Families Facing Critical Hardships

Bolin Services Incorporated and The Bolin Alley Podcast Rally Community Support for Families Facing Critical Hardships

Uniting Communities Through The BOLIN Alley Podcast to Deliver Hope, Healing, and Direct Financial Relief When someone

March 18, 2026

Official Trailer | Good Children Say Grace | Japanese Talent From Serial Experiments Lain, Demon Slayer, and Metal Gear

Official Trailer | Good Children Say Grace | Japanese Talent From Serial Experiments Lain, Demon Slayer, and Metal Gear

A first-person absurdist psychological horror adventure. Seiyuu Kaori Shimizu, vocalist Nami Nakagawa, VO director

March 18, 2026

RAY LEWIS JOINS BALTIMORE COUNTY PUBLIC SCHOOLS AND COMMUNITY PARTNERS TO SHOWCASE YOUTH WELLNESS PARTNERSHIP MODEL

RAY LEWIS JOINS BALTIMORE COUNTY PUBLIC SCHOOLS AND COMMUNITY PARTNERS TO SHOWCASE YOUTH WELLNESS PARTNERSHIP MODEL

BALTIMORE, MD, UNITED STATES, March 18, 2026 /EINPresswire.com/ — NFL Hall of Famer Ray Lewis will return to Baltimore

March 18, 2026

Angus Reid adds two senior vice presidents of research

Angus Reid adds two senior vice presidents of research

Rohit Nair and Amy Knowles bring decades of combined strategic research expertise to Canada’s leading research

March 18, 2026

American Receivable Celebrates 47 Years of Excellence in Invoice Factoring

American Receivable Celebrates 47 Years of Excellence in Invoice Factoring

DALLAS, TX, UNITED STATES, March 18, 2026 /EINPresswire.com/ — American Receivable Corporation proudly announces its

March 18, 2026

Press Hustle Debuts at SXSW 2026, Giving Founders a System to Earn Media Coverage

Press Hustle Debuts at SXSW 2026, Giving Founders a System to Earn Media Coverage

AUSTIN, TX, UNITED STATES, March 18, 2026 /EINPresswire.com/ — A new platform built to help startups, creators and

March 18, 2026

PERLA GLOBAL CAPITAL ADVISOURS ANNOUNCES STRATEGIC INVESTMENT COLLABORATION ISTANBUL, TURKEY

PERLA GLOBAL CAPITAL ADVISOURS ANNOUNCES STRATEGIC INVESTMENT COLLABORATION ISTANBUL, TURKEY

THIS IS A STRATEGIC INVESMENT COLLABORATON TO EXPAND OUR GLOBAL MARKETS AND FUNDING CAPABILITIES”— Fernando Serrano,

March 18, 2026

Former Miss Idaho and Coeur d’Alene Fashion Week Founder Kit Lucas Signs With EKC PR

Former Miss Idaho and Coeur d’Alene Fashion Week Founder Kit Lucas Signs With EKC PR

Fashion entrepreneur and storyteller expands her work from the runway to film and television. LOS ANGELES, CA, UNITED

March 18, 2026

63% of Estate Planning Law Firms Withhold Fees, Creating Transparency Gap

63% of Estate Planning Law Firms Withhold Fees, Creating Transparency Gap

Nationwide analysis of 909 law firms reveals major transparency gaps and wide price variation between firms.

March 18, 2026

Jason Ruedy ‘The Home Loan Arranger’ Says Investors Use DSCR Loans to Consolidate Debt and Leverage Rental Income

Jason Ruedy ‘The Home Loan Arranger’ Says Investors Use DSCR Loans to Consolidate Debt and Leverage Rental Income

Denver Mortgage Expert Jason Ruedy “The Home Loan Arranger” Explains How DSCR Loans Help Real Estate Investors

March 18, 2026

Glow.B Unveils AEO And GEO Solutions for the Generative AI Search Era

Glow.B Unveils AEO And GEO Solutions for the Generative AI Search Era

BYAHT Inc. launches Glow.B’s AEO and GEO services to help brands secure visibility in AI-generated answers from

March 18, 2026

New Report Reveals AI Data Curation Market to Hit $253 Billion by 2030 as Industry Shifts to ‘Work Phase’

New Report Reveals AI Data Curation Market to Hit $253 Billion by 2030 as Industry Shifts to ‘Work Phase’

AI data curation will hit $253B by 2030. As "dirty data" costs firms $12.9M , shifting to agentic memory and synthetic

March 18, 2026

Junk Removal Owner Launches Free National Directory to Help Independent Haulers Get Customers Without Lead-Gen Platforms

Junk Removal Owner Launches Free National Directory to Help Independent Haulers Get Customers Without Lead-Gen Platforms

Junk Removal 365 connects homeowners directly with local junk removal companies—no shared leads, no commissions, no

March 18, 2026

HARRY KAZAKIAN SELECTED AS TOP 50 FEARLESS LEADERS BY IAOTP

HARRY KAZAKIAN SELECTED AS TOP 50 FEARLESS LEADERS BY IAOTP

The International Association of Top Professionals (IAOTP) will honor Harry Kazakian at their annual awards gala in NYC

March 18, 2026