This page contains press release content distributed by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

ClawHavoc Malware Found in 539 OpenClaw Skills, ClawSecure Reports

Audit identifies credential harvesting, C2 callbacks, and data exfiltration patterns across 18.7% of the most popular OpenClaw agent skills, ClawSecure reports

ClawSecure’s audit found ClawHavoc indicators in 539 of the most popular OpenClaw skills. The ecosystem needs continuous monitoring infrastructure, not one-time scans. Watchtower delivers that.”
— J.D. Salbego, Founder of ClawSecure

SAN FRANCISCO, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — 539 popular OpenClaw skills, representing 18.7% of the ecosystem’s most widely installed agents, contain indicators of the ClawHavoc malware campaign, according to an independent audit by ClawSecure (https://www.clawsecure.ai). The audited skills were drawn from the community-curated awesome-openclaw-skills list and the openclaw/skills repository, covering 2,890+ of the most popular agents in the OpenClaw ecosystem. ClawSecure’s findings confirm that the ClawHavoc threat extends well beyond the initial discoveries reported by security researchers in January 2026, when the campaign was first identified targeting OpenClaw users through professionally disguised skills on ClawHub.

ClawHavoc is a coordinated malware campaign targeting the OpenClaw ecosystem through skills that appear legitimate but perform credential harvesting, establish command-and-control (C2) callbacks to external servers, and exfiltrate sensitive data via relay services. The campaign is notable for its operational discipline and social engineering. ClawHavoc skills are carefully designed to mimic high-demand categories including productivity tools, development utilities, and automation workflows, making them difficult to distinguish from legitimate skills through manual review alone. Once installed, a ClawHavoc-infected skill can silently harvest API keys, OAuth tokens, and messaging credentials stored in OpenClaw’s configuration files, then transmit them to attacker-controlled infrastructure.

ClawSecure has conducted the largest independent analysis of ClawHavoc indicators in the OpenClaw ecosystem, with 539 confirmed findings across 2,890+ audited skills and the only public, searchable registry of affected agents. ClawSecure’s proprietary behavioral engine, which includes 55+ threat patterns purpose-built for OpenClaw, independently identified these indicators through automated analysis. The findings complement earlier research by Koi Security while providing quantitative scope data that was previously unavailable to the OpenClaw community.

“ClawHavoc is not a theoretical threat. It is active, widespread, and specifically engineered for the OpenClaw ecosystem,” said J.D. Salbego, Founder of ClawSecure. “When nearly one in five of the most popular skills show malware indicators, the ecosystem needs continuous monitoring infrastructure, not one-time scans. That is exactly what our Watchtower delivers.”

ClawSecure’s detection capabilities address what Palo Alto Networks (2026) identified as the “Lethal Trifecta” of agentic AI risks: the combination of access to private data, exposure to untrusted content, and the ability to execute tools on the user’s behalf. OpenClaw agents routinely access the file system, execute shell commands, read browser data, control messaging platforms, and make network calls on the user’s behalf. A ClawHavoc-infected skill exploits every one of these capabilities, turning the agent’s legitimate permissions into an attack vector. ClawSecure’s 3-Layer Audit Protocol traces execution paths and data flows across tool-calling chains, identifying skills that exploit this trifecta for malicious purposes.

ClawSecure’s Context-Aware Intelligence is essential for accurate ClawHavoc detection. Generic malware scanners flag legitimate OpenClaw agent capabilities like shell execution, clipboard access, and network calls as suspicious, generating false positives that make the results unusable for developers. ClawSecure understands that these capabilities are standard for useful OpenClaw agents and evaluates them in ecosystem context, differentiating real ClawHavoc indicators from normal agent functionality. ClawSecure’s audit of Peter Steinberger’s flagship skill, peekaboo, scored it 95 out of 100, correctly identifying its system-level capabilities as standard functionality while flagging actual threats in other skills with similar permission profiles.

ClawSecure’s Watchtower monitoring system adds a critical layer of ongoing protection against evolving ClawHavoc variants. The system tracks code changes across all 2,890+ registered skills using SHA-256 hash comparisons, automatically triggering a full re-audit through the 3-Layer Audit Protocol whenever a modification is detected. ClawSecure’s Watchtower has already identified 661 code changes across the registry, catching cases where previously clean skills were updated to include suspicious behavior patterns consistent with ClawHavoc tactics. This continuous monitoring addresses the “sleeper agent” risk where a skill passes an initial review but is later modified to include malicious behavior, a tactic increasingly used by threat actors to bypass one-time security scans.
ClawSecure’s broader audit of the OpenClaw ecosystem found that 41% of all 2,890+ audited skills contain at least one security vulnerability, with 9,515 total findings identified. Beyond ClawHavoc, ClawSecure identified widespread supply chain risks including unpinned npm dependencies, credential exposure, unauthorized network calls, excessive permission requests, and ReDoS vulnerabilities. ClawSecure achieves comprehensive coverage across all 10 OWASP ASI Top 10 categories and is the first OpenClaw security platform to publish formal NIST AI Risk Management Framework alignment documentation, available at the Trust Center (https://www.clawsecure.ai/trust).

For organizations building agent marketplaces or identity platforms, ClawSecure’s Security Clearance API provides programmatic access to real-time integrity verdicts, enabling automated blocking of skills exhibiting ClawHavoc indicators before they reach end users. Identity platforms such as Moltbook, with its 2.2 million agents, can integrate ClawSecure’s integrity verification to complement their creator identity and reputation systems, forming the complete trust stack the agentic ecosystem requires. OpenClaw users concerned about malware in their installed skills can check any skill for ClawHavoc indicators using ClawSecure’s free scanner, which delivers a full security audit report in under 30 seconds at https://www.clawsecure.ai. Detailed findings for all 2,890+ audited skills are accessible through the ClawSecure security registry (https://www.clawsecure.ai/registry). Organizations can also review ClawSecure’s full ClawHavoc analysis at https://www.clawsecure.ai/blog/clawhavoc-explained.

ClawSecure (https://www.clawsecure.ai) is the independent integrity layer for AI agent skills and workflows and the only free OpenClaw security scanner with full OWASP ASI Top 10 coverage. Built on a proprietary 3-Layer Audit Protocol, ClawSecure has audited 2,890+ OpenClaw agents from the community-curated awesome-openclaw-skills list and the openclaw/skills repository. The platform includes 24/7 Watchtower hash-drift monitoring, a Security Clearance API for marketplace and identity platform integration, and a public security registry. Founded by J.D. Salbego.

Paul Bateman
ClawSecure, Inc
email us here
Visit us on social media:
LinkedIn
YouTube
X

ClawSecure OpenClaw Security Scanner: Free AI Agent Audit with ClawHavoc Detection

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

Hydraulic Industry Spotlight: Top Directional Valve Manufacturers and Technological Advancements

Hydraulic Industry Spotlight: Top Directional Valve Manufacturers and Technological Advancements

SHIJIAZHUANG CITY, HEBEI PROVINCE, CHINA, March 18, 2026 /EINPresswire.com/ — Directional valves serve as the critical

March 18, 2026

Innovation and Expansion: Insights into Top Powder Filling Machine Manufacturers

Innovation and Expansion: Insights into Top Powder Filling Machine Manufacturers

SHANGHAI CITY, CHINA, March 18, 2026 /EINPresswire.com/ — The global powder filling machine market continues to grow

March 18, 2026

John Craig Establishes One of the Fastest-Growing Insurance Agencies in Freehold, New Jersey

John Craig Establishes One of the Fastest-Growing Insurance Agencies in Freehold, New Jersey

John Craig, owner of Craig Financial Group, LLC, has rapidly positioned his agency as one of the fastest-growing

March 18, 2026

Advanced Cleaning Service Highlights Professional Area Rug Cleaning Services for Specialty Rugs

Advanced Cleaning Service Highlights Professional Area Rug Cleaning Services for Specialty Rugs

Area rugs can be some of the most valuable and delicate pieces in a home, our goal is to provide a cleaning process

March 18, 2026

‘The Basalt Door: Utah to Eden’ by Donald Paul Brown Jr. Now Available on Amazon

‘The Basalt Door: Utah to Eden’ by Donald Paul Brown Jr. Now Available on Amazon

Adventure and mystery collide as four friends uncover a hidden basalt gateway leading to a dangerous primordial world

March 18, 2026

Truelist Launches Unlimited Email Validation at a Fixed Monthly Price

Truelist Launches Unlimited Email Validation at a Fixed Monthly Price

Email marketers and developers can now validate unlimited emails with no credits or overages — starting at $39/month,

March 18, 2026

Western NY Employment Attorney Launches Advice Series on Protecting Your Livelihood in the Age of AI

Western NY Employment Attorney Launches Advice Series on Protecting Your Livelihood in the Age of AI

Survival Guide Series Targets AI Impact and “Robot-Bosses” for Rochester and Buffalo Workers. This series isn't just

March 18, 2026

Texas King Haul LLC Expands Dump Truck and Material Delivery Services Across Houston Construction Market

Texas King Haul LLC Expands Dump Truck and Material Delivery Services Across Houston Construction Market

Houston-based company provides dirt haul-off services, sand delivery, select fill delivery, & dump truck services

March 18, 2026

Sabira Arefin to Launch Ethical Intelligence: A Blueprint for Embedding Accountability into AI Systems

Sabira Arefin to Launch Ethical Intelligence: A Blueprint for Embedding Accountability into AI Systems

Upcoming book challenges institutions to redesign artificial intelligence with governance at its core. BOCA RATON, FL,

March 18, 2026

Airport Transportation Reaches All Five Continents Through Global Transportation Partner Network

Airport Transportation Reaches All Five Continents Through Global Transportation Partner Network

MIAMI, Mar. 16, 2026 / PRZen / Airport Transportation through AirportTransportation.com the rapidly growing global

March 18, 2026

Innovative Environmental Technologies Unveils New Website Featuring Free AI Tools for the Environmental Industry

Innovative Environmental Technologies Unveils New Website Featuring Free AI Tools for the Environmental Industry

New digital platform highlights IET's leadership in remediation and drilling while introducing free AI-powered tools

March 18, 2026

Ink Tees Custom T-Shirts Strengthens Custom Apparel Solutions in Oakland County

Ink Tees Custom T-Shirts Strengthens Custom Apparel Solutions in Oakland County

Ink Tees Custom T-Shirts supports schools, sports teams, and organizations with premium custom apparel, flexible

March 18, 2026

Webmaster Pub Expands E-Commerce Solutions Across Winterthur and Zurich Regions

Webmaster Pub Expands E-Commerce Solutions Across Winterthur and Zurich Regions

WINTERTHUR, CH – March 18, 2026 – PRESSADVANTAGE – Webmaster Pub, a professional web design company based in

March 18, 2026

LSA Launches SmartCheck: The First Real-Time Insurance Validation Tool for Interpretation Services

LSA Launches SmartCheck: The First Real-Time Insurance Validation Tool for Interpretation Services

LSA SmartCheck is the first real-time insurance validation tool, providing health plans instant coverage checks,

March 18, 2026

Telly and Amlogic Partner to Power the First AI-Ready, Dual-Screen Television Platform Built for the Connected Home

Telly and Amlogic Partner to Power the First AI-Ready, Dual-Screen Television Platform Built for the Connected Home

LOS ANGELES, CA, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Telly, the smartest TV ever built and offered at

March 18, 2026

Jon ‘Money Mase’ Mason Empowers New Salespeople to Achieve Early Success

Jon ‘Money Mase’ Mason Empowers New Salespeople to Achieve Early Success

ORLANDO, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Jon “Money Mase” Mason, nationally recognized sales

March 18, 2026

Braga Outdoor Lighting Emphasizes Critical Need for Electrical Inspections as Denver Properties Modernize

Braga Outdoor Lighting Emphasizes Critical Need for Electrical Inspections as Denver Properties Modernize

March 17, 2026 – PRESSADVANTAGE – Denver-based lighting specialist Braga Outdoor Lighting highlights the growing

March 18, 2026

Introducing Psychological Evaluations for Immigrants From Pro Psychological Analysis

Introducing Psychological Evaluations for Immigrants From Pro Psychological Analysis

BOYNTON BEACH, FL, UNITED STATES, March 17, 2026 /EINPresswire.com/ — Pro Psychological Analysis, a professional

March 18, 2026

Tax Expert Launches Free AI Tax Assistant Backed by Actual IRS Code for Small Business Owners

Tax Expert Launches Free AI Tax Assistant Backed by Actual IRS Code for Small Business Owners

TaxForge delivers plain-English tax answers citing real IRC sections and IRS Publications built by a Fortune-level

March 18, 2026

Qalitex Laboratories Offers GMP Consulting for 21 CFR Part 111 Quality System Development

Qalitex Laboratories Offers GMP Consulting for 21 CFR Part 111 Quality System Development

GMP Consulting Supports FDA Audits, SOPs, Testing, and GMP Readiness for Supplement Manufacturers IRVINE, CA, UNITED

March 18, 2026

Challenger DFS Pit Optimisation Drilling Begins

Challenger DFS Pit Optimisation Drilling Begins

Targeting Initial ‘Stage 1' DFS & Ore Reserves conversion by H2 CY 2026HIGHLIGHTSDFS underway following dual

March 17, 2026

Presentation to Swiss Mining Institute Conference

Presentation to Swiss Mining Institute Conference

Targeting near-term production, medium-term scale & long-term growth ADELAIDE, AU / ACCESS Newswire / March 17,

March 17, 2026

Lone Wolf Exteriors Expands Window and Siding Replacement Programs with Zero Percent Financing Options

Lone Wolf Exteriors Expands Window and Siding Replacement Programs with Zero Percent Financing Options

LEWISVILLE, TX – March 17, 2026 – PRESSADVANTAGE – Lone Wolf Exteriors, a Dallas-Fort Worth based exterior renovation

March 17, 2026

Omen Kaine’s ‘The Heart Tells Tales’ Breakout Theatrical Hit Expands into Film and International Jazz Musical Adaptation

Omen Kaine’s ‘The Heart Tells Tales’ Breakout Theatrical Hit Expands into Film and International Jazz Musical Adaptation

Omen Kaine's The Heart Tells Tales A Runaway Hit! The highest order of beauty, is the divine of chaos.”— Omen Kaine

March 17, 2026

To Steal A Moment’s Time Reveals A Mother’s Wartime Diary Of Courage, Survival, And Hope

To Steal A Moment’s Time Reveals A Mother’s Wartime Diary Of Courage, Survival, And Hope

G. J. Berger presents the remarkable diary of Katharina Berger, capturing a mother’s experience raising a child amid

March 17, 2026

Qalitex Laboratories Achieves ISO 17025 Accreditation for Analytical Testing

Qalitex Laboratories Achieves ISO 17025 Accreditation for Analytical Testing

A2LA-accredited Irvine lab explains why accredited vs. self-declared compliance determines COA acceptance by Amazon,

March 17, 2026

Qalitex Laboratories Launches Regulatory Consulting for Supplement and Pharma Brands

Qalitex Laboratories Launches Regulatory Consulting for Supplement and Pharma Brands

ISO 17025 Lab Provides FDA, GMP, and Amazon Compliance Support for Supplement & Pharma Brands IRVINE, CA, UNITED

March 17, 2026

Qalitex Laboratories Expands Pharmaceutical Testing Services for Drug Developers and CROs

Qalitex Laboratories Expands Pharmaceutical Testing Services for Drug Developers and CROs

ISO 17025-accredited California lab offers HPLC, LC-MS/MS, ICP-MS, and ICH stability studies with 48-hour turnaround

March 17, 2026

Public Hearing to Spotlight Gondola Transit Solutions for Downtown Denver

Public Hearing to Spotlight Gondola Transit Solutions for Downtown Denver

The April hearing invites residents to explore a high-tech transit vision aimed at boosting safety, tourism and

March 17, 2026

Simply Onno: AI Service That Translates and Explains Medical Documents into Plain Language Now Available in English

Simply Onno: AI Service That Translates and Explains Medical Documents into Plain Language Now Available in English

Built in Germany with the highest medical quality standards, Onno now brings this service to English speakers.

March 17, 2026

H2Ocean Participation at Motor City Tattoo Expo 2026 with Education, Artist Engagement, and Award Winning Presence

H2Ocean Participation at Motor City Tattoo Expo 2026 with Education, Artist Engagement, and Award Winning Presence

Bringing science driven aftercare, global artist collaborations, and industry recognition to one of the world’s most

March 17, 2026

The Fairy Queen And The Heart Of The Lake Brings A Magical Story Of Healing, Courage, And Hope To Young Readers

The Fairy Queen And The Heart Of The Lake Brings A Magical Story Of Healing, Courage, And Hope To Young Readers

Kristen Lindeman presents a beautifully illustrated children’s book about resilience, compassion, and the journey to

March 17, 2026

B&M Crane Rental Addresses Site-Specific Challenges in Crane Rental Operations Across Michigan Environments

B&M Crane Rental Addresses Site-Specific Challenges in Crane Rental Operations Across Michigan Environments

FENTON, MI – March 17, 2026 – PRESSADVANTAGE – B&M Crane Rental continues to navigate the diverse and demanding

March 17, 2026

McCormick Highlights Comprehensive Range of CNC Machining Services

McCormick Highlights Comprehensive Range of CNC Machining Services

APPLETON, WI – March 17, 2026 – PRESSADVANTAGE – McCormick Industries, a precision machining company serving diverse

March 17, 2026

Muslim Firsts Launches Free Reference on Muslim Barrier-Breakers

Muslim Firsts Launches Free Reference on Muslim Barrier-Breakers

March 17, 2026 – PRESSADVANTAGE – Muslim Firsts, a free online educational reference, launched this week with 30

March 17, 2026

ROUTLEDGE RELEASES ‘PROFOUND’ AND ‘ILLUMINATING’ BOOK IN ITS PSYCHOANALYSIS, TECHNOLOGY & THE FUTURE SERIES

ROUTLEDGE RELEASES ‘PROFOUND’ AND ‘ILLUMINATING’ BOOK IN ITS PSYCHOANALYSIS, TECHNOLOGY & THE FUTURE SERIES

Renowned Psychoanalyst and Bestselling Author Explores the Unconscious Roots of AI Bias Courageous―and necessary.”—

March 17, 2026

New Memoir Growing Up Happy in a Lonely World Explores the Hidden Loneliness Behind a Confident Life

New Memoir Growing Up Happy in a Lonely World Explores the Hidden Loneliness Behind a Confident Life

Author Nicole Morrison Releases Growing Up Happy in a Lonely World, a Mixtape Memoir on Identity, Resilience, and

March 17, 2026

4Sight Labs Introduces OptiGuard™ to Help Detect Signs of Life in Jail Cells Using Existing Camera Systems

4Sight Labs Introduces OptiGuard™ to Help Detect Signs of Life in Jail Cells Using Existing Camera Systems

AI-powered monitoring capability designed to support faster wellness checks in detention facilities OptiGuard™ is

March 17, 2026

THE GREEN AND KAWIKA KAHIAPO JOIN EASTERSEALS HAWAII’S ‘MUSIC FOR ALL’ BENEFIT CONCERT AT HISTORIC HAWAII THEATRE

THE GREEN AND KAWIKA KAHIAPO JOIN EASTERSEALS HAWAII’S ‘MUSIC FOR ALL’ BENEFIT CONCERT AT HISTORIC HAWAII THEATRE

Celebrate World Autism Acceptance Day with a Night of Music, Inclusion and Community World Autism Acceptance Day

March 17, 2026

Water On Demand Announces Terms Changing for Accredited Investor Offering

Water On Demand Announces Terms Changing for Accredited Investor Offering

Formation-Stage Terms Ending — Now Funding Active Execution We wanted to provide formation-stage accredited investors

March 17, 2026