clawsmith.com/signal/openclaw-clawhub-800-malicious-skills-20-percent-registry
⚠ IssueWide OpenLive
ClawHub Malicious Skills Count Reaches 800+ -- 20% of Entire Registry Compromised
Updated scans of ClawHub now report over 800 malicious skills, representing approximately 20% of the entire registry. Dramatic escalation from the initial ClawHavoc discovery of 341 malicious skills in February 2026. Malicious authors use typosquatted names and ClickFix social engineering to distribute Atomic macOS Stealer.
Product Idea from this Signal
A security layer that vets ClawHub skills for malware and prompt injection before your agent installs them
133.9k ▲SECURITYCLIDEVTOOLOPEN-SOURCE
CompetitiveView Opportunity →
Product Idea from this Signal
A CLI tool that scans a running OpenClaw instance for every known CVE, exposed endpoint, malicious skill, and token scope violation, then outputs a prioritized remediation checklist
25.3k ▲CLIOPEN-SOURCESECURITYDEVTOOLOPENCLAW
CompetitiveView Opportunity →
Score Breakdown
Reddit
1,005
Virality Score
1,005
across 0 platforms
Details
Signalissue
Ecosystem—
Sources2
Platforms0
Updated8d ago
Trend→ stable
Top ideas
All ideas →Related signals
All signals →