Malware-laced OpenClaw installers get Bing AI search boost
Malicious GitHub repos promoted via Bing AI delivered Vidar and GhostSocks malware, exploiting OpenClaw's popularity to steal credentials from users, researchers said.
6 Articles
6 Articles
Hackers Are Using OpenClaw, GitHub, and Bing to Spread Malware in a Disturbingly Clever Way
A legitimate open-source game is being weaponized to distribute malware, and the attack chain is surprisingly sophisticated. Researchers have uncovered a campaign that exploits OpenClaw — a free, open-source remake of the 1997 platformer Captain Claw — to trick users into downloading info-stealing malware through GitHub repositories and manipulated Bing search results. The scheme works like this. Attackers forked the real OpenClaw GitHub reposit…
Latest OpenClaw Security Risk: Fake GitHub Repositories Used to Deploy Infostealers
Huntress researchers said actors used a malicious repository on GitHub to lure victims into downloading a bogus OpenClaw installer that delivered infostealer malware and the GhostSocks proxy. The fake installer was given greater legitimacy by being hosted on GitHub and its high ranking in Bing AI searches. The post Latest OpenClaw Security Risk: Fake GitHub Repositories Used to Deploy Infostealers appeared first on Security Boulevard.
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium




