A malicious npm package disguised as OpenClaw installs GhostClaw malware to steal developer credentials and sensitive data.
First seen on esecurityplanet.com
Jump to article: www.esecurityplanet.com/threats/fake-openclaw-npm-package-installs-ghostclaw-malware/
![]()

