Hundreds of skills for the AI agent OpenClaw (formerly Clawdbot) were laced with malware.
VirusTotal flagged the issue in a recent blog post. OpenClaw is a self-hosted AI agent that runs locally on your machine and can take real actions: executing shell commands, manipulating files, or making network requests. Users can expand what it does by installing community-built skills.
What VirusTotal found was that attackers had been packaging Trojans and data stealers as legitimate skills on the ClawHub platform. The skills themselves often looked clean, but they instructed the agent to download and run external payloads, including the well-known macOS Trojan Atomic Stealer. One user alone uploaded more than 300 infected skills.
Källa: Malicious skills turn AI agent OpenClaw into a malware delivery system
