ClawJacked attack let malicious websites hijack OpenClaw to steal data

2026-03-04T20:24:13Zf276498edfc24cae7b4e24f55ff6724f9ec1f5fdb9e3eb067d47e2c884a6443f
CVE-2025-0282APT37Chrome extensionClawJackedEuropol Project CompassGemini AIGoogle API keysIvanti Connect SecureJuniper PTXJunos OS EvolvedManoMano data breachOpenClawQuickLensRESURGESamsung settlementSouth Korea National Tax ServiceTrend Micro Apex Oneair-gapped networksbrowser-based attackcritical vulnerabilitycrypto theftmalicious websitesmnemonic seed exposureremote code executionsmart TV privacy

What happened

A collection of security news covering multiple high-impact incidents and vulnerabilities: a "ClawJacked" browser-based attack that could hijack local OpenClaw AI agents; the QuickLens Chrome extension was compromised to steal crypto; South Korea's tax agency accidentally exposed a wallet mnemonic, enabling a $4.8M theft; CISA warns of RESURGE implants tied to exploitation of CVE-2025-0282 against Ivanti devices; Trend Micro patched critical Apex One RCE flaws; a critical Juniper PTX/Junos OS flaw enables full router takeover; Google API key misuse can expose Gemini AI data; Samsung reached a/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
f276498edfc24cae7b4e24f55ff6724f9ec1f5fdb9e3eb067d47e2c884a6443f
Enrichment time
2026-03-04T20:24:13Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.