OpenClaw’s Skill Marketplace and the Emerging AI Supply Chain Threat

2026-06-24T20:51:39Zd2c84a56751dc32f3f51fda8f758d3ed96988360805c1ce4c742e51723b2b211
AI supply chainAPT Screening SerpensAppDomainManager hijackCVE-2026-0257ClawHubOpenClawVertex AIagentic fraudbucket squattingcloud bucket hijackingcloud data exfiltrationcloud logging abusecredential attackscross-tenant RCEdefense evasioninfostealermacOS FlutterShellmalicious skillsmalwarenpm supply chain

What happened

Unit 42 published multiple June 2026 reports highlighting high-risk supply chain, cloud, and exploitation trends. Key findings include evasive malicious “skills” in AI marketplaces (OpenClaw/ClawHub) that bypass scanners to deploy infostealers and agentic financial fraud; a Vertex AI Python SDK bucket-squatting flaw enabling cross-tenant RCE during model uploads; a universal bucket-hijacking technique for cloud data exfiltration across major CSPs; abuse of cloud logging services for defense evasion; active exploitation of PAN-OS (CVE-2026-0257); large-scale credential attack campaigns; npm and

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
paloalto_unit42
Record identifier
d2c84a56751dc32f3f51fda8f758d3ed96988360805c1ce4c742e51723b2b211
Enrichment time
2026-06-24T20:51:39Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.