OpenClaw’s Skill Marketplace and the Emerging AI Supply Chain Threat
2026-06-24T20:51:39Z•d2c84a56751dc32f3f51fda8f758d3ed96988360805c1ce4c742e51723b2b211
AI supply chainAPT Screening SerpensAppDomainManager hijackCVE-2026-0257ClawHubOpenClawVertex AIagentic fraudbucket squattingcloud bucket hijackingcloud data exfiltrationcloud logging abusecredential attackscross-tenant RCEdefense evasioninfostealermacOS FlutterShellmalicious skillsmalwarenpm supply chain
What happened
Unit 42 published multiple June 2026 reports highlighting high-risk supply chain, cloud, and exploitation trends. Key findings include evasive malicious “skills” in AI marketplaces (OpenClaw/ClawHub) that bypass scanners to deploy infostealers and agentic financial fraud; a Vertex AI Python SDK bucket-squatting flaw enabling cross-tenant RCE during model uploads; a universal bucket-hijacking technique for cloud data exfiltration across major CSPs; abuse of cloud logging services for defense evasion; active exploitation of PAN-OS (CVE-2026-0257); large-scale credential attack campaigns; npm and
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- paloalto_unit42
- Record identifier
- d2c84a56751dc32f3f51fda8f758d3ed96988360805c1ce4c742e51723b2b211
- Enrichment time
- 2026-06-24T20:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.