OpenClaw’s Skill Marketplace and the Emerging AI Supply Chain Threat

2026-06-24T08:51:38Zdfe25e2a4cb6a214c1e5017305d34e9632d6c41978815ede1a63e8c2ccc47eae
APTCVE-2026-0257ai-agent-skillsai-securitybucket-hijackingbucket-squattingclawhubcloud-loggingcloud-securitycredential-attackscredential-theftdefense-evasionextortionflutterbridgefluttershellmacosnpmopenclawpan-osransomwarercesupply-chainsupply-chain-attacksunit42vertex-ai

What happened

Palo Alto Unit 42 published a series of June 2026 analyses highlighting elevated risks across AI agent supply chains, cloud infrastructure, and network/security appliances. Key findings include malicious/evading skills in the OpenClaw/ClawHub marketplace that deploy infostealers and agentic financial fraud, guidance for auditing third‑party AI skills, cloud global namespace/bucket hijacking techniques across CSPs, a Vertex AI Python SDK bucket‑squatting vulnerability enabling cross‑tenant RCE, abuse of cloud logging for defense evasion, active exploitation of PAN‑OS CVE‑2026‑0257 (with IoCs/mt

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
paloalto_unit42
Record identifier
dfe25e2a4cb6a214c1e5017305d34e9632d6c41978815ede1a63e8c2ccc47eae
Enrichment time
2026-06-24T08:51:38Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.