Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials

2026-03-09T19:24:19Zc44ff88f9244b6efa89a89efc7cd8597a0289d1fb5c66921ba1de3ffc3f8aac9
AI-securityAirDropAnthropicAsyncRATCISA-KEVClickFixLeakBase-seizureLumma-StealerOpenAI-CodexTycoon-2FAUNC4899VOID#GEISTWindows-TerminalXWormXeno-RATactive-exploitationchrome-extension-takeovercode-injectionmacOSnpm-malwarenpmjsremote-access-trojansupply-chainvulnerability-management

What happened

A single-week feed highlights multiple active and emerging threats: a malicious npm package (@openclaw-ai/openclawai) posing as an OpenClaw installer was uploaded on 2026-03-03 and is being used to deploy a remote access trojan (RAT) and exfiltrate macOS credentials; UNC4899 (North Korea-linked) used AirDrop to deliver a trojanized file to a developer leading to a cloud compromise of a crypto firm; Chrome extension ownership changes led to backdooring and data theft; a multi-stage VOID#GEIST campaign delivers XWorm, AsyncRAT, and Xeno RAT variants; Microsoft observed a ClickFix social-engineer

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
c44ff88f9244b6efa89a89efc7cd8597a0289d1fb5c66921ba1de3ffc3f8aac9
Enrichment time
2026-03-09T19:24:19Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials · Baitaphish