BlockBeats 消息,2 月 20 日,慢雾创始人余弦转帖发布安全提醒,目前 OpenClaw 的 ClawHub 市场共发现 1184 个恶意技能,这些技能会窃取 SSH 密钥、加密钱包、浏览器密码并打开反向 shell。仅一名攻击者就上传了 677 个软件包。排名第一的技能存在 9 个漏洞,下载量达数千次。
余弦提醒用户,文本不再是文本,而是指令。建议通过独立环境使用 AI 工具,许多 OpenClaw 技能存在潜在风险。此外,Web3 安全里合约只是一部分,真正事故原因早已不仅仅是合约。前几日 Moonwell 被盗 178 万美元,缺陷代码来自 Co-Authored-By:Claude Opus 4.6。
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Articoli correlati
Lido暂停ZKsync桥接充值引发安全担忧,LDO与ZK双双走弱
以太坊流动性质押协议Lido Finance因发现ZKsync网络上的wstETH桥接合约潜在安全漏洞,暂停了新的桥接充值功能。目前未发现该漏洞被利用,用户资产安全。Lido正在通过去中心化治理机制进行漏洞修复,预计治理投票在2026年3月下旬进行。此事件导致相关代币短线表现承压。
GateNews1h fa
Cựu cảnh sát LAPD bị kết tội trộm cắp tiền điện tử trị giá 350.000 đô la và bắt cóc
A former LAPD officer was convicted of kidnapping and robbery for a 2024 apartment break-in aimed at stealing $350,000 in cryptocurrency. Eric Halem, along with three accomplices posing as police, threatened a 17-year-old victim for a Bitcoin hard drive.
TapChiBitcoin2h fa
日本首相高市早苗澄清与同名 Meme 币无关,代币应声跌超 85%
日本首相高市早苗澄清称,自己对名为SANAE TOKEN的加密货币毫不知情,未对此项目给予任何批准,旨在消除公众误解。该代币由企业家Mizoguchi Yūji发行,曾短暂暴涨后因声明迅速下跌。
GateNews8h fa
Ex-LAPD Officer Found Guilty of $350K ‘Wrench Attack’ Bitcoin Robbery
In brief
A former LAPD officer has been found guilty of kidnapping and robbery after a home invasion in which he held a teenage crypto owner at gunpoint.
Eric Halem and his alleged associates stole a hard drive containing $350.000 worth of Bitcoin from the victim.
The crime is the
Decrypt13h fa
私募投資 SpaceX、OpenAI 要注意什麼?拆解 Pre-IPO 的私募風險
代幣化 Pre-IPO 在幣圈受熱捧,但投資者需警惕潛在風險,因為所購買的可能只是承諾而非實際股份。SPV 是常見的合規工具,須遵循監管要求,特別是在法律與投資者資格方面。Phyrex 指出,一些產品或僅是衍生品敞口,投資人需謹慎,避免陷入非法募資的風險。
ChainNewsAbmedia18h fa
韩国出现加密货币资助的复仇攻击,嫌犯收取 300-600 美元报酬
韩国警方正在调查一系列由加密货币资助的复仇攻击案件,嫌犯通过Telegram接受雇主支付进行破坏和诽谤。警方怀疑一个自称私人复仇组织的团体在活动,这一现象在俄罗斯也有出现。
GateNews18h fa