ClawHub Supply Chain Crisis: 575+ CVEs & Malicious Skills
Key Questions
What threats are involved in the ClawHub supply chain crisis?
The crisis features over 575 malicious skills, including AMOS infostealers and Solana pump-and-dump schemes, with Unit 42 noting an 80% deviation in detections. HalluSquatting has been confirmed, and a new third-party directory of 13,000+ MCP servers launched without quality signals is increasing risks. Active exploitation continues amid the ongoing situation.
What new defenses and tools have been introduced for ClawHub?
New defenses include Claw Patrol, Skill Security Auditor, and NanoClaw/JFrog to counter malicious skills and vulnerabilities. A pre-install vetting guide has been published to help users assess risks before installation. These measures aim to address the widespread supply chain threats.
Has the ClawHub crisis gained mainstream coverage and what is its current status?
The crisis has received mainstream attention, including coverage on MSN, alongside confirmed issues like HalluSquatting. It remains in a climaxing phase with active exploitation and added risks from unvetted directories. Ongoing developments include new security tools and guides to mitigate the threats.
575+ malicious skills, AMOS infostealers, Solana pump-and-dump, Unit 42 80% deviation. HalluSquatting confirmed; mainstream coverage (MSN). New defenses: Claw Patrol, Skill Security Auditor, NanoClaw/JFrog, and SecureClaw (third-party watchdog). Vercel's skills.sh registry hit by typosquatting — 1.7M installs, 30% of dangerous skills abused OpenClaw. Manual removal required. Any skill registry is a vector. New ClawHavoc campaign: 350+ malicious skills on ClawHub delivering NovaStealer v2 via ClickFix lures, targeting 60+ crypto wallets on macOS. Fresh IoCs and delivery details actionable for self-hosters.