WeSearch

30 ClawHub skills secretly turn AI agents into a crypto swarm

·4 min read · 0 reactions · 0 comments · 13 views
#ai security#crypto mining#openclaw#clawhub#agent exploitation
30 ClawHub skills secretly turn AI agents into a crypto swarm
⚡ TL;DR · AI summary

Thirty OpenClaw skills published under the name 'imaflytok' on ClawHub are covertly enlisting AI agents into a cryptocurrency mining network called ClawSwarm, without user knowledge or consent. The campaign leverages legitimate open-source frameworks and targets AI agents directly through SKILL.md instruction files, registering them with an external server at onlyflies.buzz. Unlike traditional malware, it uses no malicious code, instead relying on transparent but undisclosed agent behaviors such as wallet generation and remote task execution. Security researcher Ax Sharma highlights that the issue lies not in technical vulnerabilities but in the lack of runtime visibility and policy around agent actions.

Key facts
Original article
The Register
Read full at The Register →
Opening excerpt (first ~120 words) tap to expand

Security 30 ClawHub skills secretly turn AI agents into a crypto swarm Yet another reason not to feast on OpenClaw Jessica Lyons Wed 29 Apr 2026 // 06:32 UTC Thirty ClawHub skills published by a single author are silently co-opting AI agents and creating a mass cryptocurrency mining swarm – without any malware or user consent. Agentic AI security outfit Manifold's research lead Ax Sharma spotted the skills on ClawHub, a registry and marketplace for OpenClaw skills. A ClawHub user who goes by "imaflytok" published the skills, which have scored around 9,800 downloads. Sharma told The Register that this campaign – he calls it “ClawSwarm” – differs from past efforts to distribute malicious ClawHub code because it doesn’t use malware or target humans.

Excerpt limited to ~120 words for fair-use compliance. The full article is at The Register.

Anonymous · no account needed
Share 𝕏 Facebook Reddit LinkedIn Threads WhatsApp Bluesky Mastodon Email

Discussion

0 comments

More from The Register