慢霧,ClawHub 開發者請注意釣魚和憑據洩露風險
Mar 13, 2026 11:57:56
Chia sẻ để

ChainCatcher 消息,慢霧科技首席信息安全官 23pds 發文提醒稱,ClawHub 開發者請注意釣魚和憑據洩露風險。目前 ClawHub 依賴開發者 GitHub 一鍵登錄,之前 Sha1-Hulud 蠕蟲竊取大量開發者的 GitHub 憑據,攻擊者可能會伺機攻擊 Skills。
攻擊路徑為:憑證竊取→攻擊者獲取 GitHub 權限→以開發者身份登錄 ClawHub→發布惡意 Skills 植入後門→用戶下載安裝後執行惡意代碼導致系統入侵。
Tin tức mới nhất
Mu Digital partners with Curated and Plums to bring institutional-grade Asian credit to Ethereum
Cointelegraph
Mar 14, 2026 00:47:12
MoonPay Agents Introduces the First AI Agent Secured by a Ledger Signer
PRNewswire
Mar 14, 2026 00:30:00
Mastercard Taps Borderless.xyz for Crypto Partner Program as Stablecoins Move into Mainstream Adoption
PRNewswire
Mar 13, 2026 22:00:00
Former JP Morgan and Dresdner Kleinwort Traders Launch Crypto Prop Firm After Paying Out USD2.5 Billion in Fintech
PRNewswire
Mar 13, 2026 18:10:00
KuCoin Launches Stock Index Perpetual Contracts, Expanding 24/7 Cross-Asset Access
PRNewswire
Mar 13, 2026 18:00:00












