A compromised Open VSX publisher account was used to distribute malicious extensions in a new GlassWorm supply chain attack.
A security audit found 341 malicious ClawHub skills abusing OpenClaw to spread Atomic Stealer and steal credentials on macOS ...